Project Mu - TianoCore Intel Packages
Перейти к файлу
Michael Kubacki b16865ca9b
Add CodeQL Stuart parameter to this repo (#52)
## Description

Allows CodeQL to be run locally by specifying `--codeql` when
providing `stuart_update` and `stuart_ci_build` commands in this
repo.

- `stuart_update` - Automatically downloads the CodeQL CLI application
  appropriate for your host operating system
  - Note: This may take several minutes depending on your Internet
    connection speed
- `stuart_ci_build` - Automatically runs CodeQL against the packages
  built after they are built.

NOTE: Running with CodeQL will increase your overall build time for a
couple of reasons:

1. Every package must be clean built to get proper results
2. The CodeQL analysis phase takes a while to run

  (1) happens automatically, you do not need to specify a clean build
  manually

For more information, such as:

1. How to view results
2. How to modify the CodeQL rules run
3. How to include/exclude files/rules at various levels of granularity

And more...

Go to the CodeQL plugin readme:

https://github.com/microsoft/mu_basecore/blob/HEAD/.pytool/Plugin/CodeQL/Readme.md

---

Also, this commit sets `STUART_CODEQL_AUDIT_ONLY` to `TRUE`. This is
done to:

1. Demonstrate how to set an entire repo to audit-only mode
2. Allow CodeQL to run without breaking the build at this point in
   source history since issues remain to be fixed on this branch

This will be removed from the file when (2) is completed.

---

- [ ] Impacts functionality?
  - **Functionality** - Does the change ultimately impact how firmware functions?
  - Examples: Add a new library, publish a new PPI, update an algorithm, ...
- [ ] Impacts security?
  - **Security** - Does the change have a direct security impact on an application,
    flow, or firmware?
  - Examples: Crypto algorithm change, buffer overflow fix, parameter
    validation improvement, ...
- [ ] Breaking change?
  - **Breaking change** - Will anyone consuming this change experience a break
    in build or boot behavior?
  - Examples: Add a new library class, move a module to a different repo, call
    a function in a new library class in a pre-existing module, ...
- [ ] Includes tests?
  - **Tests** - Does the change include any explicit test code?
  - Examples: Unit tests, integration tests, robot tests, ...
- [ ] Includes documentation?
  - **Documentation** - Does the change contain explicit documentation additions
    outside direct code modifications (and comments)?
  - Examples: Update readme file, add feature readme file, link to documentation
    on an a separate Web page, ...

## How This Was Tested

Verified `--codeql` usage with `stuart_update` and `stuart_ci_build` locally.

## Integration Instructions

See earlier PR description and CodeQL plugin readme:

https://github.com/microsoft/mu_basecore/blob/HEAD/.pytool/Plugin/CodeQL/Readme.md

Signed-off-by: Michael Kubacki <michael.kubacki@microsoft.com>
2023-02-10 18:15:51 -05:00
.azurepipelines .azurepipelines: Add support for new artifacts_identifier param (#44) 2023-02-06 15:00:06 -05:00
.devcontainer Repo File Sync: Synced file(s) with microsoft/mu_devops (#30) 2022-12-20 19:19:27 +00:00
.github Repo File Sync: synced file(s) with microsoft/mu_devops (#45) 2023-02-07 05:12:43 -05:00
.pytool Add CodeQL Stuart parameter to this repo (#52) 2023-02-10 18:15:51 -05:00
IntelFsp2Pkg IntelFsp2Pkg.dsc: Add stack cookie support libs (#53) 2023-02-09 23:36:44 -05:00
IntelFsp2WrapperPkg Remove VS2015 and VS2017 Stack Cookie Support from Package DSC Files (#49) 2023-02-09 12:49:55 -05:00
IntelSiliconPkg Remove VS2015 and VS2017 Stack Cookie Support from Package DSC Files (#49) 2023-02-09 12:49:55 -05:00
.gitignore TCMORPH: Remove unused packages from Tiano (command in comments). 2022-09-28 11:07:05 -07:00
.markdownlint.yaml Repo File Sync: Synced file(s) with microsoft/mu_devops (#21) 2022-11-30 11:31:53 -05:00
.markdownlintignore Add additional files and config to support MDlint 2022-09-28 14:11:48 -07:00
CONTRIBUTING.md Repo File Sync: synced file(s) with microsoft/mu_devops (#40) 2023-02-02 05:19:14 -05:00
License-History.txt
License.txt edk2: Change License.txt from 2-Clause BSD to BSD+Patent 2019-04-09 09:10:18 -07:00
Readme.rst Fix line endings in repo (LF -> CRLF) (#19) 2022-10-25 10:09:00 -07:00
RepoDetails.md Fix line endings in repo (LF -> CRLF) (#19) 2022-10-25 10:09:00 -07:00
SECURITY.md Repo File Sync: synced file(s) with microsoft/mu_devops (#41) 2023-02-03 21:06:58 -05:00
pip-requirements.txt pip: update edk2-pytool-extensions requirement from ~=0.21.2 to ~=0.21.8 (#54) 2023-02-10 05:51:27 -05:00

Readme.rst

Этот файл содержит невидимые символы Юникода!

Этот файл содержит невидимые символы Юникода, которые могут быть отображены не так, как показано ниже. Если это намеренно, можете спокойно проигнорировать это предупреждение. Используйте кнопку Экранировать, чтобы показать скрытые символы.

=========================================
Project Mu Silicon Intel Tiano Repository
=========================================

============================= ================= =============== ===================
 Host Type & Toolchain        Build Status      Test Status     Code Coverage
============================= ================= =============== ===================
Windows_VS2019_               |WindowsCiBuild|  |WindowsCiTest| |WindowsCiCoverage|
Ubuntu_GCC5_                  |UbuntuCiBuild|   |UbuntuCiTest|  |UbuntuCiCoverage|
============================= ================= =============== ===================

This repository is part of Project Mu.  Please see Project Mu for details https://microsoft.github.io/mu

Branch Status - release/202208
==============================

:Status:
  In Development

:Entered Development:
  September 2022

:Anticipated Stabilization:
  November 2022

Branch Changes - release/202208
===============================

Breaking Changes-dev
--------------------

- Incomplete

Main Changes-dev
----------------

- Incomplete

Bug Fixes-dev
-------------

- Incomplete

2208_RefBoot Changes
--------------------

- Incomplete

2208_CIBuild Changes
--------------------

- None

2208_Rebase Changes
-------------------

| Starting commit: 2005804911
| Destination commit: 9e90ec99a4


Repo Maintenance
================

Upstream Sync Details
---------------------

- edk2 - ba0e0e4c6a (edk2-stable202208)
- edk2_platforms - 3c3b116801 ("Maintainers.txt: Update maintainers list for edk2-platforms", 2022-08-25)

Instructions
------------

This repo is a composite repo of packages from 'edk2' and packages from 'edk2-platforms'. To maintain it simply, we have
established an 'upstream' branch and an 'upstream-edk2-platforms' branch to track the current state of things. To take
a new integration, follow the steps below:

1) Update 'edk2' commits
    a. Add 'edk2' as a remote, if it doesn't already exist
    b. 'git fetch edk2'
    c. On 'upstream' branch, 'git merge <target-commit, ideally a stable tag>'
2) Update 'upstream-edk2-platforms'
    a. In edk2-platforms repo... 'git format-patch <last_sync_commit>..<new_sync_commit> -- Silicon/Intel/IntelSiliconPkg
        - For <sync_commit>, reference `Upstream Sync Details`_
        - Note, in this case, you may not have a tag to work with, so try to perform this immediately after upstream stabilization
    b. On 'upstream-edk2-platforms' branch in this repo... 'git am -p 3 ../../edk2-platforms/\*.patch'
        - '-p 3' will drop 3 path elements, including 'a' or 'b' off the diff path
    c. On 'upstream' branch in this repo, 'git merge --allow-unrelated-histories 'upstream-edk2-platforms''

Make sure to update the `Upstream Sync Details`_ once done.

To perform an integration, simply set your XXXX_Upstream tag to the top of 'upstream' and rebase as normal. Make sure
to push 'upstream' and 'upstream-edk2-platforms' to the server after integration, along with new release branch.

Code of Conduct
===============

This project has adopted the Microsoft Open Source Code of Conduct https://opensource.microsoft.com/codeofconduct/

For more information see the Code of Conduct FAQ https://opensource.microsoft.com/codeofconduct/faq/
or contact `opencode@microsoft.com <mailto:opencode@microsoft.com>`_. with any additional questions or comments.

Contributions
=============

Contributions are always welcome and encouraged!
Please open any issues in the Project Mu GitHub tracker and read https://microsoft.github.io/mu/How/contributing/


Copyright & License
===================

Copyright (c) Microsoft Corporation. All rights reserved.
SPDX-License-Identifier: BSD-2-Clause-Patent

Upstream License (TianoCore)
============================

Copyright (c) 2019, TianoCore and contributors.  All rights reserved.

SPDX-License-Identifier: BSD-2-Clause-Patent

Redistribution and use in source and binary forms, with or without
modification, are permitted provided that the following conditions are met:

1. Redistributions of source code must retain the above copyright notice,
   this list of conditions and the following disclaimer.

2. Redistributions in binary form must reproduce the above copyright notice,
   this list of conditions and the following disclaimer in the documentation
   and/or other materials provided with the distribution.

Subject to the terms and conditions of this license, each copyright holder
and contributor hereby grants to those receiving rights under this license
a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable
(except for failure to satisfy the conditions of this license) patent
license to make, have made, use, offer to sell, sell, import, and otherwise
transfer this software, where such license applies only to those patent
claims, already acquired or hereafter acquired, licensable by such copyright
holder or contributor that are necessarily infringed by:

(a) their Contribution(s) (the licensed copyrights of copyright holders and
    non-copyrightable additions of contributors, in source or binary form)
    alone; or

(b) combination of their Contribution(s) with the work of authorship to
    which such Contribution(s) was added by such copyright holder or
    contributor, if, at the time the Contribution is added, such addition
    causes such combination to be necessarily infringed. The patent license
    shall not apply to any other combinations which include the
    Contribution.

Except as expressly stated above, no rights or licenses from any copyright
holder or contributor is granted under this license, whether expressly, by
implication, estoppel or otherwise.

DISCLAIMER

THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDERS OR CONTRIBUTORS BE
LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
POSSIBILITY OF SUCH DAMAGE.

.. ===================================================================
.. This is a bunch of directives to make the README file more readable
.. ===================================================================

.. CoreCI

.. _Windows_VS2019: https://dev.azure.com/projectmu/mu/_build/latest?definitionId=53&&branchName=release%2F202208
.. |WindowsCiBuild| image:: https://dev.azure.com/projectmu/mu/_apis/build/status/CI/Mu%20Silicon%20Intel%20Tiano%20CI%20VS2019?branchName=release%2F202208
.. |WindowsCiTest| image:: https://img.shields.io/azure-devops/tests/projectmu/mu/53.svg
.. |WindowsCiCoverage| image:: https://img.shields.io/badge/coverage-coming_soon-blue

.. _Ubuntu_GCC5: https://dev.azure.com/projectmu/mu/_build/latest?definitionId=54&branchName=release%2F202208
.. |UbuntuCiBuild| image:: https://dev.azure.com/projectmu/mu/_apis/build/status/CI/Mu%20Silicon%20Intel%20Tiano%20CI%20Ubuntu%20GCC5?branchName=release%2F202208
.. |UbuntuCiTest| image:: https://img.shields.io/azure-devops/tests/projectmu/mu/54.svg
.. |UbuntuCiCoverage| image:: https://img.shields.io/badge/coverage-coming_soon-blue