>>> ima-evm-utils: Building community/ima-evm-utils 1.6.2-r1 (using abuild 3.15.0-r0) started Fri, 10 Oct 2025 07:18:42 +0000 >>> ima-evm-utils: Validating /home/udu/aports/community/ima-evm-utils/APKBUILD... >>> ima-evm-utils: Analyzing dependencies... >>> ima-evm-utils: Installing for build: build-base asciidoc attr-dev autoconf automake bash diffutils docbook-xsl keyutils-dev libtool libxslt linux-headers openssl-dev>3 tpm2-tss-dev xxd attr e2fsprogs e2fsprogs-extra gawk util-linux-misc WARNING: opening /home/udu/packages//community: No such file or directory WARNING: opening /home/udu/packages//main: No such file or directory fetch http://dl-cdn.alpinelinux.org/alpine/v3.22/main/x86_64/APKINDEX.tar.gz fetch http://dl-cdn.alpinelinux.org/alpine/v3.22/community/x86_64/APKINDEX.tar.gz (1/64) Installing libxml2 (2.13.9-r0) (2/64) Installing libxml2-utils (2.13.9-r0) (3/64) Installing docbook-xml (4.5-r10) Executing docbook-xml-4.5-r10.post-install (4/64) Installing libxslt (1.1.43-r3) (5/64) Installing docbook-xsl-ns (1.79.2-r11) Executing docbook-xsl-ns-1.79.2-r11.post-install (6/64) Installing docbook-xsl-nons (1.79.2-r11) Executing docbook-xsl-nons-1.79.2-r11.post-install (7/64) Installing docbook-xsl (1.79.2-r11) (8/64) Installing asciidoc-pyc (10.2.1-r0) (9/64) Installing asciidoc (10.2.1-r0) (10/64) Installing libattr (2.5.2-r2) (11/64) Installing attr-dev (2.5.2-r2) (12/64) Installing m4 (1.4.19-r4) (13/64) Installing perl (5.40.3-r0) (14/64) Installing autoconf (2.72-r1) (15/64) Installing automake (1.17-r1) (16/64) Installing diffutils (3.12-r0) (17/64) Installing keyutils-libs (1.6.3-r4) (18/64) Installing keyutils-dev (1.6.3-r4) (19/64) Installing libltdl (2.5.4-r1) (20/64) Installing libtool (2.5.4-r1) (21/64) Installing linux-headers (6.14.2-r0) (22/64) Installing openssl-dev (3.5.4-r0) (23/64) Installing json-c (0.18-r1) (24/64) Installing json-c-dev (0.18-r1) (25/64) Installing brotli (1.1.0-r2) (26/64) Installing brotli-dev (1.1.0-r2) (27/64) Installing c-ares-dev (1.34.5-r0) (28/64) Installing libidn2-dev (2.3.7-r0) (29/64) Installing libpsl-utils (0.21.5-r3) (30/64) Installing libpsl-dev (0.21.5-r3) (31/64) Installing nghttp2-dev (1.65.0-r0) (32/64) Installing zlib-dev (1.3.1-r2) (33/64) Installing zstd (1.5.7-r0) (34/64) Installing zstd-dev (1.5.7-r0) (35/64) Installing curl-dev (8.14.1-r2) (36/64) Installing libeconf (0.6.3-r0) (37/64) Installing libblkid (2.41-r9) (38/64) Installing libuuid (2.41-r9) (39/64) Installing libfdisk (2.41-r9) (40/64) Installing liblastlog2 (2.41-r9) (41/64) Installing libmount (2.41-r9) (42/64) Installing libsmartcols (2.41-r9) (43/64) Installing sqlite (3.49.2-r1) (44/64) Installing sqlite-dev (3.49.2-r1) (45/64) Installing util-linux-dev (2.41-r9) (46/64) Installing tpm2-tss-mu (4.1.2-r0) (47/64) Installing tpm2-tss-tcti-spi-helper (4.1.2-r0) (48/64) Installing tpm2-tss (4.1.2-r0) (49/64) Installing tpm2-tss-dev (4.1.2-r0) (50/64) Installing xxd (9.1.1566-r0) (51/64) Installing attr (2.5.2-r2) (52/64) Installing libcom_err (1.47.2-r2) (53/64) Installing e2fsprogs-libs (1.47.2-r2) (54/64) Installing e2fsprogs (1.47.2-r2) (55/64) Installing e2fsprogs-extra (1.47.2-r2) (56/64) Installing gawk (5.3.2-r2) (57/64) Installing setarch (2.41-r9) (58/64) Installing skalibs-libs (2.14.4.0-r0) (59/64) Installing utmps-libs (0.1.3.1-r0) (60/64) Installing util-linux-misc (2.41-r9) (61/64) Installing .makedepends-ima-evm-utils (20251010.071843) (62/64) Installing perl-error (0.17030-r0) (63/64) Installing perl-git (2.49.1-r0) (64/64) Installing git-perl (2.49.1-r0) Executing busybox-1.37.0-r19.trigger OK: 390 MiB in 153 packages >>> ima-evm-utils: Cleaning up srcdir >>> ima-evm-utils: Cleaning up pkgdir >>> ima-evm-utils: Cleaning up tmpdir >>> ima-evm-utils: Fetching https://github.com/mimizohar/ima-evm-utils/releases/download/v1.6.2/ima-evm-utils-1.6.2.tar.gz >>> ima-evm-utils: Fetching https://github.com/mimizohar/ima-evm-utils/releases/download/v1.6.2/ima-evm-utils-1.6.2.tar.gz >>> ima-evm-utils: Checking sha512sums... ima-evm-utils-1.6.2.tar.gz: OK >>> ima-evm-utils: Unpacking /var/cache/distfiles/ima-evm-utils-1.6.2.tar.gz... libtoolize: putting auxiliary files in '.'. libtoolize: copying file './ltmain.sh' libtoolize: putting macros in AC_CONFIG_MACRO_DIRS, 'm4'. libtoolize: copying file 'm4/libtool.m4' libtoolize: copying file 'm4/ltoptions.m4' libtoolize: copying file 'm4/ltsugar.m4' libtoolize: copying file 'm4/ltversion.m4' libtoolize: copying file 'm4/lt~obsolete.m4' configure.ac:10: installing './compile' configure.ac:9: installing './config.guess' configure.ac:9: installing './config.sub' configure.ac:5: installing './install-sh' configure.ac:5: installing './missing' src/Makefile.am: installing './depcomp' parallel-tests: installing './test-driver' checking for a BSD-compatible install... /usr/bin/install -c checking whether sleep supports fractional seconds... yes checking filesystem timestamp resolution... 2 checking whether build environment is sane... yes checking for a race-free mkdir -p... /bin/mkdir -p checking for gawk... gawk checking whether make sets $(MAKE)... yes checking whether make supports nested variables... yes checking xargs -n works... yes checking build system type... x86_64-alpine-linux-musl checking host system type... x86_64-alpine-linux-musl checking whether make supports the include directive... yes (GNU style) checking for x86_64-alpine-linux-musl-gcc... cc checking whether the C compiler works... yes checking for C compiler default output file name... a.out checking for suffix of executables... checking whether we are cross compiling... no checking for suffix of object files... o checking whether the compiler supports GNU C... yes checking whether cc accepts -g... yes checking for cc option to enable C11 features... none needed checking whether cc understands -c and -o together... yes checking dependency style of cc... gcc3 checking for stdio.h... yes checking for stdlib.h... yes checking for string.h... yes checking for inttypes.h... yes checking for stdint.h... yes checking for strings.h... yes checking for sys/stat.h... yes checking for sys/types.h... yes checking for unistd.h... yes checking for wchar.h... yes checking for minix/config.h... no checking whether it is safe to define __EXTENSIONS__... yes checking whether _XOPEN_SOURCE should be defined... no checking for x86_64-alpine-linux-musl-gcc... (cached) cc checking whether the compiler supports GNU C... (cached) yes checking whether cc accepts -g... (cached) yes checking for cc option to enable C11 features... (cached) none needed checking whether cc understands -c and -o together... (cached) yes checking dependency style of cc... (cached) gcc3 checking for pandoc... no checking how to print strings... printf checking for a sed that does not truncate output... /bin/sed checking for grep that handles long lines and -e... /bin/grep checking for egrep... /bin/grep -E checking for fgrep... /bin/grep -F checking for ld used by cc... /usr/x86_64-alpine-linux-musl/bin/ld checking if the linker (/usr/x86_64-alpine-linux-musl/bin/ld) is GNU ld... yes checking for BSD- or MS-compatible name lister (nm)... /usr/bin/nm -B checking the name lister (/usr/bin/nm -B) interface... BSD nm checking whether ln -s works... yes checking the maximum length of command line arguments... 98304 checking how to convert x86_64-alpine-linux-musl file names to x86_64-alpine-linux-musl format... func_convert_file_noop checking how to convert x86_64-alpine-linux-musl file names to toolchain format... func_convert_file_noop checking for /usr/x86_64-alpine-linux-musl/bin/ld option to reload object files... -r checking for file... file checking for x86_64-alpine-linux-musl-objdump... no checking for objdump... objdump checking how to recognize dependent libraries... pass_all checking for x86_64-alpine-linux-musl-dlltool... no checking for dlltool... no checking how to associate runtime and link libraries... printf %s\n checking for x86_64-alpine-linux-musl-ranlib... no checking for ranlib... ranlib checking for x86_64-alpine-linux-musl-ar... no checking for ar... ar checking for archiver @FILE support... @ checking for x86_64-alpine-linux-musl-strip... no checking for strip... strip checking command to parse /usr/bin/nm -B output from cc object... ok checking for sysroot... no checking for a working dd... /bin/dd checking how to truncate binary pipes... /bin/dd bs=4096 count=1 checking for x86_64-alpine-linux-musl-mt... no checking for mt... no checking if : is a manifest tool... no checking for dlfcn.h... yes checking for objdir... .libs checking if cc supports -fno-rtti -fno-exceptions... no checking for cc option to produce PIC... -fPIC -DPIC checking if cc PIC flag -fPIC -DPIC works... yes checking if cc static flag -static works... yes checking if cc supports -c -o file.o... yes checking if cc supports -c -o file.o... (cached) yes checking whether the cc linker (/usr/x86_64-alpine-linux-musl/bin/ld -m elf_x86_64) supports shared libraries... yes checking whether -lc should be explicitly linked in... no checking dynamic linker characteristics... GNU/Linux ld.so checking how to hardcode library paths into programs... immediate checking whether stripping libraries is possible... yes checking if libtool supports shared libraries... yes checking whether to build shared libraries... yes checking whether to build static libraries... no checking for x86_64-alpine-linux-musl-pkg-config... no checking for pkg-config... /usr/bin/pkg-config checking pkg-config is at least version 0.9.0... yes checking for libcrypto >= 0.9.8 ... yes checking for unistd.h... (cached) yes checking for openssl/conf.h... yes checking for Esys_Free in -ltss2-esys... no checking for Tss2_RC_Decode in -ltss2-rc... no checking for ibmtss/tss.h... no checking for sys/xattr.h... yes checking for keyutils.h... yes checking for ENGINE_init in -lcrypto... yes checking for openssl/engine.h... yes checking for OSSL_PROVIDER_load in -lcrypto... yes checking whether to enable debug... yes checking for xmlcatalog... /usr/bin/xmlcatalog checking for XML catalog (/etc/xml/catalog)... found configure: using /usr/share/xml/docbook/xsl-stylesheets-1.79.2-nons/manpages/docbook.xsl for generating doc checking for a sed that does not truncate output... (cached) /bin/sed checking for /lib/modules/6.8.12-11-pve/source/include/uapi/linux/hash_info.h... no configure: WARNING: /lib/modules/6.8.12-11-pve/source/include/uapi/linux/hash_info.h not found. using Lsha256E algorithm as default hash algorith checking that generated files are newer than configure... done configure: creating ./config.status config.status: creating Makefile config.status: creating src/Makefile config.status: creating tests/Makefile config.status: creating doc/Makefile config.status: creating doc/sf/Makefile config.status: creating packaging/ima-evm-utils.spec config.status: creating config.h config.status: executing depfiles commands config.status: executing libtool commands Configuration: debug: yes default-hash: Lsha256E openssl-conf: yes tss2-esys: no tss2-rc-decode: no ibmtss: no sigv1: no engine: yes provider: yes doc: yes pandoc: no make all-recursive make[1]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2' Making all in src make[2]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' ./hash_info.gen /lib/modules/6.8.12-11-pve/source >hash_info.h make all-am make[3]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' cc -DHAVE_CONFIG_H -I. -I.. -I.. -include config.h -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -MT evmctl-evmctl.o -MD -MP -MF .deps/evmctl-evmctl.Tpo -c -o evmctl-evmctl.o `test -f 'evmctl.c' || echo './'`evmctl.c cc -DHAVE_CONFIG_H -I. -I.. -I.. -include config.h -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -MT evmctl-utils.o -MD -MP -MF .deps/evmctl-utils.Tpo -c -o evmctl-utils.o `test -f 'utils.c' || echo './'`utils.c cc -DHAVE_CONFIG_H -I. -I.. -I.. -include config.h -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -MT evmctl-pcr_tsspcrread.o -MD -MP -MF .deps/evmctl-pcr_tsspcrread.Tpo -c -o evmctl-pcr_tsspcrread.o `test -f 'pcr_tsspcrread.c' || echo './'`pcr_tsspcrread.c /bin/sh ../libtool --tag=CC --mode=compile cc -DHAVE_CONFIG_H -I. -I.. -I.. -include config.h -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -MT libimaevm_la-libimaevm.lo -MD -MP -MF .deps/libimaevm_la-libimaevm.Tpo -c -o libimaevm_la-libimaevm.lo `test -f 'libimaevm.c' || echo './'`libimaevm.c libtool: compile: cc -DHAVE_CONFIG_H -I. -I.. -I.. -include config.h -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -MT libimaevm_la-libimaevm.lo -MD -MP -MF .deps/libimaevm_la-libimaevm.Tpo -c libimaevm.c -fPIC -DPIC -o .libs/libimaevm_la-libimaevm.o mv -f .deps/evmctl-utils.Tpo .deps/evmctl-utils.Po mv -f .deps/evmctl-pcr_tsspcrread.Tpo .deps/evmctl-pcr_tsspcrread.Po evmctl.c: In function 'setup_engine': evmctl.c:3047:9: warning: 'ENGINE_by_id' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 3047 | ENGINE *eng = ENGINE_by_id(engine_id); | ^~~~~~ In file included from evmctl.c:46: /usr/include/openssl/engine.h:336:31: note: declared here 336 | OSSL_DEPRECATEDIN_3_0 ENGINE *ENGINE_by_id(const char *id); | ^~~~~~~~~~~~ evmctl.c:3052:9: warning: 'ENGINE_init' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 3052 | } else if (!ENGINE_init(eng)) { | ^ /usr/include/openssl/engine.h:620:27: note: declared here 620 | OSSL_DEPRECATEDIN_3_0 int ENGINE_init(ENGINE *e); | ^~~~~~~~~~~ evmctl.c:3055:17: warning: 'ENGINE_free' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 3055 | ENGINE_free(eng); | ^~~~~~~~~~~ /usr/include/openssl/engine.h:493:27: note: declared here 493 | OSSL_DEPRECATEDIN_3_0 int ENGINE_free(ENGINE *e); | ^~~~~~~~~~~ evmctl.c:3059:17: warning: 'ENGINE_set_default' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 3059 | ENGINE_set_default(eng, ENGINE_METHOD_ALL); | ^~~~~~~~~~~~~~~~~~ /usr/include/openssl/engine.h:708:27: note: declared here 708 | OSSL_DEPRECATEDIN_3_0 int ENGINE_set_default(ENGINE *e, unsigned int flags); | ^~~~~~~~~~~~~~~~~~ evmctl.c: In function 'main': evmctl.c:3313:17: warning: 'ENGINE_finish' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 3313 | ENGINE_finish(access_info.u.engine); | ^~~~~~~~~~~~~ /usr/include/openssl/engine.h:628:27: note: declared here 628 | OSSL_DEPRECATEDIN_3_0 int ENGINE_finish(ENGINE *e); | ^~~~~~~~~~~~~ evmctl.c:3314:17: warning: 'ENGINE_free' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 3314 | ENGINE_free(access_info.u.engine); | ^~~~~~~~~~~ /usr/include/openssl/engine.h:493:27: note: declared here 493 | OSSL_DEPRECATEDIN_3_0 int ENGINE_free(ENGINE *e); | ^~~~~~~~~~~ libimaevm.c: In function 'read_priv_pkey_engine': libimaevm.c:1037:17: warning: 'ENGINE_ctrl_cmd_string' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 1037 | if (!ENGINE_ctrl_cmd_string(e, "PIN", keypass, 0)) { | ^~ In file included from libimaevm.c:42: /usr/include/openssl/engine.h:479:5: note: declared here 479 | int ENGINE_ctrl_cmd_string(ENGINE *e, const char *cmd_name, const char *arg, | ^~~~~~~~~~~~~~~~~~~~~~ libimaevm.c:1042:9: warning: 'ENGINE_load_private_key' is deprecated: Since OpenSSL 3.0 [-Wdeprecated-declarations] 1042 | pkey = ENGINE_load_private_key(e, keyfile, NULL, NULL); | ^~~~ /usr/include/openssl/engine.h:638:11: note: declared here 638 | EVP_PKEY *ENGINE_load_private_key(ENGINE *e, const char *key_id, | ^~~~~~~~~~~~~~~~~~~~~~~ mv -f .deps/libimaevm_la-libimaevm.Tpo .deps/libimaevm_la-libimaevm.Plo /bin/sh ../libtool --tag=CC --mode=link cc -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -version-info 5:0:0 -Wl,--as-needed,-O1,--sort-common -Wl,-z,pack-relative-relocs -o libimaevm.la -rpath /usr/lib libimaevm_la-libimaevm.lo -lcrypto -lcrypto -lcrypto libtool: link: cc -shared -fPIC -DPIC .libs/libimaevm_la-libimaevm.o -lcrypto -Os -Werror=format-security -g -O1 -Wl,--as-needed -Wl,-O1 -Wl,--sort-common -Wl,-z -Wl,pack-relative-relocs -Wl,-soname -Wl,libimaevm.so.5 -o .libs/libimaevm.so.5.0.0 libtool: link: (cd ".libs" && rm -f "libimaevm.so.5" && ln -s "libimaevm.so.5.0.0" "libimaevm.so.5") libtool: link: (cd ".libs" && rm -f "libimaevm.so" && ln -s "libimaevm.so.5.0.0" "libimaevm.so") libtool: link: ( cd ".libs" && rm -f "libimaevm.la" && ln -s "../libimaevm.la" "libimaevm.la" ) mv -f .deps/evmctl-evmctl.Tpo .deps/evmctl-evmctl.Po /bin/sh ../libtool --tag=CC --mode=link cc -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -Wl,--as-needed,-O1,--sort-common -Wl,-z,pack-relative-relocs -o evmctl evmctl-evmctl.o evmctl-utils.o evmctl-pcr_tsspcrread.o -lcrypto -lkeyutils libimaevm.la -lcrypto -lcrypto libtool: link: cc -DCONFIG_IMA_EVM_ENGINE -DCONFIG_IMA_EVM_PROVIDER -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -Wl,--as-needed -Wl,-O1 -Wl,--sort-common -Wl,-z -Wl,pack-relative-relocs -o .libs/evmctl evmctl-evmctl.o evmctl-utils.o evmctl-pcr_tsspcrread.o -lkeyutils ./.libs/libimaevm.so -lcrypto make[3]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' make[2]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' Making all in tests make[2]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make[2]: Nothing to be done for 'all'. make[2]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make[2]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2' asciidoc -d manpage -b docbook -o evmctl.1.xsl README xsltproc --nonet -o evmctl.1 /usr/share/xml/docbook/xsl-stylesheets-1.79.2-nons/manpages/docbook.xsl evmctl.1.xsl Note: Writing evmctl.1 rm -f evmctl.1.xsl make[2]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2' make[1]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2' Making check in src make[1]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' make check-am make[2]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' make[2]: Nothing to be done for 'check-am'. make[2]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' make[1]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/src' Making check in tests make[1]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make test_mmap ima_hash.test sign_verify.test boot_aggregate.test fsverity.test portable_signatures.test ima_policy_check.test mmap_check.test evm_hmac.test make[2]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' cc -DHAVE_CONFIG_H -I. -I.. -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -MT test_mmap.o -MD -MP -MF .deps/test_mmap.Tpo -c -o test_mmap.o test_mmap.c make[2]: Nothing to be done for 'ima_hash.test'. make[2]: Nothing to be done for 'sign_verify.test'. make[2]: Nothing to be done for 'boot_aggregate.test'. make[2]: Nothing to be done for 'fsverity.test'. make[2]: Nothing to be done for 'portable_signatures.test'. make[2]: Nothing to be done for 'ima_policy_check.test'. make[2]: Nothing to be done for 'mmap_check.test'. make[2]: Nothing to be done for 'evm_hmac.test'. mv -f .deps/test_mmap.Tpo .deps/test_mmap.Po /bin/sh ../libtool --tag=CC --mode=link cc -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -Wl,--as-needed,-O1,--sort-common -Wl,-z,pack-relative-relocs -o test_mmap test_mmap.o -lcrypto -lcrypto libtool: link: cc -Os -fstack-clash-protection -Wformat -Werror=format-security -fno-plt -g -O1 -Wall -Wstrict-prototypes -pipe -Wl,--as-needed -Wl,-O1 -Wl,--sort-common -Wl,-z -Wl,pack-relative-relocs -o test_mmap test_mmap.o -lcrypto make[2]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make check-TESTS make[2]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make[3]: Entering directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' SKIP: mmap_check.test SKIP: evm_hmac.test SKIP: portable_signatures.test SKIP: boot_aggregate.test PASS: ima_policy_check.test SKIP: fsverity.test FAIL: ima_hash.test SKIP: sign_verify.test ============================================================================ Testsuite summary for ima-evm-utils 1.6.2 ============================================================================ # TOTAL: 8 # PASS: 1 # SKIP: 6 # XFAIL: 0 # FAIL: 1 # XPASS: 0 # ERROR: 0 ============================================================================ See tests/test-suite.log for debugging. Some test(s) failed. Please report this to zohar@linux.ibm.com, together with the test-suite.log file (gzipped) and your system information. Thanks. ============================================================================ make[3]: *** [Makefile:670: test-suite.log] Error 1 make[3]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make[2]: *** [Makefile:805: check-TESTS] Error 2 make[2]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make[1]: *** [Makefile:870: check-am] Error 2 make[1]: Leaving directory '/home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests' make: *** [Makefile:531: check-recursive] Error 1 =============================================== ima-evm-utils 1.6.2: tests/test-suite.log =============================================== # TOTAL: 8 # PASS: 1 # SKIP: 6 # XFAIL: 0 # FAIL: 1 # XPASS: 0 # ERROR: 0 System information (uname -a): Linux 6.8.12-11-pve #1 SMP PREEMPT_DYNAMIC PMX 6.8.12-11 (2025-05-22T09:39Z) x86_64 Distribution information (/etc/os-release): NAME="Alpine Linux" ID=alpine VERSION_ID=3.22.2 PRETTY_NAME="Alpine Linux v3.22" HOME_URL="https://alpinelinux.org/" BUG_REPORT_URL="https://gitlab.alpinelinux.org/alpine/aports/-/issues" .. contents:: :depth: 2 FAIL: ima_hash ============== declare -i testspass=0 testsfail=0 testsskip=0 ^~~~~~~ ./functions.sh:10: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) declare -i TNESTED=0 # just for sanity checking ^~~~~~~ ./functions.sh:60: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) evmctl is ../src/evmctl openssl is /usr/bin/openssl getfattr is /usr/bin/getfattr local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~ ./functions.sh:72: (test) Expected unary operator, got '-gt' (2 args) - openssl dgst -md4 md4-hash.txt Invalid hash for md4 from openssl Expected: 31d6cfe0d16ae931b73c59d7e0c089c0 Returned: local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-1' - openssl dgst -md5 md5-hash.txt + evmctl ima_hash --hashalgo md5 --xattr-user md5-hash.txt hash(md5): 01d41d8cd98f00b204e9800998ecf8427e local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-1' - openssl dgst -sha1 sha1-hash.txt + evmctl ima_hash --hashalgo sha1 --xattr-user sha1-hash.txt hash(sha1): 01da39a3ee5e6b4b0d3255bfef95601890afd80709 if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-1' - openssl dgst -SHA1 SHA1-hash.txt - evmctl ima_hash --hashalgo SHA1 --xattr-user SHA1-hash.txt evmctl ima_hash failed properly with (125) Unknown hash algo: SHA1 if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-1' - openssl dgst -sha512-224 sha512-224-hash.txt - evmctl ima_hash --hashalgo sha512-224 --xattr-user sha512-224-hash.txt evmctl ima_hash failed properly with (125) Unknown hash algo: sha512-224 if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-1' - openssl dgst -sha512-256 sha512-256-hash.txt - evmctl ima_hash --hashalgo sha512-256 --xattr-user sha512-256-hash.txt evmctl ima_hash failed properly with (125) Unknown hash algo: sha512-256 if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-1' - openssl dgst -unknown unknown-hash.txt - evmctl ima_hash --hashalgo unknown --xattr-user unknown-hash.txt evmctl ima_hash failed properly with (125) Unknown hash algo: unknown local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-1' - openssl dgst -sha224 sha224-hash.txt + evmctl ima_hash --hashalgo sha224 --xattr-user sha224-hash.txt hash(sha224): 0407d14a028c2a3a2bc9476102bb288234c415a2b01f828ea62ac5b3e42f local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256-hash.txt + evmctl ima_hash --hashalgo sha256 --xattr-user sha256-hash.txt hash(sha256): 0404e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-1' - openssl dgst -sha384 sha384-hash.txt + evmctl ima_hash --hashalgo sha384 --xattr-user sha384-hash.txt hash(sha384): 040538b060a751ac96384cd9327eb1b1e36a21fdb71114be07434c0cc7bf63f6e1da274edebfe76f65fbd51ad2f14898b95b local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha512 sha512-hash.txt + evmctl ima_hash --hashalgo sha512 --xattr-user sha512-hash.txt hash(sha512): 0406cf83e1357eefb8bdf1542850d66d8007d620e4050b5715dc83f4a921d36ce9ce47d0d13c5d85f2b0ff8318d2877eec2f63b931bd47417a81a538327af927da3e local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -rmd160 rmd160-hash.txt + evmctl ima_hash --hashalgo rmd160 --xattr-user rmd160-hash.txt hash(rmd160): 04039c1185a5c5e9fc54612808977ee8f548b2258d31 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sm3 sm3-hash.txt + evmctl ima_hash --hashalgo sm3 --xattr-user sm3-hash.txt hash(sm3): 04111ab21d8355cfa17f8e61194831e81a8f22bec8c728fefb747ed035eb5082aa2b local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_256 md_gost12_256-hash.txt Invalid hash for md_gost12_256 from openssl Expected: 3f539a213e97c802cc229d474c6aa32a825a360b2a933a949fd925208d9ce1bb Returned: local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -streebog256 streebog256-hash.txt Invalid hash for streebog256 from openssl Expected: 3f539a213e97c802cc229d474c6aa32a825a360b2a933a949fd925208d9ce1bb Returned: local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_512 md_gost12_512-hash.txt Invalid hash for md_gost12_512 from openssl Expected: 8e945da209aa869f0455928529bcae4679e9873ab707b55315f56ceb98bef0a7362f715528356ee83cda5f2aac4c6ad2ba3a715c1bcd81cb8e9f90bf4c1c1a8a Returned: local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -streebog512 streebog512-hash.txt Invalid hash for streebog512 from openssl Expected: 8e945da209aa869f0455928529bcae4679e9873ab707b55315f56ceb98bef0a7362f715528356ee83cda5f2aac4c6ad2ba3a715c1bcd81cb8e9f90bf4c1c1a8a Returned: ================================= Run with FAILEARLY=1 ./ima_hash.test To stop after first failure ================================= PASS: 111111111111 [ $testsskip -gt 0 ] && echo -n "$YELLOW" || echo -n "$NORM" ^~~ ./functions.sh:310: (test) Expected unary operator, got '-gt' (2 args) SKIP: FAIL: 11111 FAIL ima_hash.test (exit status: 1) SKIP: sign_verify ================= declare -i testspass=0 testsfail=0 testsskip=0 ^~~~~~~ ./functions.sh:10: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) declare -i TNESTED=0 # just for sanity checking ^~~~~~~ ./functions.sh:60: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) cmp is /usr/bin/cmp evmctl is ../src/evmctl getfattr is /usr/bin/getfattr openssl is /usr/bin/openssl xxd is /usr/bin/xxd local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~ ./functions.sh:72: (test) Expected unary operator, got '-gt' (2 args) IMA signature v1 tests are skipped: not supported local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-1' - openssl dgst -md5 md5.txt - openssl dgst -md5 -sign test-rsa1024.key -hex md5.txt + evmctl ima_sign --sigfile --hashalgo md5 --key test-rsa1024.key --xattr-user md5.txt hash(md5): d41d8cd98f00b204e9800998ecf8427e evm/ima signature: 136 bytes 030201a228cede008025dbacbc390047847338d7b26ab7251f6b5237620e65fe278287a4583b95fab431118e2deae68f9c168d7a3760dae31c102feae41ec3242a6cce73661ccb9fc28f9961e5b618f276e2814f9f4fc69dd57f75c252ebd0a1344711b2f0aaf29dc2756f9cc831d1a2bff4131efdfd981e1a1e079d2f1f135cfcfd0e0b66fbd7824d Writing to md5.txt.sig - openssl dgst -md5 -verify test-rsa1024.pub -signature md5.txt.sig2 md5.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user md5.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer md5.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --sigfile md5.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer Reading to md5.txt.sig md5.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user /dev/null md5.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer getxattr failed: /dev/null md5.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-1' - openssl dgst -md5 md5.txt - openssl dgst -md5 -sign test-rsa1024.key -hex md5.txt + evmctl sign --uuid --generation 0 --hashalgo md5 --key test-rsa1024.key --xattr-user md5.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(md5): be7ffafc6132a08958137192a3cd913b evm/ima signature: 136 bytes 030201a228cede00807436695967e996d9b5497434e31f5a8751d8f324b05d7d8f09dc20e329bc86071f0c04d3729ec7e9d2ef0875f24c8f4bdffabb55aa67c5f60f118ede54b07781661df6d99b9580002fc6c083d80df3413ee90fd7c2c42ecd9ed847391619f075df539d75d7c38b4bd93150ed03f5c0f85b74224c85602b6700a3aefc56ba49ab local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 md5.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability md5.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 md5.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-1' - openssl dgst -sha1 sha1.txt - openssl dgst -sha1 -sign test-rsa1024.key -hex sha1.txt + evmctl ima_sign --sigfile --hashalgo sha1 --key test-rsa1024.key --xattr-user sha1.txt hash(sha1): da39a3ee5e6b4b0d3255bfef95601890afd80709 evm/ima signature: 136 bytes 030202a228cede00803ac4fa3856b1a0acd2e6edec822eb73c05d088231be9e19787a8d523df53d9318672c7ab188bbced86b469fd330b134b7e5447fcd9dd209d6b7af8eaa385eebb8fe63a28776a0a720050c8b6fafe39bd01b7ecb87f02c58a42f1ece12c3296f9e6288be367343f98d09bd1197d46990955d868ce36322b99385eb9556cbf2899 Writing to sha1.txt.sig - openssl dgst -sha1 -verify test-rsa1024.pub -signature sha1.txt.sig2 sha1.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user sha1.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer sha1.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --sigfile sha1.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer Reading to sha1.txt.sig sha1.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user /dev/null sha1.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer getxattr failed: /dev/null sha1.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha1 sha1.txt - openssl dgst -sha1 -sign test-rsa1024.key -hex sha1.txt + evmctl sign --uuid --generation 0 --hashalgo sha1 --key test-rsa1024.key --xattr-user sha1.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha1): 0df80fb0135bc6d0ffa38f6fad1fb227e27bd43b evm/ima signature: 136 bytes 030202a228cede0080b7a57af808f8944586f75a9fa593c4c44d9ba2435bda302107add917d72c5f573b6aa5f0901e4661e2adedc3e0acc725a97268f7e3d8d909188fd9d4b1e2e872477e08c24adb851c130726cfe62d1a2e4f8ee89a07865eae57949b8890dee25d85cb1ae60d58fc35d88efe51488d1b365d351de6e21071ecd7c782dda942d4b5 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha1.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha1.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha1.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha224 sha224.txt - openssl dgst -sha224 -sign test-rsa1024.key -hex sha224.txt + evmctl ima_sign --sigfile --hashalgo sha224 --key test-rsa1024.key --xattr-user sha224.txt hash(sha224): d14a028c2a3a2bc9476102bb288234c415a2b01f828ea62ac5b3e42f evm/ima signature: 136 bytes 030207a228cede00807224fd3424e911df3727a2e298e3ccfcf36c9979b24dd96836a62c837773928a42ac1b9f7a21a5e53c12915eb7fccae242a7ac0c100748ddfa9c273a1cc44d236e46ef529de4086501972280aba5a207181b09b15831c4f836c24bbe6955bb7bfdbe1e5b50bc522b30bd73e9161438da1ba6d3bd19e860ec3ca5eb6507c3b4a1 Writing to sha224.txt.sig - openssl dgst -sha224 -verify test-rsa1024.pub -signature sha224.txt.sig2 sha224.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user sha224.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer sha224.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --sigfile sha224.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer Reading to sha224.txt.sig sha224.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user /dev/null sha224.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer getxattr failed: /dev/null sha224.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha224 sha224.txt - openssl dgst -sha224 -sign test-rsa1024.key -hex sha224.txt + evmctl sign --uuid --generation 0 --hashalgo sha224 --key test-rsa1024.key --xattr-user sha224.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha224): 2751c13f35663a20e961ad34bf74f8b07cab101820a04dfc10aea19a evm/ima signature: 136 bytes 030207a228cede00802f3af48cc6fa06e23deb18193f2944e4f2e07535c175dd96422d888739db82ea9e355b9c9f727ae0ee0dbdbd672612f69dc32c980f82ed88eed0f7334f954cd293f5cc39fccf09198a965279d55fa65284bcd0fdef4e8e08dc3a7b814485551d478a18811e81224fb194d1b6dfeebaa5b75dd5c11d13098ca24583995bb6aaa4 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha224.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha224.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha224.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha224.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha224.txt + evmctl ima_sign --keyid=aabbccdd --sigfile --hashalgo sha256 --key test-rsa1024.key --xattr-user sha224.txt hash(sha256): e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 evm/ima signature: 136 bytes 030204aabbccdd008062ef82fd3f25039a43ef68eaefb523a3e08e0e7f3d099f402df848553890a55d2ad49068fb2d87b7919177dd193f0189b6839b19b81fef18f50d3b63b57f0590e7161972bf21c11ddfcb5f12894e98a5456d8ef85c2e1cdaa1117f0fbc4d45b17f05c98e4f94724e6e639941593f63319c08123760c93920b4fb8a7d962603ae Writing to sha224.txt.sig - openssl dgst -sha256 -verify test-rsa1024.pub -signature sha224.txt.sig2 sha224.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha224.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha224.txt + evmctl ima_sign --keyid-from-cert=test-rsa1024.cer --sigfile --hashalgo sha256 --key test-rsa1024.key --xattr-user sha224.txt keyid a228cede (from test-rsa1024.cer) hash(sha256): e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 evm/ima signature: 136 bytes 030204a228cede008062ef82fd3f25039a43ef68eaefb523a3e08e0e7f3d099f402df848553890a55d2ad49068fb2d87b7919177dd193f0189b6839b19b81fef18f50d3b63b57f0590e7161972bf21c11ddfcb5f12894e98a5456d8ef85c2e1cdaa1117f0fbc4d45b17f05c98e4f94724e6e639941593f63319c08123760c93920b4fb8a7d962603ae Writing to sha224.txt.sig - openssl dgst -sha256 -verify test-rsa1024.pub -signature sha224.txt.sig2 sha224.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha224.txt - openssl dgst -sha256 -sign test-rsa1024_skid.key -hex sha224.txt + evmctl ima_sign --uuid --generation 0 --sigfile --hashalgo sha256 --key test-rsa1024_skid.key --xattr-user sha224.txt hash(sha256): e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 keyid 12345678 (from test-rsa1024_skid.key) evm/ima signature: 136 bytes 030204123456780080a15164c2f9c472f976b79ebf96dda0d8ade657c6afd80aa85658e97db8c5da5e794220c64cef409f3c95653be1682a492e6371b1553a26ae39efec9d64d3fd6d40ef63aee16dd310d64f93e46803a0ce34afa0dc2ff60b1fde7f151e76b657b05fbef69a438f93e68ecb64387b5f343892fd4f8e7c2a17efb031f8ab101eebb3 Writing to sha224.txt.sig - openssl dgst -sha256 -verify test-rsa1024_skid.pub -signature sha224.txt.sig2 sha224.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha256.txt + evmctl ima_sign --sigfile --hashalgo sha256 --key test-rsa1024.key --xattr-user sha256.txt hash(sha256): e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 evm/ima signature: 136 bytes 030204a228cede008062ef82fd3f25039a43ef68eaefb523a3e08e0e7f3d099f402df848553890a55d2ad49068fb2d87b7919177dd193f0189b6839b19b81fef18f50d3b63b57f0590e7161972bf21c11ddfcb5f12894e98a5456d8ef85c2e1cdaa1117f0fbc4d45b17f05c98e4f94724e6e639941593f63319c08123760c93920b4fb8a7d962603ae Writing to sha256.txt.sig - openssl dgst -sha256 -verify test-rsa1024.pub -signature sha256.txt.sig2 sha256.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer sha256.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --sigfile sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer Reading to sha256.txt.sig sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user /dev/null sha256.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer getxattr failed: /dev/null sha256.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha256.txt + evmctl sign --uuid --generation 0 --hashalgo sha256 --key test-rsa1024.key --xattr-user sha256.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha256): 95f80637ef6257702b985962234c562517300a879b04d7ada36d10b2c26c9361 evm/ima signature: 136 bytes 030204a228cede008066bf891bf93d59dfa47c10a995228f560a2dd3305f521dc98c346e04881abed5c87adb4ac97b2a97fd71c9c982d179d6741e87f4fee21df724cc157e69d3c794b5b830029071e760d0a9b72024011f9b58c3acd357746461959e92f3c3be91a0101c9f7e22efe8a8016cba166d0d969422360039f6581de2343a1fa7479a9c52 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha256.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa2048.cer,test-rsa1024.cer --xattr-user --uuid --generation 0 sha256.txt keyid 42763194 (from test-rsa2048.cer) key 1: 42763194 test-rsa2048.cer keyid a228cede (from test-rsa1024.cer) key 2: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha256.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key /dev/null,test-rsa1024.cer, --xattr-user --uuid --generation 0 sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha256.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key /dev/null --xattr-user --uuid --generation 0 sha256.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key /dev/zero --xattr-user --uuid --generation 0 sha256.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha256.txt + evmctl sign --uuid --generation 0 --imasig --hashalgo sha256 --key test-rsa1024.key --xattr-user sha256.txt hash(sha256): e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 evm/ima signature: 136 bytes 030204a228cede008062ef82fd3f25039a43ef68eaefb523a3e08e0e7f3d099f402df848553890a55d2ad49068fb2d87b7919177dd193f0189b6839b19b81fef18f50d3b63b57f0590e7161972bf21c11ddfcb5f12894e98a5456d8ef85c2e1cdaa1117f0fbc4d45b17f05c98e4f94724e6e639941593f63319c08123760c93920b4fb8a7d962603ae generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha256): 95f80637ef6257702b985962234c562517300a879b04d7ada36d10b2c26c9361 evm/ima signature: 136 bytes 030204a228cede008066bf891bf93d59dfa47c10a995228f560a2dd3305f521dc98c346e04881abed5c87adb4ac97b2a97fd71c9c982d179d6741e87f4fee21df724cc157e69d3c794b5b830029071e760d0a9b72024011f9b58c3acd357746461959e92f3c3be91a0101c9f7e22efe8a8016cba166d0d969422360039f6581de2343a1fa7479a9c52 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha256.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer sha256.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha256.txt + evmctl sign --uuid --generation 0 --imahash --hashalgo sha256 --key test-rsa1024.key --xattr-user sha256.txt hash(sha256): 0404e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha256): 95f80637ef6257702b985962234c562517300a879b04d7ada36d10b2c26c9361 evm/ima signature: 136 bytes 030204a228cede008066bf891bf93d59dfa47c10a995228f560a2dd3305f521dc98c346e04881abed5c87adb4ac97b2a97fd71c9c982d179d6741e87f4fee21df724cc157e69d3c794b5b830029071e760d0a9b72024011f9b58c3acd357746461959e92f3c3be91a0101c9f7e22efe8a8016cba166d0d969422360039f6581de2343a1fa7479a9c52 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha256.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer sha256.txt: xattr ima has no signature rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha256.txt + evmctl sign --uuid --generation 0 --portable --imahash --hashalgo sha256 --key test-rsa1024.key --xattr-user sha256.txt hash(sha256): 0404e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor name: user.ima, size: 34 no xattr: security.capability hash(sha256): 12c5a64665626a483fe7bb72c6e062672ebc471f15e080034e0e5f956a495c30 evm/ima signature: 136 bytes 050204a228cede0080260acd4f6ea5ace4aceb0568f13cfe2dad5903cde21dc0c0ce92e943a9773271deb273532e4e9af2550cefd9b57e9df8c638f70dcdf10c87eddd45e047d24caa6e8d990a39aae68b192e28ccd48511ec141754f080f69a79a3b4ec5438105f516e639dd4e14019fcfd783083312599a5a868758f2d3b91a0cf9bc8955cde3296 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha256.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor name: user.ima, size: 34 no xattr: security.capability sha256.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-rsa1024.key -hex sha256.txt + evmctl sign --uuid --generation 0 -i --hashalgo sha256 --key test-rsa1024.key --xattr-user sha256.txt no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha256): 85db65b16f2265e112222b84c34eaf5615ca673ba6d135a675bd24b413febe69 evm/ima signature: 136 bytes 030304a228cede0080060fe9bf3e0cb1fa32927e76a1ede7eeb51ea801e1b25aa4482cefc4e7b213ec646dff01609bdafeda45ad05da131ee0b21c0caf3d7ed43eb53e6e707c218e17050c23d75d38892390e446378541d4533ba9a1ddfd4c2a399961d4877c3c8768f67d4b3c45c2c229b743d19504b689733c834b1cdd53c8ef8a9a86fa6396fe9b local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha384 sha384.txt - openssl dgst -sha384 -sign test-rsa1024.key -hex sha384.txt + evmctl ima_sign --sigfile --hashalgo sha384 --key test-rsa1024.key --xattr-user sha384.txt hash(sha384): 38b060a751ac96384cd9327eb1b1e36a21fdb71114be07434c0cc7bf63f6e1da274edebfe76f65fbd51ad2f14898b95b evm/ima signature: 136 bytes 030205a228cede00800cdc93c46c6119799ad242ddc24045ee2adda3069728be02b034e821bf0c7ba1605f9534496176103a23224d483cef0aa16c0c364b2838bd76940b4b862c41c6df5de16ee5f304dd557dd24f0938f53401d23bd4b9290e9ee3981cb92046fbae8e36a562976fd9985d4db39e910dfe1bd4f83ef857cff5a07092f064669732f1 Writing to sha384.txt.sig - openssl dgst -sha384 -verify test-rsa1024.pub -signature sha384.txt.sig2 sha384.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user sha384.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer sha384.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --sigfile sha384.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer Reading to sha384.txt.sig sha384.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user /dev/null sha384.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer getxattr failed: /dev/null sha384.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha384 sha384.txt - openssl dgst -sha384 -sign test-rsa1024.key -hex sha384.txt + evmctl sign --uuid --generation 0 --hashalgo sha384 --key test-rsa1024.key --xattr-user sha384.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha384): 2974aff5578300c800173a0f968398fe7e92dfcadac68c598ce195233423ad5df4961b84b81771bea0b82943191e3d16 evm/ima signature: 136 bytes 030205a228cede008033f057b048c3375a674ab316f7ae8cbaa005f9fa25a609d47a7b99da50bc2d7e31bbfdfc9678ba36edc9515d49121c692c12792cbc51f1014f6b4c5010d2622c70b70a8337366528de494774d0a38899d46f336cdc45f15d2cefe0543542eeeac8e3bb2bf076065a778b4978854e9c4b04a1702dc7542143a224668576b592e0 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha384.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha384.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha384.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha512 sha512.txt - openssl dgst -sha512 -sign test-rsa1024.key -hex sha512.txt + evmctl ima_sign --sigfile --hashalgo sha512 --key test-rsa1024.key --xattr-user sha512.txt hash(sha512): cf83e1357eefb8bdf1542850d66d8007d620e4050b5715dc83f4a921d36ce9ce47d0d13c5d85f2b0ff8318d2877eec2f63b931bd47417a81a538327af927da3e evm/ima signature: 136 bytes 030206a228cede0080b17cbfa00366139b20bdaa82928b9cfe1c16ceb30a6834021d35f0e07b5424822976935c0dbacd76e5c9e13cf189473dac6ea2df4de4f93eeea8036c874902b00667986b4c36a2d86601f9486e0d5707dc2cff4b4d20e3d2fb0fa812689dcde337d912473f8dbc90d4e3d49d69346c278d7fdcbdb9267bc66c61a1aff433e190 Writing to sha512.txt.sig - openssl dgst -sha512 -verify test-rsa1024.pub -signature sha512.txt.sig2 sha512.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user sha512.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer sha512.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --sigfile sha512.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer Reading to sha512.txt.sig sha512.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user /dev/null sha512.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer getxattr failed: /dev/null sha512.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha512 sha512.txt - openssl dgst -sha512 -sign test-rsa1024.key -hex sha512.txt + evmctl sign --uuid --generation 0 --hashalgo sha512 --key test-rsa1024.key --xattr-user sha512.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha512): daa602a474ce7ac88574d349a1ff25cb9cc5daf2010c5830491556d0058be52921f7307d41c1c51d36341c53e66af0f1e16564ba9419dd9be86a311ae7d36ffd evm/ima signature: 136 bytes 030206a228cede0080720231ef3926ebbf26583530382caf752abfa1ff523ae811a4ecb467c466a4fbd5bf6a6fa184e72bb2e9d7dd2cc90d3d216ac90ce9b80b475b32ec310f69c310a24268fffe97f41bd6c5ab221051600d60ac75d8748f1d6588a6ce94b9b3436481b1168f889aad78b950291300cff0286503de53027dc0f4c9ebc380679372d5 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 sha512.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha512.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha512.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -rmd160 rmd160.txt - openssl dgst -rmd160 -sign test-rsa1024.key -hex rmd160.txt + evmctl ima_sign --sigfile --hashalgo rmd160 --key test-rsa1024.key --xattr-user rmd160.txt hash(rmd160): 9c1185a5c5e9fc54612808977ee8f548b2258d31 evm/ima signature: 136 bytes 030203a228cede00806cb873010e72b7cd8af67a6fc21f75f65fbfc6114cbc4477c7369a6ed25391ede3bb0d6aed35d12788f77af47b666d0756c6ca19897f4f29b92fac01da59aa2013f0919c6a1b5701987b69942c372ac61df11ae906c32dfe643fc1e7b6abb7dc0fd4143275d1b56afb8263a4385e24328f59215f4092bf3f7eb3677ef65a981e Writing to rmd160.txt.sig - openssl dgst -rmd160 -verify test-rsa1024.pub -signature rmd160.txt.sig2 rmd160.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user rmd160.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer rmd160.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-rsa1024.cer --xattr-user --sigfile rmd160.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer Reading to rmd160.txt.sig rmd160.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-rsa1024.cer --xattr-user /dev/null rmd160.txt evmctl ima_verify failed properly with (1) keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer getxattr failed: /dev/null rmd160.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -rmd160 rmd160.txt - openssl dgst -rmd160 -sign test-rsa1024.key -hex rmd160.txt + evmctl sign --uuid --generation 0 --hashalgo rmd160 --key test-rsa1024.key --xattr-user rmd160.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(rmd160): 2e2215d25b01f9b7ab867e783dfc2e9f92b782e3 evm/ima signature: 136 bytes 030203a228cede00802642f08f0fa49b35106eb6a4cd7d5db087d79ffbb88f91f51a45c95d2053e01cefeb89dc48c54a9e4fccd4f060e20ff2e86afb77366686595b69a404a656d1dd02cd8163a8260df95a18002313664b64a03baeef4229b96c30778ea83573ee67e7f4682efea5090405931ecca447a04295c3e6f5dda7225a849f18289c13125e local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-rsa1024.cer --xattr-user --uuid --generation 0 rmd160.txt keyid a228cede (from test-rsa1024.cer) key 1: a228cede test-rsa1024.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability rmd160.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 rmd160.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a228cede (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha1 sha1.txt - openssl dgst -sha1 -sign test-prime192v1.key -hex sha1.txt + evmctl ima_sign --sigfile --hashalgo sha1 --key test-prime192v1.key --xattr-user sha1.txt hash(sha1): da39a3ee5e6b4b0d3255bfef95601890afd80709 evm/ima signature: 63 bytes 0302029814cd1300373035021900f6ae1ce6cbaf59444c56993c5b5c16bf7bad00ddd2a9071f02180aa45fc08417805db3b887af918ba98d82ac61c15dca3a20 Writing to sha1.txt.sig - openssl dgst -sha1 -verify test-prime192v1.pub -signature sha1.txt.sig2 sha1.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user sha1.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer sha1.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user --sigfile sha1.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer Reading to sha1.txt.sig sha1.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime192v1.cer --xattr-user /dev/null sha1.txt evmctl ima_verify failed properly with (1) keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer getxattr failed: /dev/null sha1.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha1 sha1.txt - openssl dgst -sha1 -sign test-prime192v1.key -hex sha1.txt + evmctl sign --uuid --generation 0 --hashalgo sha1 --key test-prime192v1.key --xattr-user sha1.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha1): 0df80fb0135bc6d0ffa38f6fad1fb227e27bd43b evm/ima signature: 62 bytes 0302029814cd130036303402181b8b797e51770556709741024b7ad4853e853f329818e62002181f429228ca1431f4741b91593dd77b5ef00412c4d2d01baf local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime192v1.cer --xattr-user --uuid --generation 0 sha1.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha1.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha1.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: 9814cd13 (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha224 sha224.txt - openssl dgst -sha224 -sign test-prime192v1.key -hex sha224.txt + evmctl ima_sign --sigfile --hashalgo sha224 --key test-prime192v1.key --xattr-user sha224.txt hash(sha224): d14a028c2a3a2bc9476102bb288234c415a2b01f828ea62ac5b3e42f evm/ima signature: 63 bytes 0302079814cd130037303502180786edde686c516d2df8220deea5c19331ceadfb727b2d2a021900e5a8eae3304338dd8a43d85d62d8c4edb6d48f27abd87128 Writing to sha224.txt.sig - openssl dgst -sha224 -verify test-prime192v1.pub -signature sha224.txt.sig2 sha224.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user sha224.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer sha224.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user --sigfile sha224.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer Reading to sha224.txt.sig sha224.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime192v1.cer --xattr-user /dev/null sha224.txt evmctl ima_verify failed properly with (1) keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer getxattr failed: /dev/null sha224.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha224 sha224.txt - openssl dgst -sha224 -sign test-prime192v1.key -hex sha224.txt + evmctl sign --uuid --generation 0 --hashalgo sha224 --key test-prime192v1.key --xattr-user sha224.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha224): 2751c13f35663a20e961ad34bf74f8b07cab101820a04dfc10aea19a evm/ima signature: 62 bytes 0302079814cd1300363034021803327d6f46bbd0974a22715295fb983d6a05877a1cd9175102181b476ba02186b6f44be75dcc081f4a6db450d45426a26f60 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime192v1.cer --xattr-user --uuid --generation 0 sha224.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha224.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha224.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: 9814cd13 (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-prime192v1.key -hex sha256.txt + evmctl ima_sign --sigfile --hashalgo sha256 --key test-prime192v1.key --xattr-user sha256.txt hash(sha256): e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 evm/ima signature: 64 bytes 0302049814cd1300383036021900fcd1ce963f0743070091fcdf7f7c8df292dec6a4da25caba02190097a948c678edf49b87ed58000665f31086fb88f1fbf11ca2 Writing to sha256.txt.sig - openssl dgst -sha256 -verify test-prime192v1.pub -signature sha256.txt.sig2 sha256.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user sha256.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer sha256.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user --sigfile sha256.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer Reading to sha256.txt.sig sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime192v1.cer --xattr-user /dev/null sha256.txt evmctl ima_verify failed properly with (1) keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer getxattr failed: /dev/null sha256.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-prime192v1.key -hex sha256.txt + evmctl sign --uuid --generation 0 --hashalgo sha256 --key test-prime192v1.key --xattr-user sha256.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha256): 95f80637ef6257702b985962234c562517300a879b04d7ada36d10b2c26c9361 evm/ima signature: 62 bytes 0302049814cd130036303402185082188a967c3e15554303f1555848a8dc05b92418c06546021804d1c25747e240736e38d6d8b6f18865d1e2910c40c964a2 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime192v1.cer --xattr-user --uuid --generation 0 sha256.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha256.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: 9814cd13 (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha384 sha384.txt - openssl dgst -sha384 -sign test-prime192v1.key -hex sha384.txt + evmctl ima_sign --sigfile --hashalgo sha384 --key test-prime192v1.key --xattr-user sha384.txt hash(sha384): 38b060a751ac96384cd9327eb1b1e36a21fdb71114be07434c0cc7bf63f6e1da274edebfe76f65fbd51ad2f14898b95b evm/ima signature: 64 bytes 0302059814cd1300383036021900b86b07a62f99794ceb3ecc6bd7c60ebef3071299f7fd8ec3021900fd7e777349c5d2719a6fb30f4f0192382490d3014c9e734b Writing to sha384.txt.sig - openssl dgst -sha384 -verify test-prime192v1.pub -signature sha384.txt.sig2 sha384.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user sha384.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer sha384.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user --sigfile sha384.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer Reading to sha384.txt.sig sha384.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime192v1.cer --xattr-user /dev/null sha384.txt evmctl ima_verify failed properly with (1) keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer getxattr failed: /dev/null sha384.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha384 sha384.txt - openssl dgst -sha384 -sign test-prime192v1.key -hex sha384.txt + evmctl sign --uuid --generation 0 --hashalgo sha384 --key test-prime192v1.key --xattr-user sha384.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha384): 626286bec58d16d15aed1fdb7b80e8723371b5b7207580acacff08ff53ea24fc9f224c0b038e4d1595890e75ecc85bbf evm/ima signature: 62 bytes 0302059814cd1300363034021819c670845c9851ff051b4ac324645688f5857ab706b1d38e02184be14b1cd4914b23e955ae422a548ae812db257162a17858 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime192v1.cer --xattr-user --uuid --generation 0 sha384.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha384.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha384.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: 9814cd13 (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha512 sha512.txt - openssl dgst -sha512 -sign test-prime192v1.key -hex sha512.txt + evmctl ima_sign --sigfile --hashalgo sha512 --key test-prime192v1.key --xattr-user sha512.txt hash(sha512): cf83e1357eefb8bdf1542850d66d8007d620e4050b5715dc83f4a921d36ce9ce47d0d13c5d85f2b0ff8318d2877eec2f63b931bd47417a81a538327af927da3e evm/ima signature: 63 bytes 0302069814cd130037303502184fd484e58e28c0498a961ba289cd83e4b1904a964b3ef4ef02190087c7c4a7cd156b43f6db842f4124a0edcb33429aa20f50d8 Writing to sha512.txt.sig - openssl dgst -sha512 -verify test-prime192v1.pub -signature sha512.txt.sig2 sha512.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user sha512.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer sha512.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime192v1.cer --xattr-user --sigfile sha512.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer Reading to sha512.txt.sig sha512.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime192v1.cer --xattr-user /dev/null sha512.txt evmctl ima_verify failed properly with (1) keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer getxattr failed: /dev/null sha512.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha512 sha512.txt - openssl dgst -sha512 -sign test-prime192v1.key -hex sha512.txt + evmctl sign --uuid --generation 0 --hashalgo sha512 --key test-prime192v1.key --xattr-user sha512.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha512): 24a33249d2204fa4ed20d9a723e9ac4f944ff0dcdbdbb11168d8b22dc7bbb0ec49af82fed986baa2a01312fda4b9922b0eda26fdb2a6505f2ae4b917d93e55bd evm/ima signature: 62 bytes 0302069814cd130036303402184f4861f7214062cd20060512f3dbecfcfd9f5a3fdd428406021824be239c07eff5da1b1829493acbce93ca4d18a6b040946e local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime192v1.cer --xattr-user --uuid --generation 0 sha512.txt keyid 9814cd13 (from test-prime192v1.cer) key 1: 9814cd13 test-prime192v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha512.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha512.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: 9814cd13 (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha1 sha1.txt - openssl dgst -sha1 -sign test-prime256v1.key -hex sha1.txt + evmctl ima_sign --sigfile --hashalgo sha1 --key test-prime256v1.key --xattr-user sha1.txt hash(sha1): da39a3ee5e6b4b0d3255bfef95601890afd80709 evm/ima signature: 80 bytes 030202a158d72e0048304602210087de5e363b0a3e13364f49fcfa2d54d014beeb5f7e1e71e89ff5192a189bcec90221008640ae2bb9b90d3ac2c9c6a1c3b1ad0cabf632e55b73a87d6c9d4b064d5fd345 Writing to sha1.txt.sig - openssl dgst -sha1 -verify test-prime256v1.pub -signature sha1.txt.sig2 sha1.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user sha1.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer sha1.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user --sigfile sha1.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer Reading to sha1.txt.sig sha1.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime256v1.cer --xattr-user /dev/null sha1.txt evmctl ima_verify failed properly with (1) keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer getxattr failed: /dev/null sha1.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha1 sha1.txt - openssl dgst -sha1 -sign test-prime256v1.key -hex sha1.txt + evmctl sign --uuid --generation 0 --hashalgo sha1 --key test-prime256v1.key --xattr-user sha1.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha1): 0df80fb0135bc6d0ffa38f6fad1fb227e27bd43b evm/ima signature: 79 bytes 030202a158d72e00473045022100e2bf54b55c5d54f6493f32edf0de2dda9277538fcf061fe3b54289ab264c2fb40220390f3ce7a42aa11aa2ea37dafa888a100c2b3b0c9320fd4499fc31e42b27ebb4 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime256v1.cer --xattr-user --uuid --generation 0 sha1.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha1.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha1.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a158d72e (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha224 sha224.txt - openssl dgst -sha224 -sign test-prime256v1.key -hex sha224.txt + evmctl ima_sign --sigfile --hashalgo sha224 --key test-prime256v1.key --xattr-user sha224.txt hash(sha224): d14a028c2a3a2bc9476102bb288234c415a2b01f828ea62ac5b3e42f evm/ima signature: 78 bytes 030207a158d72e00463044022057d53673c0dc3436e121f9adf7b1787aa8327e8b066c1fd90ed3b7bf5567cb940220128004d453b9b9d2616c49adba5a3ea185bb552ef5f9a1c881139277481cfa37 Writing to sha224.txt.sig - openssl dgst -sha224 -verify test-prime256v1.pub -signature sha224.txt.sig2 sha224.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user sha224.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer sha224.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user --sigfile sha224.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer Reading to sha224.txt.sig sha224.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime256v1.cer --xattr-user /dev/null sha224.txt evmctl ima_verify failed properly with (1) keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer getxattr failed: /dev/null sha224.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha224 sha224.txt - openssl dgst -sha224 -sign test-prime256v1.key -hex sha224.txt + evmctl sign --uuid --generation 0 --hashalgo sha224 --key test-prime256v1.key --xattr-user sha224.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha224): 2751c13f35663a20e961ad34bf74f8b07cab101820a04dfc10aea19a evm/ima signature: 79 bytes 030207a158d72e00473045022100e05cb5ee62085132ede4cd4faee960c1132d0f3f3eb6fc0adee321a13981c3da022075337274cfb49b3b00f3bcc66ca4b72aa910670e210758e8c60cca3aefcdefd2 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime256v1.cer --xattr-user --uuid --generation 0 sha224.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha224.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha224.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a158d72e (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-prime256v1.key -hex sha256.txt + evmctl ima_sign --sigfile --hashalgo sha256 --key test-prime256v1.key --xattr-user sha256.txt hash(sha256): e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855 evm/ima signature: 80 bytes 030204a158d72e00483046022100eff11b506cb05a33348977ec271f710ce58d49fb1bec6f1094466cb28af94e160221009d159bec0ba1d220b8af1faf0948f6e7818ab80e05678470e627cd54566a48c4 Writing to sha256.txt.sig - openssl dgst -sha256 -verify test-prime256v1.pub -signature sha256.txt.sig2 sha256.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user sha256.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer sha256.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user --sigfile sha256.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer Reading to sha256.txt.sig sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime256v1.cer --xattr-user /dev/null sha256.txt evmctl ima_verify failed properly with (1) keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer getxattr failed: /dev/null sha256.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha256 sha256.txt - openssl dgst -sha256 -sign test-prime256v1.key -hex sha256.txt + evmctl sign --uuid --generation 0 --hashalgo sha256 --key test-prime256v1.key --xattr-user sha256.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha256): 95f80637ef6257702b985962234c562517300a879b04d7ada36d10b2c26c9361 evm/ima signature: 78 bytes 030204a158d72e004630440220369a1eaddd1e0ec283131b0bb0541101efefeea56726279bc979dbf77b65edb70220471a7f52b12a1dc2b4604d70d6b81fe582991fd29a71ac42c4d6166561c84f31 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime256v1.cer --xattr-user --uuid --generation 0 sha256.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha256.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha256.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a158d72e (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha384 sha384.txt - openssl dgst -sha384 -sign test-prime256v1.key -hex sha384.txt + evmctl ima_sign --sigfile --hashalgo sha384 --key test-prime256v1.key --xattr-user sha384.txt hash(sha384): 38b060a751ac96384cd9327eb1b1e36a21fdb71114be07434c0cc7bf63f6e1da274edebfe76f65fbd51ad2f14898b95b evm/ima signature: 78 bytes 030205a158d72e0046304402202e14676d6a0e9543d3b98e1460ba35553edb26cfde4275fa9035f5e8b24001f002206be05cffdd6293ab157ddd8b73ce18cbf319c3e68c8ec9c142962c99fef24eb8 Writing to sha384.txt.sig - openssl dgst -sha384 -verify test-prime256v1.pub -signature sha384.txt.sig2 sha384.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user sha384.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer sha384.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user --sigfile sha384.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer Reading to sha384.txt.sig sha384.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime256v1.cer --xattr-user /dev/null sha384.txt evmctl ima_verify failed properly with (1) keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer getxattr failed: /dev/null sha384.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha384 sha384.txt - openssl dgst -sha384 -sign test-prime256v1.key -hex sha384.txt + evmctl sign --uuid --generation 0 --hashalgo sha384 --key test-prime256v1.key --xattr-user sha384.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha384): 626286bec58d16d15aed1fdb7b80e8723371b5b7207580acacff08ff53ea24fc9f224c0b038e4d1595890e75ecc85bbf evm/ima signature: 78 bytes 030205a158d72e00463044022074f1ead2cf559d1ba517ba9e8f0b95542419d8f39d0221a20d81de8feae5ae2f022036adeabc035e67271cf8a58e2f7a939d020e9635f30a1601c8b1982a99151794 local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime256v1.cer --xattr-user --uuid --generation 0 sha384.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha384.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha384.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a158d72e (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha512 sha512.txt - openssl dgst -sha512 -sign test-prime256v1.key -hex sha512.txt + evmctl ima_sign --sigfile --hashalgo sha512 --key test-prime256v1.key --xattr-user sha512.txt hash(sha512): cf83e1357eefb8bdf1542850d66d8007d620e4050b5715dc83f4a921d36ce9ce47d0d13c5d85f2b0ff8318d2877eec2f63b931bd47417a81a538327af927da3e evm/ima signature: 79 bytes 030206a158d72e00473045022100b95747b3f8de034edc93a7252136cc3cb2d5e26bed800959bbf78f1d7f9a99c1022042ad9c88f438d1237f084d07807d73062a038d6d2f1ed75e4b3384c591afb0d1 Writing to sha512.txt.sig - openssl dgst -sha512 -verify test-prime256v1.pub -signature sha512.txt.sig2 sha512.txt Verified OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user sha512.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer sha512.txt: verification is OK local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl ima_verify --key test-prime256v1.cer --xattr-user --sigfile sha512.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer Reading to sha512.txt.sig sha512.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_verify --key test-prime256v1.cer --xattr-user /dev/null sha512.txt evmctl ima_verify failed properly with (1) keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer getxattr failed: /dev/null sha512.txt: verification is OK errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sha512 sha512.txt - openssl dgst -sha512 -sign test-prime256v1.key -hex sha512.txt + evmctl sign --uuid --generation 0 --hashalgo sha512 --key test-prime256v1.key --xattr-user sha512.txt generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability hash(sha512): 24a33249d2204fa4ed20d9a723e9ac4f944ff0dcdbdbb11168d8b22dc7bbb0ec49af82fed986baa2a01312fda4b9922b0eda26fdb2a6505f2ae4b917d93e55bd evm/ima signature: 78 bytes 030206a158d72e0046304402200b7ee654b13c57eac355f542536a984addef20cca773ab69b60ead3273949ef80220233203c179dd2f7c6c7508f3cb3ed2b1fcbdbf38811ccdfbb337d72c5b4754aa local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' + evmctl verify --key test-prime256v1.cer --xattr-user --uuid --generation 0 sha512.txt keyid a158d72e (from test-prime256v1.cer) key 1: a158d72e test-prime256v1.cer generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability sha512.txt: verification is OK if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl verify --key rsa2048 --xattr-user --uuid --generation 0 sha512.txt evmctl verify failed properly with (125) generation: 0 no xattr: security.selinux no xattr: security.SMACK64 no xattr: security.apparmor no xattr: security.ima no xattr: security.capability key 1: a158d72e (unknown keyid) errno: No data available (61) rm "$out" "$ADD_DEL" ^ ./functions.sh:232: Can't remove '': No such file or directory local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sm3 sm3.txt sm3 (test-sm2.key) test is skipped (key file not found) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -sm3 sm3.txt sm3 (test-sm2.key) test is skipped (key file not found) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_256 md_gost12_256.txt dgst: Unknown option or message digest: md_gost12_256 dgst: Use -help for summary. 28CB2F7458790000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_256 : 0), Properties () md_gost12_256 (test-gost2012_256-A.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_256 md_gost12_256.txt dgst: Unknown option or message digest: md_gost12_256 dgst: Use -help for summary. 288B404AA6700000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_256 : 0), Properties () md_gost12_256 (test-gost2012_256-A.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_256 md_gost12_256.txt dgst: Unknown option or message digest: md_gost12_256 dgst: Use -help for summary. 286BC1A221720000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_256 : 0), Properties () md_gost12_256 (test-gost2012_256-B.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_256 md_gost12_256.txt dgst: Unknown option or message digest: md_gost12_256 dgst: Use -help for summary. 284B664B9A770000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_256 : 0), Properties () md_gost12_256 (test-gost2012_256-B.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_256 md_gost12_256.txt dgst: Unknown option or message digest: md_gost12_256 dgst: Use -help for summary. 280B1875457A0000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_256 : 0), Properties () md_gost12_256 (test-gost2012_256-C.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_256 md_gost12_256.txt dgst: Unknown option or message digest: md_gost12_256 dgst: Use -help for summary. 285BAB8A83740000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_256 : 0), Properties () md_gost12_256 (test-gost2012_256-C.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_512 md_gost12_512.txt dgst: Unknown option or message digest: md_gost12_512 dgst: Use -help for summary. 28DBC34201770000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_512 : 0), Properties () md_gost12_512 (test-gost2012_512-A.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_512 md_gost12_512.txt dgst: Unknown option or message digest: md_gost12_512 dgst: Use -help for summary. 284B438B53710000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_512 : 0), Properties () md_gost12_512 (test-gost2012_512-A.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_512 md_gost12_512.txt dgst: Unknown option or message digest: md_gost12_512 dgst: Use -help for summary. 28BB4B5BAA7F0000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_512 : 0), Properties () md_gost12_512 (test-gost2012_512-B.key) test is skipped (openssl is unable to digest) local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - openssl dgst -md_gost12_512 md_gost12_512.txt dgst: Unknown option or message digest: md_gost12_512 dgst: Use -help for summary. 283B75E810750000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto/evp/evp_fetch.c:375:Global default library context, Algorithm (md_gost12_512 : 0), Properties () md_gost12_512 (test-gost2012_512-B.key) test is skipped (openssl is unable to digest) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_sign --sigfile --hashalgo md_gost12_256 --key test-gost2012_512-B.key --xattr-user md_gost12_512.txt~ evmctl ima_sign failed properly with (1) EVP_get_digestbyname(md_gost12_256) failed if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:123: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' - evmctl ima_sign --sigfile --hashalgo md_gost12_512 --key test-gost2012_256-B.key --xattr-user md_gost12_512.txt~ evmctl ima_sign failed properly with (1) EVP_get_digestbyname(md_gost12_512) failed softhsm_setup setup failed: Need p11tool from gnutls local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' pkcs11 test is skipped: could not setup softhsm local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' pkcs11 test is skipped: could not setup softhsm local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' pkcs11 test is skipped: could not setup softhsm local -i ret ^~~~~ ./functions.sh:64: 'local' doesn't implement flag -i (shopt --set ignore_flags_not_impl) if [ $TNESTED -gt 0 ]; then ^~~~~~~~ ./functions.sh:72: (test) Invalid integer '1-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-11-1' pkcs11 test is skipped: could not setup softhsm if [ $testsfail -gt 0 ]; then ^~~ ./functions.sh:302: (test) Expected unary operator, got '-gt' (2 args) [ $testspass -gt 0 ] && echo -n "$GREEN" || echo -n "$NORM" ^~~~~~~~~~ ./functions.sh:308: (test) Invalid integer '111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111' PASS: 111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111 SKIP: 11111111111111111 [ $testsfail -gt 0 ] && echo -n "$RED" || echo -n "$NORM" ^~~ ./functions.sh:312: (test) Expected unary operator, got '-gt' (2 args) FAIL: if [ $testsfail -gt 0 ]; then ^~~ ./functions.sh:334: (test) Expected unary operator, got '-gt' (2 args) elif [ $testspass -gt 0 ]; then ^~~~~~~~~~ ./functions.sh:336: (test) Invalid integer '111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111' SKIP sign_verify.test (exit status: 77) SKIP: boot_aggregate ==================== declare -i testspass=0 testsfail=0 testsskip=0 ^~~~~~~ ./functions.sh:10: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) declare -i TNESTED=0 # just for sanity checking ^~~~~~~ ./functions.sh:60: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) evmctl is ../src/evmctl SKIP: Software TPM (tpm_server and swtpm) not found skip: swtpm not installed SKIP boot_aggregate.test (exit status: 77) SKIP: fsverity ============== declare -i testspass=0 testsfail=0 testsskip=0 ^~~~~~~ ./functions.sh:10: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) declare -i TNESTED=0 # just for sanity checking ^~~~~~~ ./functions.sh:60: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) dd is /bin/dd mkfs is /sbin/mkfs blkid is /sbin/blkid e2fsck is /sbin/e2fsck tune2fs is /usr/sbin/tune2fs evmctl is ../src/evmctl setfattr is /usr/bin/setfattr SKIP: /sys/kernel/security/integrity/ima/policy does not exist SKIP fsverity.test (exit status: 77) SKIP: portable_signatures ========================= declare -i testspass=0 testsfail=0 testsskip=0 ^~~~~~~ ./functions.sh:10: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) declare -i TNESTED=0 # just for sanity checking ^~~~~~~ ./functions.sh:60: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) evmctl is /home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests/../src/evmctl This script must be executed as root SKIP portable_signatures.test (exit status: 77) SKIP: mmap_check ================ declare -i testspass=0 testsfail=0 testsskip=0 ^~~~~~~ ./functions.sh:10: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) declare -i TNESTED=0 # just for sanity checking ^~~~~~~ ./functions.sh:60: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) evmctl is /home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests/../src/evmctl This script must be executed as root SKIP mmap_check.test (exit status: 77) SKIP: evm_hmac ============== declare -i testspass=0 testsfail=0 testsskip=0 ^~~~~~~ ./functions.sh:10: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) declare -i TNESTED=0 # just for sanity checking ^~~~~~~ ./functions.sh:60: 'declare' doesn't implement flag -i (shopt --set ignore_flags_not_impl) evmctl is /home/udu/aports/community/ima-evm-utils/src/ima-evm-utils-1.6.2/tests/../src/evmctl TST_EVM_CHANGE_MODE env variable must be set to 1 SKIP evm_hmac.test (exit status: 77) >>> ERROR: ima-evm-utils: check failed >>> ima-evm-utils: Uninstalling dependencies... (1/64) Purging .makedepends-ima-evm-utils (20251010.071843) (2/64) Purging asciidoc-pyc (10.2.1-r0) (3/64) Purging asciidoc (10.2.1-r0) (4/64) Purging attr-dev (2.5.2-r2) (5/64) Purging autoconf (2.72-r1) (6/64) Purging m4 (1.4.19-r4) (7/64) Purging automake (1.17-r1) (8/64) Purging diffutils (3.12-r0) (9/64) Purging docbook-xsl (1.79.2-r11) (10/64) Purging docbook-xsl-ns (1.79.2-r11) Executing docbook-xsl-ns-1.79.2-r11.pre-deinstall (11/64) Purging docbook-xsl-nons (1.79.2-r11) Executing docbook-xsl-nons-1.79.2-r11.pre-deinstall (12/64) Purging docbook-xml (4.5-r10) Executing docbook-xml-4.5-r10.pre-deinstall (13/64) Purging libxml2-utils (2.13.9-r0) (14/64) Purging keyutils-dev (1.6.3-r4) (15/64) Purging keyutils-libs (1.6.3-r4) (16/64) Purging libtool (2.5.4-r1) (17/64) Purging libltdl (2.5.4-r1) (18/64) Purging libxslt (1.1.43-r3) (19/64) Purging linux-headers (6.14.2-r0) (20/64) Purging tpm2-tss-dev (4.1.2-r0) (21/64) Purging tpm2-tss (4.1.2-r0) (22/64) Purging xxd (9.1.1566-r0) (23/64) Purging attr (2.5.2-r2) (24/64) Purging e2fsprogs-extra (1.47.2-r2) (25/64) Purging e2fsprogs (1.47.2-r2) (26/64) Purging gawk (5.3.2-r2) (27/64) Purging util-linux-misc (2.41-r9) (28/64) Purging setarch (2.41-r9) (29/64) Purging curl-dev (8.14.1-r2) (30/64) Purging e2fsprogs-libs (1.47.2-r2) (31/64) Purging git-perl (2.49.1-r0) (32/64) Purging perl-git (2.49.1-r0) (33/64) Purging perl-error (0.17030-r0) (34/64) Purging perl (5.40.3-r0) (35/64) Purging json-c-dev (0.18-r1) (36/64) Purging json-c (0.18-r1) (37/64) Purging libattr (2.5.2-r2) (38/64) Purging libcom_err (1.47.2-r2) (39/64) Purging libpsl-dev (0.21.5-r3) (40/64) Purging libpsl-utils (0.21.5-r3) (41/64) Purging libxml2 (2.13.9-r0) (42/64) Purging nghttp2-dev (1.65.0-r0) (43/64) Purging openssl-dev (3.5.4-r0) (44/64) Purging tpm2-tss-tcti-spi-helper (4.1.2-r0) (45/64) Purging util-linux-dev (2.41-r9) (46/64) Purging libfdisk (2.41-r9) (47/64) Purging liblastlog2 (2.41-r9) (48/64) Purging libmount (2.41-r9) (49/64) Purging libsmartcols (2.41-r9) (50/64) Purging libuuid (2.41-r9) (51/64) Purging utmps-libs (0.1.3.1-r0) (52/64) Purging zlib-dev (1.3.1-r2) (53/64) Purging zstd-dev (1.5.7-r0) (54/64) Purging zstd (1.5.7-r0) (55/64) Purging brotli-dev (1.1.0-r2) (56/64) Purging brotli (1.1.0-r2) (57/64) Purging c-ares-dev (1.34.5-r0) (58/64) Purging libblkid (2.41-r9) (59/64) Purging libeconf (0.6.3-r0) (60/64) Purging libidn2-dev (2.3.7-r0) (61/64) Purging skalibs-libs (2.14.4.0-r0) (62/64) Purging sqlite-dev (3.49.2-r1) (63/64) Purging sqlite (3.49.2-r1) (64/64) Purging tpm2-tss-mu (4.1.2-r0) Executing busybox-1.37.0-r19.trigger OK: 296 MiB in 89 packages