notbugIf you buy from Amazon USA, please support us by using this link.
Port details
shim UEFI Secure Boot shim loader
0.9_2 sysutils on this many watch lists=1 search for ports that depend on this port Find issues related to this port Report an issue related to this port
Maintainer: egypcio@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2015-01-15 10:09:48
Last Update: 2018-12-19 17:30:22
SVN Revision: 487805
License: BSD2CLAUSE
shim is a trivial EFI application that, when run, attempts to open and
execute another application. It will initially attempt to do this via the
standard EFI LoadImage() and StartImage() calls. If these fail (because secure
boot is enabled and the binary is not signed with an appropriate key, for
instance) it will then validate the binary against a built-in certificate. If
this succeeds and if the binary or signing key are not blacklisted then shim
will relocate and execute the binary.

WWW: https://github.com/mjg59/shim
SVNWeb : Homepage
    Pseudo-pkg-plist information, but much better, from make generate-plist
    Expand this list (8 items)
  1. lib/shim/shim.pem
  2. lib/shim/shim.key
  3. lib/shim/MokManager.efi
  4. lib/shim/fallback.efi
  5. lib/shim/shim.efi
  6. /usr/local/share/licenses/shim-0.9_2/catalog.mk
  7. /usr/local/share/licenses/shim-0.9_2/LICENSE
  8. /usr/local/share/licenses/shim-0.9_2/BSD2CLAUSE
  9. Collapse this list.
Dependency lines:
  • shim>0:sysutils/shim

To install the port: cd /usr/ports/sysutils/shim/ && make install clean
To add the package: pkg install shim

PKGNAME: shim

There is no flavor information for this port.

distinfo:

TIMESTAMP = 1535569510
SHA256 (mjg59-shim-0.9_GH0.tar.gz) = d277d7bea0b5d554dacf284d84252a5e995fb4ef54b6de5ec6296c6c2a9a21bd
SIZE (mjg59-shim-0.9_GH0.tar.gz) = 1302211


NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.

Build dependencies:
  1. libgnuefi.a : devel/gnu-efi
  2. bash : shells/bash
  3. gmake : devel/gmake
  4. gcc8 : lang/gcc8
  5. as : devel/binutils
Runtime dependencies:
  1. gcc8 : lang/gcc8
There are no ports dependent upon this port

Configuration Options
     No options to configure

USES:
compiler gmake shebangfix

Master Sites:
  1. https://codeload.github.com/mjg59/shim/tar.gz/0.9?dummy=/

Number of commits found: 18

Commit History - (may be incomplete: see SVNWeb link above for full details)
DateByDescription
19 Dec 2018 17:30:22
Original commit files touched by this commit  0.9_2
Revision:487805
egypcio search for other commits by this committer
sysutils/shim: introduce new ARCH support (i386)

    Makefile
        bump PORTREVISION;
        USE_CSTD: gnu89 became gnu99 [0];

    files/
        *: if ARCH=i386, replaces ARCH with ia32;
        elf_ia32_efi.lds: sync OUTPUT_FORMAT [1];
        MokManager.c: used UINT32 for MokNum.

Reported by:	pkg-fallout
Approved by:	araujo (mentor)
Differential Revision:	https://reviews.freebsd.org/D18572

[0] shim.c:2176:3: error: this decimal constant is unsigned only in ISO C90
[1] patch-elf_x86_64_efi.lds always appended -freebsd as OUTPUT_FORMAT
12 Dec 2018 01:35:36
Original commit files touched by this commit  0.9_1
Revision:487272
gerald search for other commits by this committer
Bump PORTREVISION for ports depending on the canonical version of GCC
defined via Mk/bsd.default-versions.mk which has moved from GCC 7.4 t
GCC 8.2 under most circumstances.

This includes ports
 - with USE_GCC=yes or USE_GCC=any,
 - with USES=fortran,
 - using Mk/bsd.octave.mk which in turn features USES=fortran, and
 - with USES=compiler specifying openmp, nestedfct, c11, c++0x, c++11-lang,
   c++11-lib, c++14-lang, c++17-lang, or gcc-c++11-lib
plus, as a double check, everything INDEX-11 showed depending on lang/gcc7.

PR:		231590
05 Dec 2018 14:09:12
Original commit files touched by this commit  0.9
Revision:486672
egypcio search for other commits by this committer
use @FreeBSD.org as MAINTAINER instead of my private address

  benchmarks/vegeta
  devel/busybee
  devel/git-lfs
  devel/gnu-efi
  devel/hub
  devel/libe
  devel/py-fabric3
  devel/py-fabric3
  dns/dhisd
  dns/dnscrypt-proxy2
  dns/go-geodns
  emulators/hatari
  irc/weechat-otr
(Only the first 15 lines of the commit message are shown above View all of this commit message)
21 Nov 2018 13:27:07
Original commit files touched by this commit  0.9
Revision:485512
egypcio search for other commits by this committer
sysutils/shim: update from 0.8 to 0.9

  - adopt the port;
  - original version from PR 231029 was modified;
  - add compiler, and shebangfix to USES;
  - reorder variables in Makefile (silent portlint);
  - rework do-install.

PR:		231029
Reviewed by:	fernape, mat, tcberner, trasz
Approved by:	rene (mentor)
Differential Revision:	https://reviews.freebsd.org/D17019
29 Jul 2018 22:18:46
Original commit files touched by this commit  0.8_6
Revision:475857
gerald search for other commits by this committer
Bump PORTREVISION for ports depending on the canonical version of GCC
in the ports tree (via Mk/bsd.default-versions.mk and lang/gcc) which
has now moved from GCC 6 to GCC 7 by default.

This includes ports
 - featuring USE_GCC=yes or USE_GCC=any,
 - featuring USES=fortran,
 - using Mk/bsd.octave.mk which in turn features USES=fortran, and those
 - with USES=compiler specifying one of openmp, nestedfct, c11, c++0x,
   c++11-lib, c++11-lang, c++14-lang, c++17-lang, or gcc-c++11-lib.

PR:		222542
10 Mar 2018 17:46:06
Original commit files touched by this commit  0.8_5
Revision:464084
gerald search for other commits by this committer
Bump PORTREVISIONs of all users of math/mpc that we just updated to
version 1.1.0 (via revision 464079).
10 Sep 2017 20:55:39
Original commit files touched by this commit  0.8_4
Revision:449591
gerald search for other commits by this committer
Bump PORTREVISION for ports depending on the canonical version of GCC
(via Mk/bsd.default-versions.mk and lang/gcc) which has moved from
GCC 5.4 to GCC 6.4 under most circumstances.

This includes ports
 - with USE_GCC=yes or USE_GCC=any,
 - with USES=fortran,
 - using Mk/bsd.octave.mk which in turn features USES=fortran, and
 - with USES=compiler specifying openmp, nestedfct, c++11-lib, c++11-lang,
   c++14-lang, c++0x, c11, or gcc-c++11-lib.

PR:		219275
01 Apr 2017 15:23:32
Original commit files touched by this commit  0.8_3
Revision:437439
gerald search for other commits by this committer
Bump PORTREVISIONs for ports depending on the canonical version of GCC and
lang/gcc which have moved from GCC 4.9.4 to GCC 5.4 (at least under some
circumstances such as versions of FreeBSD or platforms).

This includes ports
 - with USE_GCC=yes or USE_GCC=any,
 - with USES=fortran,
 - using using Mk/bsd.octave.mk which in turn has USES=fortran, and
 - with USES=compiler specifying openmp, nestedfct, c++11-lib, c++14-lang,
   c++11-lang, c++0x, c11, or gcc-c++11-lib.

PR:		216707
05 Feb 2017 04:36:22
Original commit files touched by this commit  0.8_2
Revision:433350
jbeich search for other commits by this committer
sysutils/shim: unbreak with gcc5 or later

In file included from /usr/local/include/efi/efi.h:35:0,
                 from shim.c:36:
/usr/local/include/efi/x86_64/efibind.h:88:24: fatal error: stdint.h: No such
file or directory

PR:		216707
Reported by:	antoine (via exp-run)
20 Nov 2016 09:38:09
Original commit files touched by this commit  0.8_2
Revision:426566
gerald search for other commits by this committer
Bump PORTREVISIONS for ports depending on the canonical version of GCC and
lang/gcc which have moved from GCC 4.8.5 to GCC 4.9.4 (at least under some
circumstances such as versions of FreeBSD or platforms).

In particular that is ports with USE_GCC=yes, USE_GCC=any, or one of
gcc-c++11-lib, openmp, nestedfct, c++11-lib as well as c++14-lang,
c++11-lang, c++0x, c11 requested via USES=compiler.
22 Jun 2016 10:12:46
Original commit files touched by this commit  0.8_1
Revision:417298
trasz search for other commits by this committer
Drop maintainership for some of my ports.
01 Apr 2016 14:25:18
Original commit files touched by this commit  0.8_1
Revision:412349
mat search for other commits by this committer
Remove ${PORTSDIR}/ from dependencies, categories r, s, t, and u.

With hat:	portmgr
Sponsored by:	Absolight
07 May 2015 20:24:16
Original commit files touched by this commit  0.8_1
Revision:385665
mat search for other commits by this committer
Update ports in the remaining categories to not use GH_COMMIT.

With minor cleanups to make things simpler.

With hat:	portmgr
Sponsored by:	Absolight
23 Apr 2015 20:52:36
Original commit files touched by this commit  0.8_1
Revision:384611
antoine search for other commits by this committer
Fix BUILD_DEPENDS
21 Mar 2015 12:12:03
Original commit files touched by this commit  0.8_1
Revision:381793
marino search for other commits by this committer
For traz@ ports: Change USE_GCC=4.8+ to preferred USE_GCC=yes

Approved by:	just fix it
23 Jan 2015 10:35:09
Original commit files touched by this commit  0.8_1
Revision:377720
trasz search for other commits by this committer
Install certificate and key matching what's embedded in the shim itself.

Sponsored by:	The FreeBSD Foundation
21 Jan 2015 13:48:36
Original commit files touched by this commit  0.8
Revision:377608
trasz search for other commits by this committer
Don't hardcode "gcc48"; it would break after GCC upgrade.  Don't install
*.efi files as executables; from the strip(1) point of view they are data
files (actually, they are executables, but PE, not ELF).

Sponsored by:	The FreeBSD Foundation
15 Jan 2015 10:09:36
Original commit files touched by this commit  0.8
Revision:377070
trasz search for other commits by this committer
New port: sysutils/shim

shim is a trivial EFI application that, when run, attempts to open and
execute another application. It will initially attempt to do this via the
standard EFI LoadImage() and StartImage() calls. If these fail (because secure
boot is enabled and the binary is not signed with an appropriate key, for
instance) it will then validate the binary against a built-in certificate. If
this succeeds and if the binary or signing key are not blacklisted then shim
will relocate and execute the binary.

Sponsored by:	The FreeBSD Foundation

Number of commits found: 18

Login
User Login
Create account

Servers and bandwidth provided by
New York Internet, iXsystems, and RootBSD

This site
What is FreshPorts?
About the authors
Issues
FAQ
How big is it?
The latest upgrade!
Privacy
Forums
Blog
Contact

Search
Enter Keywords:
 
more...

Latest Vulnerabilities
rustMay 15
linux-flashplayerMay 14
samba46May 14
samba47May 14
samba48May 14
php71-exifMay 11
php72-exifMay 11
php73-exifMay 11
postgresql10-serverMay 09
postgresql11-serverMay 09
postgresql11-serverMay 09
postgresql95-serverMay 09
postgresql96-serverMay 09
giteaMay 06
hylafaxMay 05

8 vulnerabilities affecting 48 ports have been reported in the past 14 days

* - modified, not new

All vulnerabilities

Last updated:
2019-05-18 02:24:37


Ports
Home
Categories
Deleted ports
Sanity Test Failures
Newsfeeds

Statistics
Graphs
NEW Graphs (Javascript)
Traffic

Calculated hourly:
Port count 36489
Broken 79
Deprecated 117
Ignore 299
Forbidden 3
Restricted 163
No CDROM 74
Vulnerable 32
Expired 34
Set to expire 90
Interactive 0
new 24 hours 8
new 48 hours16
new 7 days61
new fortnight102
new month182

Servers and bandwidth provided by
New York Internet, iXsystems, and RootBSD
Valid HTML, CSS, and RSS.
Copyright © 2000-2019 Dan Langille. All rights reserved.