Wed Jul 30 00:03:51 UTC 2025 I: starting to build shim-signed/unstable/amd64 on jenkins on '2025-07-30 00:03' Wed Jul 30 00:03:51 UTC 2025 I: The jenkins build log is/was available at https://jenkins.debian.net/userContent/reproducible/debian/build_service/amd64_3/62870/console.log Wed Jul 30 00:03:51 UTC 2025 I: Downloading source for unstable/shim-signed=1.47 --2025-07-30 00:03:51-- http://deb.debian.org/debian/pool/main/s/shim-signed/shim-signed_1.47.dsc Connecting to 46.16.76.132:3128... connected. Proxy request sent, awaiting response... 200 OK Length: 1893 (1.8K) [text/prs.lines.tag] Saving to: ‘shim-signed_1.47.dsc’ 0K . 100% 215M=0s 2025-07-30 00:03:51 (215 MB/s) - ‘shim-signed_1.47.dsc’ saved [1893/1893] Wed Jul 30 00:03:51 UTC 2025 I: shim-signed_1.47.dsc -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 3.0 (native) Source: shim-signed Binary: shim-signed, shim-signed-common Architecture: amd64 arm64 all Version: 1.47 Maintainer: Debian EFI Team Uploaders: Steve McIntyre <93sam@debian.org>, Steve Langasek Standards-Version: 4.5.1 Vcs-Browser: https://salsa.debian.org/efi-team/shim-signed Vcs-Git: https://salsa.debian.org/efi-team/shim-signed.git Build-Depends: debhelper (>= 13), shim-unsigned (= 15.8-1), shim-helpers-amd64-signed [amd64], shim-helpers-arm64-signed [arm64], sbsigntool (>= 0.9.2-2), po-debconf, debhelper-compat (= 13) Package-List: shim-signed deb utils optional arch=amd64,arm64 shim-signed-common deb utils optional arch=all Checksums-Sha1: 18858265108d55a5a3f928ea5adab4ca899e5ef6 587868 shim-signed_1.47.tar.xz Checksums-Sha256: 67f41d685773d0274ec3f880cc65d7d1a3fa3ac56258991480a163130a263071 587868 shim-signed_1.47.tar.xz Files: 9579ca4508b5f04b31ba8e93617c1530 587868 shim-signed_1.47.tar.xz -----BEGIN PGP SIGNATURE----- iQJFBAEBCAAvFiEEzrtSMB1hfpEDkP4WWHl5VzRCaE4FAmiJCHQRHDkzc2FtQGRl Ymlhbi5vcmcACgkQWHl5VzRCaE7HzBAAqfQZDIjUAnm14RA0EiP/0ZdR1gb8M5Jh JLdhPlLVIKlt92fEa/rl9ECaQLKhcF6+C8fF2iutqezXwxxb1tX5JjgJSfhNirWy 28HffkznSByIbU96ZvK3JdkhsvzCQDBKEnPiGeXagUHYRCLjluAa3+qChMn9uc1m 6gOyNOc9VYhUcTrrwlLuIAgSysM3F9aDmr1pOE7X6Ks9oiAye3v8ZtYoIfmhBEEz PGUjSPlAb9qb+V8HPogckCKDrXmo2JG5HTX08v3j2VR47rgh5sbDW05Qkmeh3OdW vQO/k25R0KKMQXruByJFuwUgUMjdqpLUa31jecd/ANllIOanGr0FleW4MnzfPZOc iME6WWz4yXmpMrOfQMISZdOLYIV8XHdVc3VjE57uzg/UzcLP7m99pRViB+9S/gvY OsDuLvtN1D6EqTC5z/n+FZtwBp2owgfGGmWb6H8Vr1bu4+74HeAAMk7BrSvdKzHA toAviatWwXjMj/EItNtrWZ8ECIsxlUVnXXNUUqCYgjeaBt0lc92D+yIMRNA9nbuE WHa2MtZtwjZUy4l23OZg+rFfZ/1U7pHTDTQ/QMULj3KF/YZTeMWR/EhRouqvcClA JAh/sHeVGVCg8AMPlsPHcn2Pok1imawCYlAk09SbZ/OIyB6e1/OEg0x9i7wh3lJK fSI5bcLJR6c= =L951 -----END PGP SIGNATURE----- Wed Jul 30 00:03:51 UTC 2025 I: Checking whether the package is not for us Wed Jul 30 00:03:51 UTC 2025 I: Starting 1st build on remote node ionos1-amd64.debian.net. Wed Jul 30 00:03:51 UTC 2025 I: Preparing to do remote build '1' on ionos1-amd64.debian.net. Wed Jul 30 00:05:30 UTC 2025 I: Deleting $TMPDIR on ionos1-amd64.debian.net. I: pbuilder: network access will be disabled during build I: Current time: Tue Jul 29 12:03:54 -12 2025 I: pbuilder-time-stamp: 1753833834 I: Building the build Environment I: extracting base tarball [/var/cache/pbuilder/unstable-reproducible-base.tgz] I: copying local configuration W: --override-config is not set; not updating apt.conf Read the manpage for details. I: mounting /proc filesystem I: mounting /sys filesystem I: creating /{dev,run}/shm I: mounting /dev/pts filesystem I: redirecting /dev/ptmx to /dev/pts/ptmx I: policy-rc.d already exists I: Copying source file I: copying [shim-signed_1.47.dsc] I: copying [./shim-signed_1.47.tar.xz] I: Extracting source dpkg-source: warning: cannot verify inline signature for ./shim-signed_1.47.dsc: no acceptable signature found dpkg-source: info: extracting shim-signed in shim-signed-1.47 dpkg-source: info: unpacking shim-signed_1.47.tar.xz I: using fakeroot in build. I: Installing the build-deps I: user script /srv/workspace/pbuilder/1628145/tmp/hooks/D02_print_environment starting I: set BUILDDIR='/build/reproducible-path' BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other' BUILDUSERNAME='pbuilder1' BUILD_ARCH='amd64' DEBIAN_FRONTEND='noninteractive' DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=40 ' DISTRIBUTION='unstable' HOME='/root' HOST_ARCH='amd64' IFS=' ' INVOCATION_ID='202a757949dc4ea382fa924faabb70c9' LANG='C' LANGUAGE='en_US:en' LC_ALL='C' MAIL='/var/mail/root' OPTIND='1' PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games' PBCURRENTCOMMANDLINEOPERATION='build' PBUILDER_OPERATION='build' PBUILDER_PKGDATADIR='/usr/share/pbuilder' PBUILDER_PKGLIBDIR='/usr/lib/pbuilder' PBUILDER_SYSCONFDIR='/etc' PPID='1628145' PS1='# ' PS2='> ' PS4='+ ' PWD='/' SHELL='/bin/bash' SHLVL='2' SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.esiUqLG0/pbuilderrc_RLjX --distribution unstable --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/unstable-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.esiUqLG0/b1 --logfile b1/build.log shim-signed_1.47.dsc' SUDO_GID='110' SUDO_UID='105' SUDO_USER='jenkins' TERM='unknown' TZ='/usr/share/zoneinfo/Etc/GMT+12' USER='root' _='/usr/bin/systemd-run' http_proxy='http://46.16.76.132:3128' I: uname -a Linux ionos1-amd64 6.1.0-37-amd64 #1 SMP PREEMPT_DYNAMIC Debian 6.1.140-1 (2025-05-22) x86_64 GNU/Linux I: ls -l /bin lrwxrwxrwx 1 root root 7 May 12 19:25 /bin -> usr/bin I: user script /srv/workspace/pbuilder/1628145/tmp/hooks/D02_print_environment finished -> Attempting to satisfy build-dependencies -> Creating pbuilder-satisfydepends-dummy package Package: pbuilder-satisfydepends-dummy Version: 0.invalid.0 Architecture: amd64 Maintainer: Debian Pbuilder Team Description: Dummy package to satisfy dependencies with aptitude - created by pbuilder This package was created automatically by pbuilder to satisfy the build-dependencies of the package being currently built. Depends: debhelper (>= 13), shim-unsigned (= 15.8-1), shim-helpers-amd64-signed, sbsigntool (>= 0.9.2-2), po-debconf, debhelper-compat (= 13) dpkg-deb: building package 'pbuilder-satisfydepends-dummy' in '/tmp/satisfydepends-aptitude/pbuilder-satisfydepends-dummy.deb'. Selecting previously unselected package pbuilder-satisfydepends-dummy. (Reading database ... 19849 files and directories currently installed.) Preparing to unpack .../pbuilder-satisfydepends-dummy.deb ... Unpacking pbuilder-satisfydepends-dummy (0.invalid.0) ... dpkg: pbuilder-satisfydepends-dummy: dependency problems, but configuring anyway as you requested: pbuilder-satisfydepends-dummy depends on debhelper (>= 13); however: Package debhelper is not installed. pbuilder-satisfydepends-dummy depends on shim-unsigned (= 15.8-1); however: Package shim-unsigned is not installed. pbuilder-satisfydepends-dummy depends on shim-helpers-amd64-signed; however: Package shim-helpers-amd64-signed is not installed. pbuilder-satisfydepends-dummy depends on sbsigntool (>= 0.9.2-2); however: Package sbsigntool is not installed. pbuilder-satisfydepends-dummy depends on po-debconf; however: Package po-debconf is not installed. pbuilder-satisfydepends-dummy depends on debhelper-compat (= 13); however: Package debhelper-compat is not installed. Setting up pbuilder-satisfydepends-dummy (0.invalid.0) ... Reading package lists... Building dependency tree... Reading state information... Initializing package states... Writing extended state information... Building tag database... pbuilder-satisfydepends-dummy is already installed at the requested version (0.invalid.0) pbuilder-satisfydepends-dummy is already installed at the requested version (0.invalid.0) The following NEW packages will be installed: autoconf{a} automake{a} autopoint{a} autotools-dev{a} bsdextrautils{a} debhelper{a} dh-autoreconf{a} dh-strip-nondeterminism{a} dwz{a} file{a} gettext{a} gettext-base{a} groff-base{a} intltool-debian{a} libarchive-zip-perl{a} libdebhelper-perl{a} libelf1t64{a} libfile-stripnondeterminism-perl{a} libmagic-mgc{a} libmagic1t64{a} libpipeline1{a} libtool{a} libuchardet0{a} libunistring5{a} libxml2{a} m4{a} man-db{a} po-debconf{a} sbsigntool{a} sensible-utils{a} shim-helpers-amd64-signed{a} shim-unsigned{a} The following packages are RECOMMENDED but will NOT be installed: curl libarchive-cpio-perl libltdl-dev libmail-sendmail-perl lynx wget 0 packages upgraded, 32 newly installed, 0 to remove and 0 not upgraded. Need to get 12.0 MB of archives. After unpacking 46.0 MB will be used. Writing extended state information... Get: 1 http://deb.debian.org/debian unstable/main amd64 sensible-utils all 0.0.25 [25.0 kB] Get: 2 http://deb.debian.org/debian unstable/main amd64 libmagic-mgc amd64 1:5.46-5 [338 kB] Get: 3 http://deb.debian.org/debian unstable/main amd64 libmagic1t64 amd64 1:5.46-5 [109 kB] Get: 4 http://deb.debian.org/debian unstable/main amd64 file amd64 1:5.46-5 [43.6 kB] Get: 5 http://deb.debian.org/debian unstable/main amd64 gettext-base amd64 0.23.1-2 [243 kB] Get: 6 http://deb.debian.org/debian unstable/main amd64 libuchardet0 amd64 0.0.8-1+b2 [68.9 kB] Get: 7 http://deb.debian.org/debian unstable/main amd64 groff-base amd64 1.23.0-9 [1187 kB] Get: 8 http://deb.debian.org/debian unstable/main amd64 bsdextrautils amd64 2.41-5 [94.6 kB] Get: 9 http://deb.debian.org/debian unstable/main amd64 libpipeline1 amd64 1.5.8-1 [42.0 kB] Get: 10 http://deb.debian.org/debian unstable/main amd64 man-db amd64 2.13.1-1 [1469 kB] Get: 11 http://deb.debian.org/debian unstable/main amd64 m4 amd64 1.4.19-8 [294 kB] Get: 12 http://deb.debian.org/debian unstable/main amd64 autoconf all 2.72-3.1 [494 kB] Get: 13 http://deb.debian.org/debian unstable/main amd64 autotools-dev all 20240727.1 [60.2 kB] Get: 14 http://deb.debian.org/debian unstable/main amd64 automake all 1:1.17-4 [862 kB] Get: 15 http://deb.debian.org/debian unstable/main amd64 autopoint all 0.23.1-2 [770 kB] Get: 16 http://deb.debian.org/debian unstable/main amd64 libdebhelper-perl all 13.24.2 [90.9 kB] Get: 17 http://deb.debian.org/debian unstable/main amd64 libtool all 2.5.4-4 [539 kB] Get: 18 http://deb.debian.org/debian unstable/main amd64 dh-autoreconf all 20 [17.1 kB] Get: 19 http://deb.debian.org/debian unstable/main amd64 libarchive-zip-perl all 1.68-1 [104 kB] Get: 20 http://deb.debian.org/debian unstable/main amd64 libfile-stripnondeterminism-perl all 1.14.1-2 [19.7 kB] Get: 21 http://deb.debian.org/debian unstable/main amd64 dh-strip-nondeterminism all 1.14.1-2 [8620 B] Get: 22 http://deb.debian.org/debian unstable/main amd64 libelf1t64 amd64 0.192-4 [189 kB] Get: 23 http://deb.debian.org/debian unstable/main amd64 dwz amd64 0.15-1+b1 [110 kB] Get: 24 http://deb.debian.org/debian unstable/main amd64 libunistring5 amd64 1.3-2 [477 kB] Get: 25 http://deb.debian.org/debian unstable/main amd64 libxml2 amd64 2.12.7+dfsg+really2.9.14-2.1 [698 kB] Get: 26 http://deb.debian.org/debian unstable/main amd64 gettext amd64 0.23.1-2 [1680 kB] Get: 27 http://deb.debian.org/debian unstable/main amd64 intltool-debian all 0.35.0+20060710.6 [22.9 kB] Get: 28 http://deb.debian.org/debian unstable/main amd64 po-debconf all 1.0.21+nmu1 [248 kB] Get: 29 http://deb.debian.org/debian unstable/main amd64 debhelper all 13.24.2 [919 kB] Get: 30 http://deb.debian.org/debian unstable/main amd64 sbsigntool amd64 0.9.4-3.2 [67.5 kB] Get: 31 http://deb.debian.org/debian unstable/main amd64 shim-unsigned amd64 15.8-1 [440 kB] Get: 32 http://deb.debian.org/debian unstable/main amd64 shim-helpers-amd64-signed amd64 1+15.8+1 [301 kB] Fetched 12.0 MB in 0s (39.5 MB/s) Preconfiguring packages ... Selecting previously unselected package sensible-utils. (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 19849 files and directories currently installed.) Preparing to unpack .../00-sensible-utils_0.0.25_all.deb ... Unpacking sensible-utils (0.0.25) ... Selecting previously unselected package libmagic-mgc. Preparing to unpack .../01-libmagic-mgc_1%3a5.46-5_amd64.deb ... Unpacking libmagic-mgc (1:5.46-5) ... Selecting previously unselected package libmagic1t64:amd64. Preparing to unpack .../02-libmagic1t64_1%3a5.46-5_amd64.deb ... Unpacking libmagic1t64:amd64 (1:5.46-5) ... Selecting previously unselected package file. Preparing to unpack .../03-file_1%3a5.46-5_amd64.deb ... Unpacking file (1:5.46-5) ... Selecting previously unselected package gettext-base. Preparing to unpack .../04-gettext-base_0.23.1-2_amd64.deb ... Unpacking gettext-base (0.23.1-2) ... Selecting previously unselected package libuchardet0:amd64. Preparing to unpack .../05-libuchardet0_0.0.8-1+b2_amd64.deb ... Unpacking libuchardet0:amd64 (0.0.8-1+b2) ... Selecting previously unselected package groff-base. Preparing to unpack .../06-groff-base_1.23.0-9_amd64.deb ... Unpacking groff-base (1.23.0-9) ... Selecting previously unselected package bsdextrautils. Preparing to unpack .../07-bsdextrautils_2.41-5_amd64.deb ... Unpacking bsdextrautils (2.41-5) ... Selecting previously unselected package libpipeline1:amd64. Preparing to unpack .../08-libpipeline1_1.5.8-1_amd64.deb ... Unpacking libpipeline1:amd64 (1.5.8-1) ... Selecting previously unselected package man-db. Preparing to unpack .../09-man-db_2.13.1-1_amd64.deb ... Unpacking man-db (2.13.1-1) ... Selecting previously unselected package m4. Preparing to unpack .../10-m4_1.4.19-8_amd64.deb ... Unpacking m4 (1.4.19-8) ... Selecting previously unselected package autoconf. Preparing to unpack .../11-autoconf_2.72-3.1_all.deb ... Unpacking autoconf (2.72-3.1) ... Selecting previously unselected package autotools-dev. Preparing to unpack .../12-autotools-dev_20240727.1_all.deb ... Unpacking autotools-dev (20240727.1) ... Selecting previously unselected package automake. Preparing to unpack .../13-automake_1%3a1.17-4_all.deb ... Unpacking automake (1:1.17-4) ... Selecting previously unselected package autopoint. Preparing to unpack .../14-autopoint_0.23.1-2_all.deb ... Unpacking autopoint (0.23.1-2) ... Selecting previously unselected package libdebhelper-perl. Preparing to unpack .../15-libdebhelper-perl_13.24.2_all.deb ... Unpacking libdebhelper-perl (13.24.2) ... Selecting previously unselected package libtool. Preparing to unpack .../16-libtool_2.5.4-4_all.deb ... Unpacking libtool (2.5.4-4) ... Selecting previously unselected package dh-autoreconf. Preparing to unpack .../17-dh-autoreconf_20_all.deb ... Unpacking dh-autoreconf (20) ... Selecting previously unselected package libarchive-zip-perl. Preparing to unpack .../18-libarchive-zip-perl_1.68-1_all.deb ... Unpacking libarchive-zip-perl (1.68-1) ... Selecting previously unselected package libfile-stripnondeterminism-perl. Preparing to unpack .../19-libfile-stripnondeterminism-perl_1.14.1-2_all.deb ... Unpacking libfile-stripnondeterminism-perl (1.14.1-2) ... Selecting previously unselected package dh-strip-nondeterminism. Preparing to unpack .../20-dh-strip-nondeterminism_1.14.1-2_all.deb ... Unpacking dh-strip-nondeterminism (1.14.1-2) ... Selecting previously unselected package libelf1t64:amd64. Preparing to unpack .../21-libelf1t64_0.192-4_amd64.deb ... Unpacking libelf1t64:amd64 (0.192-4) ... Selecting previously unselected package dwz. Preparing to unpack .../22-dwz_0.15-1+b1_amd64.deb ... Unpacking dwz (0.15-1+b1) ... Selecting previously unselected package libunistring5:amd64. Preparing to unpack .../23-libunistring5_1.3-2_amd64.deb ... Unpacking libunistring5:amd64 (1.3-2) ... Selecting previously unselected package libxml2:amd64. Preparing to unpack .../24-libxml2_2.12.7+dfsg+really2.9.14-2.1_amd64.deb ... Unpacking libxml2:amd64 (2.12.7+dfsg+really2.9.14-2.1) ... Selecting previously unselected package gettext. Preparing to unpack .../25-gettext_0.23.1-2_amd64.deb ... Unpacking gettext (0.23.1-2) ... Selecting previously unselected package intltool-debian. Preparing to unpack .../26-intltool-debian_0.35.0+20060710.6_all.deb ... Unpacking intltool-debian (0.35.0+20060710.6) ... Selecting previously unselected package po-debconf. Preparing to unpack .../27-po-debconf_1.0.21+nmu1_all.deb ... Unpacking po-debconf (1.0.21+nmu1) ... Selecting previously unselected package debhelper. Preparing to unpack .../28-debhelper_13.24.2_all.deb ... Unpacking debhelper (13.24.2) ... Selecting previously unselected package sbsigntool. Preparing to unpack .../29-sbsigntool_0.9.4-3.2_amd64.deb ... Unpacking sbsigntool (0.9.4-3.2) ... Selecting previously unselected package shim-unsigned:amd64. Preparing to unpack .../30-shim-unsigned_15.8-1_amd64.deb ... Unpacking shim-unsigned:amd64 (15.8-1) ... Selecting previously unselected package shim-helpers-amd64-signed. Preparing to unpack .../31-shim-helpers-amd64-signed_1+15.8+1_amd64.deb ... Unpacking shim-helpers-amd64-signed (1+15.8+1) ... Setting up libpipeline1:amd64 (1.5.8-1) ... Setting up bsdextrautils (2.41-5) ... Setting up libmagic-mgc (1:5.46-5) ... Setting up libarchive-zip-perl (1.68-1) ... Setting up libdebhelper-perl (13.24.2) ... Setting up libmagic1t64:amd64 (1:5.46-5) ... Setting up gettext-base (0.23.1-2) ... Setting up m4 (1.4.19-8) ... Setting up file (1:5.46-5) ... Setting up libelf1t64:amd64 (0.192-4) ... Setting up autotools-dev (20240727.1) ... Setting up libunistring5:amd64 (1.3-2) ... Setting up autopoint (0.23.1-2) ... Setting up autoconf (2.72-3.1) ... Setting up dwz (0.15-1+b1) ... Setting up sensible-utils (0.0.25) ... Setting up libuchardet0:amd64 (0.0.8-1+b2) ... Setting up sbsigntool (0.9.4-3.2) ... Setting up libxml2:amd64 (2.12.7+dfsg+really2.9.14-2.1) ... Setting up shim-unsigned:amd64 (15.8-1) ... Setting up automake (1:1.17-4) ... update-alternatives: using /usr/bin/automake-1.17 to provide /usr/bin/automake (automake) in auto mode Setting up libfile-stripnondeterminism-perl (1.14.1-2) ... Setting up gettext (0.23.1-2) ... Setting up libtool (2.5.4-4) ... Setting up intltool-debian (0.35.0+20060710.6) ... Setting up dh-autoreconf (20) ... Setting up shim-helpers-amd64-signed (1+15.8+1) ... Setting up dh-strip-nondeterminism (1.14.1-2) ... Setting up groff-base (1.23.0-9) ... Setting up po-debconf (1.0.21+nmu1) ... Setting up man-db (2.13.1-1) ... Not building database; man-db/auto-update is not 'true'. Setting up debhelper (13.24.2) ... Processing triggers for libc-bin (2.41-11) ... Reading package lists... Building dependency tree... Reading state information... Reading extended state information... Initializing package states... Writing extended state information... Building tag database... -> Finished parsing the build-deps Reading package lists... Building dependency tree... Reading state information... fakeroot is already the newest version (1.37.1.2-1). 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. I: Building the package I: Running cd /build/reproducible-path/shim-signed-1.47/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S > ../shim-signed_1.47_source.changes dpkg-buildpackage: info: source package shim-signed dpkg-buildpackage: info: source version 1.47 dpkg-buildpackage: info: source distribution unstable dpkg-buildpackage: info: source changed by Steve McIntyre <93sam@debian.org> dpkg-source --before-build . dpkg-buildpackage: info: host architecture amd64 debian/rules clean dh clean dh_auto_clean make -j40 clean make[1]: Entering directory '/build/reproducible-path/shim-signed-1.47' rm -rf build make[1]: Leaving directory '/build/reproducible-path/shim-signed-1.47' dh_clean debian/rules binary dh binary dh_update_autotools_config dh_autoreconf dh_auto_configure dh_auto_build make -j40 "INSTALL=install --strip-program=true" make[1]: Entering directory '/build/reproducible-path/shim-signed-1.47' mkdir -p build # Verifying that the image is signed with the correct key. sbverify --cert MicCorUEFCA2011_2011-06-27.crt shimx64.efi.signed warning: data remaining[831016 vs 957136]: gaps between PE/COFF sections? Signature verification OK # Verifying that we have the correct binary. sbattach --detach build/detached-sig shimx64.efi.signed warning: data remaining[831016 vs 957136]: gaps between PE/COFF sections? cp /usr/lib/shim/shimx64.efi build/shimx64.efi.signed sbattach --attach build/detached-sig build/shimx64.efi.signed warning: data remaining[821248 vs 947368]: gaps between PE/COFF sections? Signing Unsigned original image cmp shimx64.efi.signed build/shimx64.efi.signed sha256sum shimx64.efi.signed build/shimx64.efi.signed 10b44fae69b1e2bb92484095ad0d140a66f8d8bcc960edbc46abb1a68f65fc26 shimx64.efi.signed 10b44fae69b1e2bb92484095ad0d140a66f8d8bcc960edbc46abb1a68f65fc26 build/shimx64.efi.signed make[1]: Leaving directory '/build/reproducible-path/shim-signed-1.47' dh_auto_test create-stamp debian/debhelper-build-stamp dh_prep dh_auto_install dh_install dh_installdocs dh_installchangelogs debian/rules override_dh_installdebconf make[1]: Entering directory '/build/reproducible-path/shim-signed-1.47' dh_installdebconf -p shim-signed-common make[1]: Leaving directory '/build/reproducible-path/shim-signed-1.47' dh_lintian dh_perl dh_link dh_strip_nondeterminism dh_compress dh_fixperms dh_missing dh_dwz -a dh_strip -a dh_makeshlibs -a dh_shlibdeps -a debian/rules override_dh_installdeb make[1]: Entering directory '/build/reproducible-path/shim-signed-1.47' # Remove apport files from Debian builds, they're not useful find debian/shim-signed-common -name '*apport*' | xargs rm -rvf removed 'debian/shim-signed-common/usr/share/apport/package-hooks/source_shim-signed.py' removed 'debian/shim-signed-common/usr/share/apport/package-hooks/source_shim.py' removed directory 'debian/shim-signed-common/usr/share/apport/package-hooks' removed directory 'debian/shim-signed-common/usr/share/apport' dh_installdeb make[1]: Leaving directory '/build/reproducible-path/shim-signed-1.47' debian/rules override_dh_gencontrol make[1]: Entering directory '/build/reproducible-path/shim-signed-1.47' dh_gencontrol -- -v1.47+15.8-1 \ -Vshim:Version=15.8-1 \ -Vhelpers:Version=1+15.8+1 make[1]: Leaving directory '/build/reproducible-path/shim-signed-1.47' dh_md5sums dh_builddeb dpkg-deb: building package 'shim-signed-common' in '../shim-signed-common_1.47+15.8-1_all.deb'. dpkg-deb: building package 'shim-signed' in '../shim-signed_1.47+15.8-1_amd64.deb'. dpkg-genbuildinfo --build=binary -O../shim-signed_1.47_amd64.buildinfo dpkg-genchanges --build=binary -O../shim-signed_1.47_amd64.changes dpkg-genchanges: info: binary-only upload (no source code included) dpkg-source --after-build . dpkg-buildpackage: info: binary-only upload (no source included) dpkg-genchanges: info: including full source code in upload I: copying local configuration I: unmounting dev/ptmx filesystem I: unmounting dev/pts filesystem I: unmounting dev/shm filesystem I: unmounting proc filesystem I: unmounting sys filesystem I: cleaning the build env I: removing directory /srv/workspace/pbuilder/1628145 and its subdirectories I: Current time: Tue Jul 29 12:05:29 -12 2025 I: pbuilder-time-stamp: 1753833929 Wed Jul 30 00:05:31 UTC 2025 I: 1st build successful. Starting 2nd build on remote node ionos15-amd64.debian.net. Wed Jul 30 00:05:31 UTC 2025 I: Preparing to do remote build '2' on ionos15-amd64.debian.net. Wed Jul 30 00:06:00 UTC 2025 I: Deleting $TMPDIR on ionos15-amd64.debian.net. Wed Jul 30 00:06:01 UTC 2025 I: shim-signed_1.47_amd64.changes: Format: 1.8 Date: Tue, 29 Jul 2025 18:40:14 +0100 Source: shim-signed Binary: shim-signed shim-signed-common Architecture: all amd64 Version: 1.47 Distribution: unstable Urgency: medium Maintainer: Debian EFI Team Changed-By: Steve McIntyre <93sam@debian.org> Description: shim-signed - Secure Boot chain-loading bootloader (Microsoft-signed binary) shim-signed-common - Secure Boot chain-loading bootloader (common helper scripts) Closes: 1108278 Changes: shim-signed (1.47) unstable; urgency=medium . * update-secureboot-policy: do better checking around DKMS If we have DKMS modules installed: + Check to see if a DKMS MOK key has been created and enrolled; + Check that all the DKMS modules are signed with that key; If successful, don't tell users to disable Secure Boot. Closes: #1108278. Add dependencies on openssl and kmod for shim-signed-common, needed for implementing these check. Checksums-Sha1: 43b750b76f28b504765fdaab7ef652d087ace98a 15216 shim-signed-common_1.47+15.8-1_all.deb acc47252c4fc2cce034f2df5940f8c5312b290e1 329428 shim-signed_1.47+15.8-1_amd64.deb 2e628956608cbddd97b37daf3d4ed19398b4ab12 5013 shim-signed_1.47_amd64.buildinfo Checksums-Sha256: a94ffd133ea797416b5049d6ca5063b608ba2552bd28eb884a52d0965481f1d4 15216 shim-signed-common_1.47+15.8-1_all.deb dda1d50bf1f6b4a70cf797c382c5318eb0c9d6599ac0be543051af080d78445a 329428 shim-signed_1.47+15.8-1_amd64.deb 69d60a0acd31c16f3088b522610d1074bc39fd9e343b7ba5e96a2a7ac532f82e 5013 shim-signed_1.47_amd64.buildinfo Files: db4b9b7934a8e81b292591baf3c17d99 15216 utils optional shim-signed-common_1.47+15.8-1_all.deb ad372702133dbb8bb8c6c384187b37cb 329428 utils optional shim-signed_1.47+15.8-1_amd64.deb c212bccde2d4cf406f7c431f9f1ee296 5013 utils optional shim-signed_1.47_amd64.buildinfo Wed Jul 30 00:06:01 UTC 2025 I: diffoscope 302 will be used to compare the two builds: Running as unit: rb-diffoscope-amd64_3-62870.service # Profiling output for: /usr/bin/diffoscope --timeout 7200 --html /srv/reproducible-results/rbuild-debian/r-b-build.esiUqLG0/shim-signed_1.47.diffoscope.html --text /srv/reproducible-results/rbuild-debian/r-b-build.esiUqLG0/shim-signed_1.47.diffoscope.txt --json /srv/reproducible-results/rbuild-debian/r-b-build.esiUqLG0/shim-signed_1.47.diffoscope.json --profile=- /srv/reproducible-results/rbuild-debian/r-b-build.esiUqLG0/b1/shim-signed_1.47_amd64.changes /srv/reproducible-results/rbuild-debian/r-b-build.esiUqLG0/b2/shim-signed_1.47_amd64.changes ## command (total time: 0.000s) 0.000s 1 call cmp (internal) ## has_same_content_as (total time: 0.000s) 0.000s 1 call diffoscope.comparators.binary.FilesystemFile ## main (total time: 0.003s) 0.003s 2 calls outputs 0.000s 1 call cleanup Finished with result: success Main processes terminated with: code=exited/status=0 Service runtime: 164ms CPU time consumed: 166ms Wed Jul 30 00:06:02 UTC 2025 I: diffoscope 302 found no differences in the changes files, and a .buildinfo file also exists. Wed Jul 30 00:06:02 UTC 2025 I: shim-signed from unstable built successfully and reproducibly on amd64. Wed Jul 30 00:06:03 UTC 2025 I: Removing signed shim-signed_1.47_amd64.buildinfo.asc files: removed './b1/shim-signed_1.47_amd64.buildinfo.asc' removed './b2/shim-signed_1.47_amd64.buildinfo.asc'