FreshPorts -- The Place For Ports If you buy from Amazon USA, please support us by using this link.
Follow us
Blog
Twitter

Port details
shim UEFI Secure Boot shim loader
0.8_4 sysutils on this many watch lists=1 search for ports that depend on this port Find issues related to this port Report an issue related to this port

There is no maintainer for this port.
Any concerns regarding this port should be directed to the FreeBSD Ports mailing list via ports@FreeBSD.org search for ports maintained by this maintainer
Port Added: 15 Jan 2015 10:09:48
License: BSD2CLAUSE
shim is a trivial EFI application that, when run, attempts to open and
execute another application. It will initially attempt to do this via the
standard EFI LoadImage() and StartImage() calls. If these fail (because secure
boot is enabled and the binary is not signed with an appropriate key, for
instance) it will then validate the binary against a built-in certificate. If
this succeeds and if the binary or signing key are not blacklisted then shim
will relocate and execute the binary.

WWW: https://github.com/mjg59/shim
SVNWeb : Homepage : PortsMon : pkg-plist

To install the port: cd /usr/ports/sysutils/shim/ && make install clean
To add the package: pkg install shim

PKGNAME: shim

ONLY_FOR_ARCHS: amd64

distinfo:

SHA256 (mjg59-shim-0.8_GH0.tar.gz) = 668629b51179d4832415d5c3ebf0cdb28feaae16e7158d8fc6e3740a1a29cdd8
SIZE (mjg59-shim-0.8_GH0.tar.gz) = 1251831


NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.

Build dependencies:
  1. libgnuefi.a : devel/gnu-efi
  2. bash : shells/bash
  3. gmake : devel/gmake
  4. gcc6 : lang/gcc6
  5. as : devel/binutils
Runtime dependencies:
  1. gcc6 : lang/gcc6
There are no ports dependent upon this port

Configuration Options
     No options to configure

USES:
gmake

Master Sites:
  1. https://codeload.github.com/mjg59/shim/tar.gz/0.8?dummy=/

Number of commits found: 12

Commit History - (may be incomplete: see SVNWeb link above for full details)
DateByDescription
10 Sep 2017 20:55:39
Original commit files touched by this commit  0.8_4
Revision:449591
gerald search for other commits by this committer
Bump PORTREVISION for ports depending on the canonical version of GCC
(via Mk/bsd.default-versions.mk and lang/gcc) which has moved from
GCC 5.4 to GCC 6.4 under most circumstances.

This includes ports
 - with USE_GCC=yes or USE_GCC=any,
 - with USES=fortran,
 - using Mk/bsd.octave.mk which in turn features USES=fortran, and
 - with USES=compiler specifying openmp, nestedfct, c++11-lib, c++11-lang,
   c++14-lang, c++0x, c11, or gcc-c++11-lib.

PR:		219275
01 Apr 2017 15:23:32
Original commit files touched by this commit  0.8_3
Revision:437439
gerald search for other commits by this committer
Bump PORTREVISIONs for ports depending on the canonical version of GCC and
lang/gcc which have moved from GCC 4.9.4 to GCC 5.4 (at least under some
circumstances such as versions of FreeBSD or platforms).

This includes ports
 - with USE_GCC=yes or USE_GCC=any,
 - with USES=fortran,
 - using using Mk/bsd.octave.mk which in turn has USES=fortran, and
 - with USES=compiler specifying openmp, nestedfct, c++11-lib, c++14-lang,
   c++11-lang, c++0x, c11, or gcc-c++11-lib.

PR:		216707
05 Feb 2017 04:36:22
Original commit files touched by this commit  0.8_2
Revision:433350
jbeich search for other commits by this committer
sysutils/shim: unbreak with gcc5 or later

In file included from /usr/local/include/efi/efi.h:35:0,
                 from shim.c:36:
/usr/local/include/efi/x86_64/efibind.h:88:24: fatal error: stdint.h: No such
file or directory

PR:		216707
Reported by:	antoine (via exp-run)
20 Nov 2016 09:38:09
Original commit files touched by this commit  0.8_2
Revision:426566
gerald search for other commits by this committer
Bump PORTREVISIONS for ports depending on the canonical version of GCC and
lang/gcc which have moved from GCC 4.8.5 to GCC 4.9.4 (at least under some
circumstances such as versions of FreeBSD or platforms).

In particular that is ports with USE_GCC=yes, USE_GCC=any, or one of
gcc-c++11-lib, openmp, nestedfct, c++11-lib as well as c++14-lang,
c++11-lang, c++0x, c11 requested via USES=compiler.
22 Jun 2016 10:12:46
Original commit files touched by this commit  0.8_1
Revision:417298
trasz search for other commits by this committer
Drop maintainership for some of my ports.
01 Apr 2016 14:25:18
Original commit files touched by this commit  0.8_1
Revision:412349
mat search for other commits by this committer
Remove ${PORTSDIR}/ from dependencies, categories r, s, t, and u.

With hat:	portmgr
Sponsored by:	Absolight
07 May 2015 20:24:16
Original commit files touched by this commit  0.8_1
Revision:385665
mat search for other commits by this committer
Update ports in the remaining categories to not use GH_COMMIT.

With minor cleanups to make things simpler.

With hat:	portmgr
Sponsored by:	Absolight
23 Apr 2015 20:52:36
Original commit files touched by this commit  0.8_1
Revision:384611
antoine search for other commits by this committer
Fix BUILD_DEPENDS
21 Mar 2015 12:12:03
Original commit files touched by this commit  0.8_1
Revision:381793
marino search for other commits by this committer
For traz@ ports: Change USE_GCC=4.8+ to preferred USE_GCC=yes

Approved by:	just fix it
23 Jan 2015 10:35:09
Original commit files touched by this commit  0.8_1
Revision:377720
trasz search for other commits by this committer
Install certificate and key matching what's embedded in the shim itself.

Sponsored by:	The FreeBSD Foundation
21 Jan 2015 13:48:36
Original commit files touched by this commit  0.8
Revision:377608
trasz search for other commits by this committer
Don't hardcode "gcc48"; it would break after GCC upgrade.  Don't install
*.efi files as executables; from the strip(1) point of view they are data
files (actually, they are executables, but PE, not ELF).

Sponsored by:	The FreeBSD Foundation
15 Jan 2015 10:09:36
Original commit files touched by this commit  0.8
Revision:377070
trasz search for other commits by this committer
New port: sysutils/shim

shim is a trivial EFI application that, when run, attempts to open and
execute another application. It will initially attempt to do this via the
standard EFI LoadImage() and StartImage() calls. If these fail (because secure
boot is enabled and the binary is not signed with an appropriate key, for
instance) it will then validate the binary against a built-in certificate. If
this succeeds and if the binary or signing key are not blacklisted then shim
will relocate and execute the binary.

Sponsored by:	The FreeBSD Foundation

Number of commits found: 12

Login
User Login
Create account

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD

This site
What is FreshPorts?
About the authors
Issues
FAQ
How big is it?
The latest upgrade!
Privacy
Forums
Blog
Contact

Search
Enter Keywords:
 
more...

Latest Vulnerabilities
curlOct 23
mariadb100-server*Oct 23
mariadb101-server*Oct 23
mariadb102-server*Oct 23
mariadb55-server*Oct 23
mysql55-server*Oct 23
mysql56-server*Oct 23
mysql57-server*Oct 23
percona55-server*Oct 23
percona56-server*Oct 23
percona57-server*Oct 23
irssiOct 22
chromiumOct 21
arjOct 19
cactiOct 19

26 vulnerabilities affecting 111 ports have been reported in the past 14 days

* - modified, not new

All vulnerabilities


Ports
Home
Categories
Deleted ports
Sanity Test Failures
Newsfeeds

Statistics
Graphs
NEW Graphs (Javascript)
Traffic

Calculated hourly:
Port count 31612
Broken 153
Deprecated 79
Ignore 423
Forbidden 0
Restricted 176
No CDROM 78
Vulnerable 58
Expired 16
Set to expire 72
Interactive 0
new 24 hours 2
new 48 hours9
new 7 days23
new fortnight51
new month431

Servers and bandwidth provided by
New York Internet, SuperNews, and RootBSD
Valid HTML, CSS, and RSS.
Copyright © 2000-2017 Dan Langille. All rights reserved.