Hide Forgot
In RHEL-8.1, edk2 is based on upstream edk2-stable201903. For bug 1616029, we need the OpenSSL-1.1.1 enablement from upstream edk2-stable201905: https://github.com/tianocore/edk2/releases/tag/edk2-stable201905 But then we might as well rebase to edk2-stable201908, which has been released recently: https://github.com/tianocore/edk2/releases/tag/edk2-stable201908
I'm not aware of any bugs that we intend to fix with this rebase, hence setting Doc Type to "Rebase: Enhancements Only" (see comment#0 why we need the rebase in the first place).
QE: please run the RHEL test plan for edk2 (aka "OVMF" in RHEL7) as usual after rebases. In other words, only sanity checking is needed. Thanks!
According to Comment 5, do sanity testing. The core functions work as expected: 1. release OS installation with secure boot mode, works well. 2. boot release OS with secure boot mode, works well. 3. not release OS can't install with secure boot mode. The existent issue: enalbe https in OVMF track by Bug 1536624 - HTTPS enablement in OVMF The new issue: Failed to enroll keys track by Bug 1785529 - Failed to enroll keys when run EnrollDefaultKeys.efi in UEFI shell The new package "edk2-20190829git37eef91017ad-4.el8" has come out, so I think set status of this bug to VERIFIED. And track the issues by individual bugs base on the latest version. If I was wrong, please correct me. Thank you.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2020:1712