V8.13.432.2025.11.18
All checks were successful
🛡️ Shell Script Linting / 🛡️ Shell Script Linting (push) Successful in 1m28s

Signed-off-by: Marc S. Weidner <msw@coresecret.dev>
This commit is contained in:
2025-11-18 16:00:47 +00:00
parent 4d070a2a96
commit b5086b0ad1

View File

@@ -225,38 +225,35 @@ dmsetup table --showkeys CHILD # expect integrity hmac sha512 4096
```mermaid ```mermaid
flowchart TD flowchart TD
subgraph ISO Build Time subgraph ISO Build Time
direction TD A["Embed and pin GPG FPR (into ISO & RootFS as needed)"] e00@--> B["Generate ISO-edge sha512sum.txt and .sig"];
A["Embed and pin GPG FPR (into ISO & RootFS as needed)"] e00@--> B["Generate ISO-edge sha512sum.txt and .sig"]; B e01@--> C["Build filesystem.squashfs and wrap it into ciss_rootfs.crypt"];
B e01@--> C["Build filesystem.squashfs and wrap it into ciss_rootfs.crypt"]; e00@{ animation: fast }
e00@{ animation: fast } e01@{ animation: fast }
e01@{ animation: fast } end
end
subgraph ISO Boot Time subgraph ISO Boot Time
direction TD C e02@--> D["0024 LUKS2, dm-integrity HMAC-SHA512"];
C e02@--> D["0024 LUKS2, dm-integrity HMAC-SHA512"]; D e03@-->|SUCCESSFUL| E["ciss_rootfs.crypt opened"];
D e03@-->|SUCCESSFUL| E["ciss_rootfs.crypt opened"]; E e04@--> F["Mounting RootFS"];
E e04@--> F["Mounting RootFS"]; F e05@--> G["0030 verification of authenticity and integrity via embedded and pinned GPG of ISO edge"];
F e05@--> G["0030 verification of authenticity and integrity via embedded and pinned GPG of ISO edge"]; G e06@-->|SUCCESSFUL| H["ISO edge verified"];
G e06@-->|SUCCESSFUL| H["ISO edge verified"]; H e07@--> I["0042 post-decrypt-attestation of RootFS"];
H e07@--> I["0042 post-decrypt-attestation of RootFS"]; I e08@-->|SUCCESSFUL| J["RootFS attestation successful"];
I e08@-->|SUCCESSFUL| J["RootFS attestation successful"]; e02@{ animation: fast }
e02@{ animation: fast } e03@{ animation: fast }
e03@{ animation: fast } e04@{ animation: fast }
e04@{ animation: fast } e05@{ animation: fast }
e05@{ animation: fast } e06@{ animation: fast }
e06@{ animation: fast } e07@{ animation: fast }
e07@{ animation: fast } e08@{ animation: fast }
e08@{ animation: fast } end
end
subgraph ISO Run Time subgraph ISO Run Time
direction TD J e09@--> K{{"CISS.debian.live.builder ISO running"}};
J e09@--> K{{"CISS.debian.live.builder ISO running"}}; X{{"Boot process halted"}};
X{{"Boot process halted"}}; e09@{ animation: fast }
e09@{ animation: fast } end
end
D -- FAIL --> X; D -- FAIL --> X;
G -- FAIL --> X; G -- FAIL --> X;