From: Vagrant Cascadian <vagrant@debian.org>
To: u-boot@lists.denx.de
Subject: [U-Boot] Reproducible U-Boot build support, using SOURCE_DATE_EPOCH
Date: Thu, 24 Sep 2015 09:05:10 -0700 [thread overview]
Message-ID: <87oagriz0p.fsf@aikidev.net> (raw)
In-Reply-To: <1437929295-9642-1-git-send-email-contact@paulk.fr>
On 2015-07-26, Paul Kocialkowski wrote:
> In order to achieve reproducible builds in U-Boot, timestamps that are defined
> at build-time have to be somewhat eliminated. The SOURCE_DATE_EPOCH environment
> variable allows setting a fixed value for those timestamps.
...
> However, some other devices might need some more tweaks, especially regarding
> the image generation tools.
With this patch, there is still variation based on timezone in any of
the u-boot.img and u-boot-sunxi-with-spl.bin produced in the Debian
packages:
https://reproducible.debian.net/rb-pkg/unstable/armhf/u-boot.html
The good news is that all the u-boot.bin targets are produced
reproducibly, so here's to progress!
I think the use of "time = mktime(time_universal);" is where the problem
lies:
> diff --git a/tools/default_image.c b/tools/default_image.c
> index cf5c0d4..18940af 100644
> --- a/tools/default_image.c
> +++ b/tools/default_image.c
> @@ -96,9 +99,25 @@ static void image_set_header(void *ptr, struct stat *sbuf, int ifd,
> sizeof(image_header_t)),
> sbuf->st_size - sizeof(image_header_t));
>
> + source_date_epoch = getenv("SOURCE_DATE_EPOCH");
> + if (source_date_epoch != NULL) {
> + time = (time_t) strtol(source_date_epoch, NULL, 10);
> +
> + time_universal = gmtime(&time);
> + if (time_universal == NULL) {
> + fprintf(stderr, "%s: SOURCE_DATE_EPOCH is not valid\n",
> + __func__);
> + time = 0;
> + } else {
> + time = mktime(time_universal);
> + }
> + } else {
> + time = sbuf->st_mtime;
> + }
> +
> /* Build new header */
> image_set_magic(hdr, IH_MAGIC);
> - image_set_time(hdr, sbuf->st_mtime);
> + image_set_time(hdr, time);
> image_set_size(hdr, sbuf->st_size - sizeof(image_header_t));
> image_set_load(hdr, params->addr);
> image_set_ep(hdr, params->ep);
> --
> 1.9.1
According to the mktime manpage:
The mktime() function converts a broken-down time structure,
expressed as local time, to calendar time representation.
So my interpetation is that it's taking the UTC time and converts it
into local time using the configured timezone... not sure what would be
a viable alternative to mktime.
Running with the TZ=UTC environment variable exported works around the
problem; not sure if it would be appropriate to always run with TZ=UTC
when SOURCE_DATE_EPOCH is set...
live well,
vagrant
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 818 bytes
Desc: not available
URL: <http://lists.denx.de/pipermail/u-boot/attachments/20150924/4e92e27e/attachment.sig>
next prev parent reply other threads:[~2015-09-24 16:05 UTC|newest]
Thread overview: 43+ messages / expand[flat|nested] mbox.gz Atom feed top
2015-07-26 16:48 [U-Boot] [PATCH v2] Reproducible U-Boot build support, using SOURCE_DATE_EPOCH Paul Kocialkowski
2015-07-28 15:00 ` [U-Boot] [U-Boot, " Tom Rini
2015-07-31 2:54 ` Bin Meng
2015-07-31 5:25 ` Chris Packham
2015-07-31 10:04 ` [U-Boot] [PATCH] Makefile: Use correct timezone for U_BOOT_TZ Chris Packham
2015-07-31 12:14 ` Bin Meng
2015-07-31 17:05 ` Paul Kocialkowski
2015-08-01 9:40 ` Chris Packham
2015-08-01 9:43 ` [U-Boot] [PATCH v2] " Chris Packham
2015-08-10 10:49 ` Chris Packham
2015-07-31 10:19 ` [U-Boot] [Reproducible-builds] [U-Boot, v2] Reproducible U-Boot build support, using SOURCE_DATE_EPOCH Ximin Luo
2015-08-01 10:32 ` [U-Boot] [RFC PATCH] Makefile: Add SOURCE_DATE_TZ Chris Packham
2015-08-01 18:47 ` Paul Kocialkowski
2015-08-01 22:02 ` Ximin Luo
2015-08-01 22:04 ` Ximin Luo
2015-08-12 16:40 ` [U-Boot] [U-Boot,RFC] " Tom Rini
2015-08-13 5:57 ` Chris Packham
2015-08-25 10:08 ` [U-Boot] [U-Boot, v2] Reproducible U-Boot build support, using SOURCE_DATE_EPOCH Fabio Estevam
2015-08-25 8:49 ` Andreas Bießmann
2015-08-25 9:55 ` [U-Boot] [Reproducible-builds] " Vagrant Cascadian
2015-08-25 10:20 ` Andreas Bießmann
2015-08-25 12:12 ` Paul Kocialkowski
2015-08-25 11:20 ` [U-Boot] SOURCE_DATE_EPOCH must not be linux only... (was Re: [Reproducible-builds] [U-Boot, v2] Reproducible U-Boot build support, using SOURCE_DATE_EPOCH) Holger Levsen
2015-08-27 8:13 ` [U-Boot] [RFC PATCH] Makefile: search for GNU date Andreas Bießmann
2015-08-27 8:28 ` Marek Vasut
2015-08-27 9:01 ` Andreas Bießmann
2015-08-27 10:28 ` Marek Vasut
2015-08-27 8:32 ` Paul Kocialkowski
2015-08-27 8:56 ` Andreas Bießmann
2015-08-27 9:30 ` [U-Boot] [RFC PATCH v2] " Andreas Bießmann
2015-08-27 13:03 ` Paul Kocialkowski
2015-08-27 13:52 ` Andreas Bießmann
2015-08-27 14:23 ` Paul Kocialkowski
2015-08-28 8:29 ` [U-Boot] [PATCH v3] Makefile: fix SOURCE_DATE_EPOCH for *BSD host Andreas Bießmann
2015-08-28 21:04 ` [U-Boot] [U-Boot, " Tom Rini
2015-08-28 21:22 ` Holger Levsen
2015-09-01 17:03 ` [U-Boot] [PATCH " Paul Kocialkowski
2015-09-02 7:41 ` Andreas Bießmann
2015-09-24 16:05 ` Vagrant Cascadian [this message]
2015-09-28 17:42 ` [U-Boot] Reproducible U-Boot build support, using SOURCE_DATE_EPOCH Paul Kocialkowski
2015-09-30 15:50 ` [U-Boot] [Reproducible-builds] " Vagrant Cascadian
2015-10-02 10:19 ` Paul Kocialkowski
2015-09-28 18:59 ` [U-Boot] " Siarhei Siamashka
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=87oagriz0p.fsf@aikidev.net \
--to=vagrant@debian.org \
--cc=u-boot@lists.denx.de \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox