Bug 2094055

Summary: Bump coreos-installer for s390x Secure Execution
Product: OpenShift Container Platform Reporter: Benjamin Gilbert <bgilbert>
Component: RHCOSAssignee: Benjamin Gilbert <bgilbert>
Status: CLOSED ERRATA QA Contact: Michael Nguyen <mnguyen>
Severity: medium Docs Contact:
Priority: medium    
Version: 4.11CC: dornelas, jligon, jschinta, mrussell, nstielau
Target Milestone: ---   
Target Release: 4.11.0   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: coreos-installer-0.15.0-2.rhaos4.11.el8 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2022-08-10 11:16:21 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2093126    
Bug Blocks:    

Description Benjamin Gilbert 2022-06-06 17:25:45 UTC
Bump coreos-installer in 4.11 to add s390x Secure Execution support.

Comment 1 RHCOS Bug Bot 2022-06-27 15:42:53 UTC
This bug has been reported fixed in a new RHCOS build and is ready for QE verification.  To mark the bug verified, set the Verified field to Tested.  This bug will automatically move to MODIFIED once the fix has landed in a new bootimage.

Comment 2 jschinta 2022-06-30 13:40:01 UTC
Tested with rhcos-411.86.202206301021-0-qemu.s390x.qcow2, the rpm is the correct version and rdcore has the --secex-mode flag:


[core@cosa-devsh ~]$ rpm -qa | grep coreos-installer
coreos-installer-0.15.0-2.rhaos4.11.el8.s390x
coreos-installer-bootinfra-0.15.0-2.rhaos4.11.el8.s390x

[core@cosa-devsh ~]$ /usr/lib/dracut/modules.d/50rdcore/rdcore zipl --help
rdcore-zipl
Runs zipl

USAGE:
    rdcore zipl [OPTIONS] --boot-mount <BOOT_MOUNT>

OPTIONS:
        --boot-mount <BOOT_MOUNT>    Boot device containing BLS entries to use
        --secex-mode <SECEX_MODE>    Zipl mode for Secure Execution [default: auto] [possible values: auto, enforce, disable]
        --rootfs <ROOTFS>            Path to rootfs
        --hostkey <HOSTKEY>          Path to hostkey
        --kargs <KARGS>              Extra kargs
    -h, --help                       Print help information

Comment 4 RHCOS Bug Bot 2022-06-30 22:16:24 UTC
The fix for this bug has landed in a bootimage bump, as tracked in bug 2093126 (now in status MODIFIED).  Moving this bug to MODIFIED.

Comment 7 Michael Nguyen 2022-07-05 19:53:31 UTC
Moved to verified based on pre-verification.

Comment 8 errata-xmlrpc 2022-08-10 11:16:21 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Important: OpenShift Container Platform 4.11.0 bug fix and security update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2022:5069