Skip to content

New UKI having kernel 6.18 fails to be signed by sb-signer #230

@starnight

Description

@starnight

The CI fails to sign the new built UKI of kernel 6.18 and shows error:

Failure Summary
    signing/payg/signed-uki-endless.bst:
    [00:00:00][][   build:signing/payg/signed-uki-endless.bst] FAILURE Failed to contact secure boot signing service at https://sb-signer.endlessm-sf.com/

        413 Client Error: Request Entity Too Large for url: https://sb-signer.endlessm-sf.com/api/sign

        Printing the last 20 lines from log file:
        /home/runner/.cache/buildstream/logs/endlessos/signing-payg-signed-uki-endless/-build.20260305-145123.log
        ======================================================================
            TZ: UTC
            SOURCE_DATE_EPOCH: 1321009871
            CFLAGS: '-O2 -pipe -g -Wp,-D_FORTIFY_SOURCE=3 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protection -fno-omit-frame-pointer -mno-omit-leaf-frame-pointer '
            CXXFLAGS: '-O2 -pipe -g -Wp,-D_FORTIFY_SOURCE=3 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protection -fno-omit-frame-pointer -mno-omit-leaf-frame-pointer '
            LDFLAGS: '-Wl,-z,relro,-z,now -Wl,--as-needed '
            RUSTFLAGS: '-Cforce-frame-pointers=yes -C debuginfo=2 '
            CGO_CFLAGS: '-O2 -pipe -g -Wp,-D_FORTIFY_SOURCE=3 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protection -fno-omit-frame-pointer -mno-omit-leaf-frame-pointer '
            CGO_CXXFLAGS: '-O2 -pipe -g -Wp,-D_FORTIFY_SOURCE=3 -Wp,-D_GLIBCXX_ASSERTIONS -fexceptions -fstack-protector-strong -grecord-gcc-switches -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protection -fno-omit-frame-pointer -mno-omit-leaf-frame-pointer '
            CGO_LDFLAGS: '-Wl,-z,relro,-z,now -Wl,--as-needed '
        [--:--:--] STATUS  [] eos/payg/uki.bst: Staging eos/payg/uki.bst/
        [--:--:--] LOG     [] signing/payg/signed-uki-endless.bst: Reading input binary in sandbox: usr/share/efi_binaries_payg/payg-image.efi
        [--:--:--] LOG     [] signing/payg/signed-uki-endless.bst: Reading private key from host file files/apitrustedkey.gpg
        [--:--:--] INFO    [] signing/payg/signed-uki-endless.bst: Loaded private key with fingerprint 00EA12D9A37DD2A7BD810643DFB958DC725AE7CA
        [--:--:--] LOG     [] signing/payg/signed-uki-endless.bst: Creating signature
        [--:--:--] INFO    [] signing/payg/signed-uki-endless.bst: Sending POST request to signer service at https://sb-signer.endlessm-sf.com/api/sign
        [--:--:--] START   [] signing/payg/signed-uki-endless.bst: Caching artifact
        [00:00:00] SUCCESS [] signing/payg/signed-uki-endless.bst: Caching artifact
        [00:00:00] FAILURE [] signing/payg/signed-uki-endless.bst: Failed to contact secure boot signing service at https://sb-signer.endlessm-sf.com/

            413 Client Error: Request Entity Too Large for url: https://sb-signer.endlessm-sf.com/api/sign
        ======================================================================

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions