[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Just had the same error in Ubuntu 14.04, but noticed that it only occured AFTER I had updated from kernel 3.19.0-30-generic #33 to 3.19.0-30-generic #34 and especially after loading any new module. Kernel 3.19.0-30-generic #33 and 3.19.0-30-generic #34 has the same path so it makes sense that it's an incompability between loading 3.19.0-30-generic #34 modules into the already running 3.19.0-30-generic #33 kernel. A simple reboot and no errors. -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-lts-raring in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
In my case: $ lsb_release -a No LSB modules are available. Distributor ID: Ubuntu Description:Ubuntu 14.04.3 LTS Release:14.04 Codename: trusty $ uname -rv 3.13.0-65-generic #105-Ubuntu SMP Mon Sep 21 18:50:58 UTC 2015 $ dmesg | grep -i glacier [1.764257] Loaded X.509 cert 'Magrathea: Glacier signing key: e1880bb8882cef95be763dfd1fabc4dc436c45ac' [310783.576233] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.577199] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.583592] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.587723] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.589683] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.591042] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.592743] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.594090] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.595807] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.596889] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.598472] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.676467] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 [310783.881365] Request for unknown module key 'Magrathea: Glacier signing key: 27cd636c818cdb452f9bcdff71219c6cf384f51a' err -11 -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-lts-raring in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Hi Folks, I have the same behavior: 3.19.0-30-generic #33-Ubuntu SMP Mon Sep 21 20:58:04 UTC 2015 No LSB modules are available. Distributor ID: Ubuntu Description:Ubuntu 15.04 Release:15.04 Codename: vivid [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] JFS: nTxBlock = 8192, nTxLock = 65536 [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] ntfs: driver 2.1.31 [Flags: R/O MODULE]. [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] QNX4 filesystem 0.2.3 registered. [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] raid6: sse2x15577 MB/s [mar. oct. 6 00:06:18 2015] raid6: sse2x25407 MB/s [mar. oct. 6 00:06:18 2015] raid6: sse2x46000 MB/s [mar. oct. 6 00:06:18 2015] raid6: using algorithm sse2x4 (6000 MB/s) [mar. oct. 6 00:06:18 2015] raid6: using ssse3x2 recovery algorithm [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 [mar. oct. 6 00:06:18 2015] xor: measuring software checksum speed [mar. oct. 6 00:06:18 2015]prefetch64-sse: 7562.000 MB/sec [mar. oct. 6 00:06:18 2015]generic_sse: 6699.000 MB/sec [mar. oct. 6 00:06:18 2015] xor: using function: prefetch64-sse (7562.000 MB/sec) [mar. oct. 6 00:06:18 2015] Request for unknown module key 'Magrathea: Glacier signing key: 08411dd668c266d59a96c625b3012497b2351542' err -11 ** Tags added: vivid -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Why is this bug set to "Fix released" for Trusty? This is still happening: $ uname -rv 3.13.0-53-generic #88-Ubuntu SMP Wed May 13 18:10:29 UTC 2015 $ modprobe xfs $ dmesg -T | tail -2 [Fri May 29 10:41:08 2015] Request for unknown module key 'Magrathea: Glacier signing key: 9aac900abd0220fb93c8be10f20d6973dab829f5' err -11 [Fri May 29 10:41:08 2015] SGI XFS with ACLs, security attributes, realtime, large block/inode numbers, no debug enabled -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Same issue $ lsb_release -r Release:14.04 $ uname -r 3.13.0-52-generic May 10 00:40:40 kernel: [...] Request for unknown module key 'Magrathea: Glacier signing key: 1981bc916ffc00599231ec5630e666e0256fd6f1' err -11 May 10 00:40:40 kernel: [...] ipt_REJECT: module verification failed: signature and/or required key missing - tainting kernel -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
This is also happening with the latest supported kernel on 14.04 LTS. We are seeing various repeated messages of "Request for unknown module key 'Magrathea: Glacier signing key: 6fca287c2573d09ca32c1980c0d763777a63d4f5' err -11" on some, but not all, machines running this. I guess it relates to the instillation option(s)? $uname -a Linux processviirs 3.13.0-52-generic #86-Ubuntu SMP Mon May 4 04:32:59 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Sorry, this is on Trusty amd64, with linux-lowlatency-lts-utopic 3.16.0.31.24 -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-lts-raring in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
I'm seeing this with linux-lowlatency-lts-utopic... -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-lts-raring in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
3.19.1 clears the issue for me: ~$ uname -a Linux g 3.19.1-031901-generic #201503080052 SMP Sun Mar 8 00:54:35 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux $ dmesg | grep Magrathea [0.922583] Loaded X.509 cert 'Magrathea: Glacier signing key: f6e44eefe0b3323a7a9c2576cad3252ee3ee7cfc' http://kernel.ubuntu.com/~kernel-ppa/mainline/v3.19.1-vivid/ -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-lts-raring in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Solved by installing the kernel from http://kernel.ubuntu.com/~kernel- ppa/mainline/daily/2015-02-10-vivid/ leading to "3.19.0-999-generic #201502092105" According to https://bugzilla.kernel.org/show_bug.cgi?id=92981 the kernel on http://kernel.ubuntu.com/~kernel-ppa/mainline/v3.19-vivid/ was built incorrectly ** Bug watch added: Linux Kernel Bug Tracker #92981 http://bugzilla.kernel.org/show_bug.cgi?id=92981 -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-lts-raring in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
I installed the amd64 version of kernel 3.19 and have the same issue reported by Sander Jonkers (jonkers). dmesg | grep -i glacier [4.179034] Loaded X.509 cert 'Magrathea: Glacier signing key: 7271576a09d86ef244371b0633e47abb75b89d' [4.208578] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.208723] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.210288] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.211696] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.213631] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.935895] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.935896] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.935902] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.936465] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.936485] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.936487] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.949235] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.949245] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [4.949359] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [5.274981] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [5.278521] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 12.106723] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 12.276910] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 12.378601] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 12.576494] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.376155] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.376172] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.380463] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.380467] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.380470] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.384260] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.392954] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.392959] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.478583] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.478680] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.478697] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.502399] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.502401] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.526737] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.526738] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.538237] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [ 15.636393] Request for unknown module key 'Magrathea: Glacier signing key:
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
FWIW: I also installed the lowlatency version of kernel 3.19, and that dmesg doesn't show the lines "Request for unknown module key 'Magrathea: Glacier signing key:" sander@superstreamer:~$ uname -a Linux superstreamer 3.19.0-031900-lowlatency #201502091451 SMP PREEMPT Mon Feb 9 14:58:45 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux sander@superstreamer:~$ dmesg | grep -i glacier [6.957630] Loaded X.509 cert 'Magrathea: Glacier signing key: 4b8b0790309384d5db8e13c15cd6ff49ef07' To be complete: before 3.19 I was running 3.19-rc7, and that dmesg neither showed the lines "Request for unknown module key 'Magrathea: Glacier signing key:" So it's something specific to 3.19 generic (amd64)? -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-lts-raring in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in linux package in Ubuntu: Fix Released Status in linux-lts-raring package in Ubuntu: Invalid Status in linux source package in Precise: Invalid Status in linux-lts-raring source package in Precise: Fix Released Status in linux source package in Quantal: Invalid Status in linux-lts-raring source package in Quantal: Invalid Status in linux source package in Saucy: Fix Released Status in linux-lts-raring source package in Saucy: Invalid Status in linux source package in Trusty: Fix Released Status in linux-lts-raring source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
I just installed kernel 3.19 on vivid (source: http://kernel.ubuntu.com /~kernel-ppa/mainline/v3.19-vivid/), and dmesg shows 129 lines with Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 So ... is this a regression bug? Or something went wrong with the signing of this kernel 3.19? $ uname -a Linux superstreamer 3.19.0-031900-generic #201502091451 SMP Mon Feb 9 14:52:52 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux $ dmesg | grep -i glacier [6.992226] Loaded X.509 cert 'Magrathea: Glacier signing key: 7271576a09d86ef244371b0633e47abb75b89d' [7.066499] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [7.066985] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [7.069196] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [7.084944] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [7.089825] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [7.156929] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [7.192863] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [7.979314] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.115413] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.119104] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.196243] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.199199] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.228059] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.273340] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.274045] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.274848] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.284877] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.286741] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.297792] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.312831] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.337451] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.337938] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.338046] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.361077] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.361692] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.363517] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.363690] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.363866] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.364217] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.370473] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.371876] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.372689] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.388289] Request for unknown module key 'Magrathea: Glacier signing key: 007271576a09d86ef244371b0633e47abb75b89d' err -11 [8.389244] Request for unknown module key 'Magrathea: Glacier signing key: 007271576
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
This bug was fixed in the package linux-lts-raring - 3.8.0-38.56~precise1 --- linux-lts-raring (3.8.0-38.56~precise1) precise; urgency=low [ Andy Whitcroft ] * module signature does not use hash type in older releases linux-lts-raring (3.8.0-38.55~precise1) precise; urgency=low [ Kamal Mostafa ] * Release Tracking Bug - LP: #1290512 [ Tim Gardner ] * [Debian] Re-sign modules after debug objcopy - LP: #1253155 linux-lts-raring (3.8.0-38.54~precise1) precise; urgency=low [ Kamal Mostafa ] * Release Tracking Bug - LP: #1290512 [ Upstream Kernel Changes ] * netfilter: nf_nat: fix access to uninitialized buffer in IRC NAT helper - LP: #1274684 - CVE-2014-1690 * crypto: ansi_cprng - Fix off by one error in non-block size request - LP: #1229981 - CVE-2013-4345 * xfs: underflow bug in xfs_attrlist_by_handle() - LP: #1256091 - CVE-2013-6382 * crypto: s390 - fix concurrency issue in aes-ctr mode - LP: #1289439 * crypto: s390 - fix des and des3_ede cbc concurrency issue - LP: #1289439 * crypto: s390 - fix des and des3_ede ctr concurrency issue - LP: #1289439 * [media] mxl111sf: Fix unintentional garbage stack read - LP: #1289439 * [media] mxl111sf: Fix compile when CONFIG_DVB_USB_MXL111SF is unset - LP: #1289439 * [media] af9035: add ID [2040:f900] Hauppauge WinTV-MiniStick 2 - LP: #1289439 * arm64: vdso: prevent ld from aligning PT_LOAD segments to 64k - LP: #1289439 * arm64: add DSB after icache flush in __flush_icache_all() - LP: #1289439 * arm64: Invalidate the TLB when replacing pmd entries during boot - LP: #1289439 * arm64: vdso: fix coarse clock handling - LP: #1289439 * arm64: vdso: update wtm fields for CLOCK_MONOTONIC_COARSE - LP: #1289439 * drm/mgag200,ast,cirrus: fix regression with drm_can_sleep conversion - LP: #1289439 * x86, hweight: Fix BUG when booting with CONFIG_GCOV_PROFILE_ALL=y - LP: #1289439 * mm/swap: fix race on swap_info reuse between swapoff and swapon - LP: #1289439 * mm: __set_page_dirty_nobuffers() uses spin_lock_irqsave() instead of spin_lock_irq() - LP: #1289439 * mm: __set_page_dirty uses spin_lock_irqsave instead of spin_lock_irq - LP: #1289439 * staging:iio:ad799x fix error_free_irq which was freeing an irq that may not have been requested - LP: #1289439 * KVM: return an error code in kvm_vm_ioctl_register_coalesced_mmio() - LP: #1289439 * block: __elv_next_request() shouldn't call into the elevator if bypassing - LP: #1289439 * power: max17040: Fix NULL pointer dereference when there is no platform_data - LP: #1289439 * s390/dump: Fix dump memory detection - LP: #1289439 * ath9k_htc: make ->sta_rc_update atomic for most calls - LP: #1289439 * ath9k_htc: Do not support PowerSave by default - LP: #1289439 * ar5523: fix usb id for Gigaset. - LP: #1289439 * ath9k: Do not support PowerSave by default - LP: #1289439 * spi: nuc900: Set SPI_LSB_FIRST for master->mode_bits if hw->pdata->lsb is true - LP: #1289439 * usb: ftdi_sio: add Mindstorms EV3 console adapter - LP: #1289439 * usb-storage: restrict bcdDevice range for Super Top in Cypress ATACB - LP: #1289439 * usb-storage: add unusual-devs entry for BlackBerry 9000 - LP: #1289439 * usb-storage: enable multi-LUN scanning when needed - LP: #1289439 * of: Fix address decoding on Bimini and js2x machines - LP: #1289439 * of: fix PCI bus match for PCIe slots - LP: #1289439 * usb: qcserial: add Netgear Aircard 340U - LP: #1289439 * USB: ftdi_sio: add Tagsys RFID Reader IDs - LP: #1289439 * mac80211: move roc cookie assignment earlier - LP: #1289439 * mac80211: release the channel in error path in start_ap - LP: #1289439 * mac80211: Fix IBSS disconnect - LP: #1289439 * mac80211: fix fragmentation code, particularly for encryption - LP: #1289439 * time: Fix overflow when HZ is smaller than 60 - LP: #1289439 * ALSA: hda - Fix mic capture on Sony VAIO Pro 11 - LP: #1289439 * VME: Correct read/write alignment algorithm - LP: #1289439 * Drivers: hv: vmbus: Don't timeout during the initial connection with host - LP: #1289439 * raw: test against runtime value of max_raw_minors - LP: #1289439 * tty: n_gsm: Fix for modems with brk in modem status control - LP: #1289439 * staging: comedi: adv_pci1710: fix analog output readback value - LP: #1289439 * xen-blkfront: handle backend CLOSED without CLOSING - LP: #1289439 * Modpost: fixed USB alias generation for ranges including 0x9 and 0xA - LP: #1289439 * fs/file.c:fdtable: avoid triggering OOMs from alloc_fdmem - LP: #1289439 * genirq: Add missing irq_to_desc export for CONFIG_SPARSE_IRQ=n - LP: #1289439 * xen: install xen/gntdev.h and xen/gntalloc.h - LP: #1289439 * ring-buffer: Fix first commit on
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Changed in: linux-lts-raring (Ubuntu Precise) Status: In Progress => Fix Committed -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux-lts-raring” package in Ubuntu: Invalid Status in “linux” source package in Precise: Invalid Status in “linux-lts-raring” source package in Precise: Fix Committed Status in “linux” source package in Quantal: Invalid Status in “linux-lts-raring” source package in Quantal: Invalid Status in “linux” source package in Saucy: Fix Released Status in “linux-lts-raring” source package in Saucy: Invalid Status in “linux” source package in Trusty: Fix Released Status in “linux-lts-raring” source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Patch for linux-lts-raring pushed to kernel-team@ for review for SRU. -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux-lts-raring” package in Ubuntu: Invalid Status in “linux” source package in Precise: Invalid Status in “linux-lts-raring” source package in Precise: In Progress Status in “linux” source package in Quantal: Invalid Status in “linux-lts-raring” source package in Quantal: Invalid Status in “linux” source package in Saucy: Fix Released Status in “linux-lts-raring” source package in Saucy: Invalid Status in “linux” source package in Trusty: Fix Released Status in “linux-lts-raring” source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Changed in: linux-lts-raring (Ubuntu Precise) Importance: Undecided => Medium -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux-lts-raring” package in Ubuntu: Invalid Status in “linux” source package in Precise: Invalid Status in “linux-lts-raring” source package in Precise: In Progress Status in “linux” source package in Quantal: Invalid Status in “linux-lts-raring” source package in Quantal: Invalid Status in “linux” source package in Saucy: Fix Released Status in “linux-lts-raring” source package in Saucy: Invalid Status in “linux” source package in Trusty: Fix Released Status in “linux-lts-raring” source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
This support does not exist before v3.7 and therefore does not affect quantal or precise. ** Changed in: linux (Ubuntu Quantal) Status: New => Invalid ** Changed in: linux (Ubuntu Quantal) Assignee: (unassigned) => Andy Whitcroft (apw) ** Changed in: linux (Ubuntu Precise) Status: New => Invalid ** Changed in: linux (Ubuntu Precise) Assignee: (unassigned) => Andy Whitcroft (apw) -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux-lts-raring” package in Ubuntu: Invalid Status in “linux” source package in Precise: Invalid Status in “linux-lts-raring” source package in Precise: In Progress Status in “linux” source package in Quantal: Invalid Status in “linux-lts-raring” source package in Quantal: Invalid Status in “linux” source package in Saucy: Fix Released Status in “linux-lts-raring” source package in Saucy: Invalid Status in “linux” source package in Trusty: Fix Released Status in “linux-lts-raring” source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Also affects: linux (Ubuntu Quantal) Importance: Undecided Status: New ** Also affects: linux-lts-raring (Ubuntu Quantal) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Precise) Importance: Undecided Status: New ** Also affects: linux-lts-raring (Ubuntu Precise) Importance: Undecided Status: New ** Changed in: linux-lts-raring (Ubuntu Saucy) Status: New => Invalid ** Changed in: linux-lts-raring (Ubuntu) Status: New => Invalid ** Changed in: linux-lts-raring (Ubuntu Quantal) Status: New => Invalid ** Changed in: linux-lts-raring (Ubuntu Precise) Status: New => In Progress ** Changed in: linux-lts-raring (Ubuntu Precise) Assignee: (unassigned) => Andy Whitcroft (apw) -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux-lts-raring” package in Ubuntu: Invalid Status in “linux” source package in Precise: New Status in “linux-lts-raring” source package in Precise: In Progress Status in “linux” source package in Quantal: New Status in “linux-lts-raring” source package in Quantal: Invalid Status in “linux” source package in Saucy: Fix Released Status in “linux-lts-raring” source package in Saucy: Invalid Status in “linux” source package in Trusty: Fix Released Status in “linux-lts-raring” source package in Trusty: Invalid Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Also affects: linux-lts-raring (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux-lts-raring” package in Ubuntu: New Status in “linux” source package in Saucy: Fix Released Status in “linux-lts-raring” source package in Saucy: New Status in “linux” source package in Trusty: Fix Released Status in “linux-lts-raring” source package in Trusty: New Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
This bug was fixed in the package linux - 3.11.0-15.23 --- linux (3.11.0-15.23) saucy; urgency=low [Brad Figg] * Release Tracking Bug - LP: #1259259 [ Tim Gardner ] * [Config] Build-in ohci-pci - LP: #1244176 linux (3.11.0-15.22) saucy; urgency=low [Brad Figg] * Release Tracking Bug - LP: #1257092 [ Andy Whitcroft ] * [Config] CONFIG_DEBUG_BUGVERBOSE=y - LP: #1252353 [ Benjamin Tissoires ] * SAUCE: (no-up) HID: appleir: force input to be set - LP: #1244505 [ John Johansen ] * SAUCE: (no-up) apparmor: Fix tasks not subject to, reloaded policy - LP: #1236455 [ Kamal Mostafa ] * SAUCE: (no-up) drm/i915: i915.disable_pch_pwm overrides PCH_PWM_ENABLE quirk - LP: #1163720 [ Manoj Iyer ] * SAUCE: Enable earlyprintk via the PL011. - LP: #1248233 [ Paolo Pisati ] * [Config] armhf: RTC_DRV_PL031=y - LP: #1252242 * [Config] armhf: CPU_FREQ=y && ARM_HIGHBANK_CPUFREQ=y - LP: #1249397 [ Rob Herring ] * [Config] armhf: PSTORE_RAM=y and PSTORE_CONSOLE=y - LP: #1248492 * SAUCE: net: calxedaxgmac: add mac address learning - LP: #1248233 [ Tim Gardner ] * [Debian] Re-sign modules after debug objcopy - LP: #1253155 [ Upstream Kernel Changes ] * Revert "rt2x00pci: Use PCI MSIs whenever possible" - LP: #1257037 * Revert "epoll: use freezable blocking call" - LP: #1257037 * Revert "select: use freezable blocking call" - LP: #1257037 * Revert "ima: policy for RAMFS" - LP: #1257037 * ARM: tlb: don't perform inner-shareable invalidation for local TLB ops - LP: #1239800 * ARM: 7855/1: Add check for Cortex-A15 errata 798181 ECO - LP: #1239800 * mfd: rtsx: Modify rts5249_optimize_phy - LP: #1255297 * usb: musb: start musb on the udc side, too - LP: #1257037 * usb-storage: add quirk for mandatory READ_CAPACITY_16 - LP: #1257037 * USB: support new huawei devices in option.c - LP: #1257037 * USB: quirks.c: add one device that cannot deal with suspension - LP: #1257037 * USB: quirks: add touchscreen that is dazzeled by remote wakeup - LP: #1257037 * USB: serial: ftdi_sio: add id for Z3X Box device - LP: #1257037 * xhci: Don't enable/disable RWE on bus suspend/resume. - LP: #1257037 * cifs: Fix inability to write files >2GB to SMB2/3 shares - LP: #1257037 * x86: Update UV3 hub revision ID - LP: #1257037 * cpufreq: s3c64xx: Rename index to driver_data - LP: #1257037 * cpufreq / intel_pstate: Fix max_perf_pct on resume - LP: #1257037 * bcache: Fixed incorrect order of arguments to bio_alloc_bioset() - LP: #1257037 * HID: wiimote: add LEGO-wiimote VID - LP: #1257037 * cgroup: fix to break the while loop in cgroup_attach_task() correctly - LP: #1257037 * mac80211: correctly close cancelled scans - LP: #1257037 * mac80211: drop spoofed packets in ad-hoc mode - LP: #1257037 * mac80211: use sta_info_get_bss() for nl80211 tx and client probing - LP: #1257037 * mac80211: update sta->last_rx on acked tx frames - LP: #1257037 * mac80211: fix crash if bitrate calculation goes wrong - LP: #1257037 * ath9k: fix tx queue scheduling after channel changes - LP: #1257037 * cfg80211: use the correct macro to check for active monitor support - LP: #1257037 * cfg80211: fix warning when using WEXT for IBSS - LP: #1257037 * mwifiex: fix SDIO interrupt lost issue - LP: #1257037 * rtlwifi: rtl8192cu: Fix error in pointer arithmetic - LP: #1257037 * iwlwifi: mvm: call ieee80211_scan_completed when needed - LP: #1257037 * iwlwifi: pcie: add SKUs for 6000, 6005 and 6235 series - LP: #1257037 * jfs: fix error path in ialloc - LP: #1257037 * can: at91-can: fix device to driver data mapping for platform devices - LP: #1257037 * can: flexcan: fix mx28 detection by rearanging OF match table - LP: #1257037 * can: flexcan: flexcan_chip_start: fix regression, mark one MB for TX and abort pending TX - LP: #1257037 * SCSI: BusLogic: Fix an oops when intializing multimaster adapter - LP: #1257037 * SCSI: sd: call blk_pm_runtime_init before add_disk - LP: #1257037 * ecryptfs: Fix memory leakage in keystore.c - LP: #1257037 * raid5: set bio bi_vcnt 0 for discard request - LP: #1257037 * raid5: avoid finding "discard" stripe - LP: #1257037 * libata: make ata_eh_qc_retry() bump scmd->allowed on bogus failures - LP: #1257037 * md: avoid deadlock when md_set_badblocks. - LP: #1257037 * md: Fix skipping recovery for read-only arrays. - LP: #1257037 * target: Fix assignment of LUN in tracepoints - LP: #1257037 * target/pscsi: fix return value check - LP: #1257037 * vhost/scsi: Fix incorrect usage of get_user_pages_fast write parameter - LP: #1257037 * clockevents: Sanitize ticks to nsec conversion - LP: #1257037 * parisc: Do not crash 64bit SMP kerne
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Changed in: linux (Ubuntu Saucy) Status: Fix Released => Fix Committed -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
I'm so sorry. This operation is my mistake. Status "Fix Commited" is right. But I can't rollback status. Somebody, could you change status? -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Released Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Changed in: linux (Ubuntu Saucy) Status: Fix Committed => Fix Released -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Released Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Tags removed: verification-needed-saucy ** Tags added: verification-done-saucy -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
module "video" is not tainting the kernel anymore with this kernel version from proposed linux-3.11.0-15-generic -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
This bug is awaiting verification that the kernel in -proposed solves the problem. Please test the kernel and update this bug with the results. If the problem is solved, change the tag 'verification-needed- saucy' to 'verification-done-saucy'. If verification is not done by 5 working days from today, this fix will be dropped from the source code, and this bug will be closed. See https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to enable and use -proposed. Thank you! ** Tags added: verification-needed-saucy -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Branch linked: lp:ubuntu/precise-proposed/linux-lts-saucy -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
This bug was fixed in the package linux - 3.12.0-4.12 --- linux (3.12.0-4.12) trusty; urgency=low [ Andy Whitcroft ] * [Config] switch build-depends to libiberty-dev Fixes FTBS * Release tracker - LP: #1255322 -- Tim GardnerTue, 26 Nov 2013 14:44:04 -0700 ** Changed in: linux (Ubuntu Trusty) Status: Fix Committed => Fix Released -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Released Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Released Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Changed in: linux (Ubuntu Saucy) Importance: Undecided => Medium -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Committed Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Committed Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Changed in: linux (Ubuntu Trusty) Status: In Progress => Fix Committed ** Changed in: linux (Ubuntu Saucy) Status: In Progress => Fix Committed -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Fix Committed Status in “linux” source package in Saucy: Fix Committed Status in “linux” source package in Trusty: Fix Committed Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Changed in: linux (Ubuntu Saucy) Status: New => In Progress ** Changed in: linux (Ubuntu Saucy) Assignee: (unassigned) => Tim Gardner (timg-tpi) ** Changed in: linux (Ubuntu Trusty) Status: Confirmed => In Progress -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: In Progress Status in “linux” source package in Saucy: In Progress Status in “linux” source package in Trusty: In Progress Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
** Also affects: linux (Ubuntu Trusty) Importance: High Assignee: Tim Gardner (timg-tpi) Status: Confirmed ** Also affects: linux (Ubuntu Saucy) Importance: Undecided Status: New -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Confirmed Status in “linux” source package in Saucy: New Status in “linux” source package in Trusty: Confirmed Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
This appears to be due to an objcopy that normally only happens on the buildds when a gnu debug section is added to a module ELF, e.g., objcopy --add-gnu-debuglink=$(dbgpkgdir)/usr/lib/debug/$$module $(pkgdir)/$$module ** Changed in: linux (Ubuntu) Assignee: (unassigned) => Tim Gardner (timg-tpi) -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Confirmed Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
I get the "module verification failed" messages for libahci.ko. If the module is signed, running: hexdump -C /path/to/module | tail -n 5 should show the string "~Module signature appended~" at the end. I see that with i915.ko for example, but with video.ko and libahci.ko I do not. After a little poking around I'm fairly well convinced that the ones lacking signatures are all in the generic inclusion list. These modules must be getting stripped in such a way that the signatures are getting removed, or something like that. -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Confirmed Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Similar bug reports: bug 1237394 bug 1241251 ** Changed in: linux (Ubuntu) Status: New => Confirmed ** Changed in: linux (Ubuntu) Importance: Undecided => High ** Tags added: kernel-key -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: Confirmed Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp
[Kernel-packages] [Bug 1253155] Re: Failure to validate module signature at boot time
Attaching an older kernel log which contains the examples mentioned in the report. ** Attachment added: "kern.log.1" https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+attachment/3913419/+files/kern.log.1 -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1253155 Title: Failure to validate module signature at boot time Status in “linux” package in Ubuntu: New Bug description: When booting under secureboot and using a signed kernel, it's expected that all modules shipped alongside the kernel should validate and load successfully without tainting the kernel. Unfortunately it doesn't seem to always be the case. Looking through my kernel logs, I see: Nov 15 10:35:24 castiana kernel: [1.635132] video: module verification failed: signature and/or required key missing - tainting kernel or Nov 12 12:58:48 castiana kernel: [213981.753326] Request for unknown module key 'Magrathea: Glacier signing key: f440a253eb498df923d438caa09b3b5d99308405' err -11 ProblemType: Bug DistroRelease: Ubuntu 14.04 Package: linux-image-3.12.0-2-generic 3.12.0-2.7 ProcVersionSignature: Ubuntu 3.12.0-2.7-generic 3.12.0 Uname: Linux 3.12.0-2-generic x86_64 ApportVersion: 2.12.7-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USERPID ACCESS COMMAND /dev/snd/controlC1: stgraber 2721 F pulseaudio /dev/snd/controlC0: stgraber 2721 F pulseaudio /dev/snd/pcmC0D0c: stgraber 2721 F...m pulseaudio /dev/snd/pcmC0D0p: stgraber 2721 F...m pulseaudio CurrentDesktop: Unity Date: Wed Nov 20 11:59:57 2013 InstallationDate: Installed on 2013-04-21 (213 days ago) InstallationMedia: Ubuntu 13.04 "Raring Ringtail" - Release amd64 (20130420) MachineType: LENOVO 2306CT0 ProcFB: 0 inteldrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-3.12.0-2-generic.efi.signed root=UUID=14de4e20-b139-488e-863f-ec710f776851 ro quiet splash "acpi_osi=!Windows 2012" vt.handoff=7 RelatedPackageVersions: linux-restricted-modules-3.12.0-2-generic N/A linux-backports-modules-3.12.0-2-generic N/A linux-firmware1.117 SourcePackage: linux StagingDrivers: zram UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 08/27/2013 dmi.bios.vendor: LENOVO dmi.bios.version: G2ET96WW (2.56 ) dmi.board.asset.tag: Not Available dmi.board.name: 2306CT0 dmi.board.vendor: LENOVO dmi.board.version: NO DPK dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: Not Available dmi.modalias: dmi:bvnLENOVO:bvrG2ET96WW(2.56):bd08/27/2013:svnLENOVO:pn2306CT0:pvrThinkPadX230:rvnLENOVO:rn2306CT0:rvrNODPK:cvnLENOVO:ct10:cvrNotAvailable: dmi.product.name: 2306CT0 dmi.product.version: ThinkPad X230 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1253155/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp