The ST team is happy to announce a new release of the stmgr program, tag v0.4.1, which succeeds the previous release at tag v0.3.3. The source code for this release is available from the git repository:
git clone -b v0.4.1 https://git.glasklar.is/system-transparency/core/stmgr.git
Authoritative ST release signing keys are published at https://www.system-transparency.org/keys, and the tag signature can be verified using the command
git -c gpg.format=ssh -c gpg.ssh.allowedSignersFile=allowed-ST-release-signers \ tag --verify v0.4.1
The expectations and intended use of the stmgr program is documented in the repository's RELEASES file. This RELEASES file also contains more information concerning the overall release process, see:
https://git.glasklar.is/system-transparency/core/stmgr/-/blob/v0.4.1/RELEASE...
Learn about what's new in a release from the repository's NEWS file. An excerpt from the latest NEWS-file entry is listed below for convenience.
If you find any bugs, please report them on the System Transparency discuss list or open an issue on GitLab in the stmgr repository:
https://lists.system-transparency.org/mailman3/postorius/lists/st-discuss.li... https://git.glasklar.is/system-transparency/core/stmgr/-/issues
Cheers, The ST team
NEWS for stmgr v0.4.1
This release adds support for using relative OS package URLs.
New features and improvements:
* The stmgr ospkg subcommand now supports using a relative URL for the OS package archive to download (os_pkg_url). Refer to the OS package documentation for further details on this feature. https://git.glasklar.is/system-transparency/project/docs/-/blob/v0.3.0/conte...
Compatibility:
* This release implements the specifications at https://git.glasklar.is/system-transparency/project/docs/-/tree/v0.3.0/conte...
* Artifacts generated by this release of stmgr are tested with stboot pre-release version v0.4.0, and are expected to work with the final stboot release version as well.
* As long as only absolute URLs are specified for the os_pkg_url, artifacts generated by this release of stmgr are fully compatible with stboot-v0.3.6.