-
Notifications
You must be signed in to change notification settings - Fork 1
/
Copy pathMakefile
123 lines (105 loc) · 4.52 KB
/
Makefile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
VERSION = 5
ARCH = $(shell uname -m | sed s,i[3456789]86,ia32,)
DATADIR := /usr/share
LIBDIR := /usr/lib64
GNUEFIDIR ?= $(LIBDIR)/gnuefi/
CC = gcc
CFLAGS ?= -O0 -g3
BUILDFLAGS := $(CFLAGS) -fPIC -Werror -Wall -Wextra -fshort-wchar \
-fno-merge-constants -ffreestanding \
-fno-stack-protector -fno-stack-check --std=gnu11 -DCONFIG_$(ARCH) \
-I/usr/include/efi/ -I/usr/include/efi/$(ARCH)/ \
-I/usr/include/efi/protocol
CCLDFLAGS ?= -nostdlib -fPIC -Wl,--warn-common \
-Wl,--no-undefined -Wl,--fatal-warnings \
-Wl,-shared -Wl,-Bsymbolic -L$(LIBDIR) -L$(GNUEFIDIR) \
-Wl,--build-id=sha1 -Wl,--hash-style=sysv
LD = ld
OBJCOPY = objcopy
OBJCOPY_GTE224 = $(shell expr $$($(OBJCOPY) --version |grep "^GNU objcopy" | sed 's/^.*\((.*)\|version\) //g' | cut -f1-2 -d.) \>= 2.24)
dbsize = \
$(if $(filter-out undefined,$(origin VENDOR_DB_FILE)),$(shell /usr/bin/stat --printf="%s" $(VENDOR_DB_FILE)),0)
DB_ADDRESSES=$(shell objdump -h certmule.so | ./find-addresses dbsz=$(call dbsize))
DB_ADDRESS=$(word $(2), $(call DB_ADDRESSES, $(1)))
DB_SECTION_ALIGN = 512
DB_SECTION_FLAGS = alloc,contents,load,readonly,data
define VENDOR_DB =
$(if $(filter-out undefined,$(origin VENDOR_DB_FILE)),\
--set-section-alignment .db=$(DB_SECTION_ALIGN) \
--set-section-flags .db=$(DB_SECTION_FLAGS) \
--add-section .db="$(VENDOR_DB_FILE)" \
--change-section-address .db=$(call DB_ADDRESS, $(1), 1),)
endef
OBJFLAGS =
SOLIBS =
ifeq ($(ARCH),x86_64)
FORMAT = --target efi-app-$(ARCH)
BUILDFLAGS += -mno-mmx -mno-sse -mno-red-zone -nostdinc \
-maccumulate-outgoing-args -DEFI_FUNCTION_WRAPPER \
-DGNU_EFI_USE_MS_ABI -I$(shell $(CC) -print-file-name=include)
endif
ifeq ($(ARCH),ia32)
FORMAT = --target efi-app-$(ARCH)
BUILDFLAGS += -mno-mmx -mno-sse -mno-red-zone -nostdinc \
-maccumulate-outgoing-args -m32 \
-I$(shell $(CC) -print-file-name=include)
endif
ifeq ($(ARCH),aarch64)
FORMAT = -O binary
CCLDFLAGS += -Wl,--defsym=EFI_SUBSYSTEM=0xa
BUILDFLAGS += -ffreestanding -I$(shell $(CC) -print-file-name=include)
endif
ifeq ($(ARCH),arm)
FORMAT = -O binary
CCLDFLAGS += -Wl,--defsym=EFI_SUBSYSTEM=0xa
BUILDFLAGS += -ffreestanding -I$(shell $(CC) -print-file-name=include)
endif
all : pesign-test-app.efi certmule.efi
pesign-test-app.so : SOLIBS=-lefi -lgnuefi
pesign-test-app.so : SOFLAGS=$(GNUEFIDIR)/crt0-efi-$(ARCH).o
pesign-test-app.efi : SECTIONS=.text .sdata .data .dynamic .dynsynm .rel* .rela* .reloc .eh_frame
pesign-test-app.efi : OBJFLAGS=
certmule.so : SOLIBS=
certmule.so : SOFLAGS=
certmule.so : BUILDFLAGS+=-DVENDOR_DB
certmule.efi : OBJFLAGS = --strip-unneeded $(call VENDOR_DB, $<)
certmule.efi : SECTIONS=.text .reloc .db
certmule.efi : VENDOR_DB_FILE?=db.esl
%.efi : %.so
ifneq ($(OBJCOPY_GTE224),1)
$(error objcopy >= 2.24 is required)
endif
$(OBJCOPY) $(foreach section,$(SECTIONS),-j $(section) ) \
--file-alignment 512 --section-alignment 4096 -D \
$(OBJFLAGS) \
$(FORMAT) $^ $@
%.so : %.o
$(CC) $(CCLDFLAGS) $(SOFLAGS) -o $@ $^ $(SOLIBS) \
$(shell $(CC) -print-libgcc-file-name) \
-T $(GNUEFIDIR)/elf_$(ARCH)_efi.lds
%.o : %.c
$(CC) $(BUILDFLAGS) -c -o $@ $^
clean :
@rm -vf *.o *.so *.efi
install :
install -D -d -m 0755 $(INSTALLROOT)/$(DATADIR)/pesign-test-app-$(VERSION)
install -m 0644 pesign-test-app.efi $(INSTALLROOT)/$(DATADIR)/pesign-test-app-$(VERSION)/pesign-test-app.efi
GITTAG = $(VERSION)
test-archive:
@rm -rf /tmp/pesign-test-app-$(VERSION) /tmp/pesign-test-app-$(VERSION)-tmp
@mkdir -p /tmp/pesign-test-app-$(VERSION)-tmp
@git archive --format=tar $(shell git branch | awk '/^*/ { print $$2 }') | ( cd /tmp/pesign-test-app-$(VERSION)-tmp/ ; tar x )
@git diff | ( cd /tmp/pesign-test-app-$(VERSION)-tmp/ ; patch -s -p1 -b -z .gitdiff )
@mv /tmp/pesign-test-app-$(VERSION)-tmp/ /tmp/pesign-test-app-$(VERSION)/
@dir=$$PWD; cd /tmp; tar -c --bzip2 -f $$dir/pesign-test-app-$(VERSION).tar.bz2 pesign-test-app-$(VERSION)
@rm -rf /tmp/pesign-test-app-$(VERSION)
@echo "The archive is in pesign-test-app-$(VERSION).tar.bz2"
archive:
git tag $(GITTAG) refs/heads/master
@rm -rf /tmp/pesign-test-app-$(VERSION) /tmp/pesign-test-app-$(VERSION)-tmp
@mkdir -p /tmp/pesign-test-app-$(VERSION)-tmp
@git archive --format=tar $(GITTAG) | ( cd /tmp/pesign-test-app-$(VERSION)-tmp/ ; tar x )
@mv /tmp/pesign-test-app-$(VERSION)-tmp/ /tmp/pesign-test-app-$(VERSION)/
@dir=$$PWD; cd /tmp; tar -c --bzip2 -f $$dir/pesign-test-app-$(VERSION).tar.bz2 pesign-test-app-$(VERSION)
@rm -rf /tmp/pesign-test-app-$(VERSION)
@echo "The archive is in pesign-test-app-$(VERSION).tar.bz2"