From eb667e4c32acd3666c729811c829803209c228a6 Mon Sep 17 00:00:00 2001 From: basil00 Date: Mon, 3 Jun 2013 18:32:30 +0800 Subject: [PATCH] - New version 1.0.4 - Documentation tweaks - Use a newer version of MinGW - Use signed driver in release. --- CHANGELOG | 5 +++++ VERSION | 2 +- doc/divert.html | 55 ++++++------------------------------------------ mingw-build.sh | 4 ++-- release-build.sh | 10 +++++++++ 5 files changed, 25 insertions(+), 51 deletions(-) diff --git a/CHANGELOG b/CHANGELOG index d7d51e2..b14defd 100644 --- a/CHANGELOG +++ b/CHANGELOG @@ -10,3 +10,8 @@ WinDivert 1.0.3 - DivertOpen() now returns more meaningful error codes on failure. - Two new helper API functions: DivertHelperParseIPvXAddress(..), X=4,6. - Renamed DivertHelperParse(..) to DivertHelperParsePacket(..). +WinDivert 1.0.4 + - Same as WinDivert 1.0.3 except: + * Released with signed drivers. + * MinGW compiled gcc-4.6 + * Minor documentation changes. diff --git a/VERSION b/VERSION index 21e8796..ee90284 100644 --- a/VERSION +++ b/VERSION @@ -1 +1 @@ -1.0.3 +1.0.4 diff --git a/doc/divert.html b/doc/divert.html index 26b5275..ba13105 100644 --- a/doc/divert.html +++ b/doc/divert.html @@ -10,9 +10,9 @@
  • 1. Introduction
  • 2. Building
  • 3. Installing
  • 4. Uninstalling
  • @@ -115,58 +115,17 @@ are only compatible with programs compiled with the WDDK compiler. See below for Visual Studio 2010 and MinGW support.

    -

    2.2 Driver Signing

    +

    2.1 Driver Signing

    Before the WinDivert package can be used, the WinDivert.sys driver -must be digitally signed. +must contain a valid digital signature. This is Microsoft policy for all kernel drivers in recent versions of Windows. See Driver Signing Requirements for Windows for more information. -If you wish to simply test and/or evaluate WinDivert, you can set up a -test certificate and test sign the WinDivert.sys -driver. -See -Test Signing a Driver Package for more information. -In summary, the steps are: -

      -
    1. Download and install -Windows - Driver Kit 7.1.0.
    2. -
    3. Open a WDK Build Environment console as Administrator.
    4. -
    5. Run the MakeCert.exe tool to create a test certificate, e.g. - with: -
      -    MakeCert -r -pe -ss TestCertStoreName -n "CN=TestCertName" CertFileName.cer
      -
      -
    6. -
    7. Install the test certificate with CertMgr.exe, e.g. with: -
      -    CertMgr /add CertFileName.cer /s /r localMachine root
      -
      -
    8. -
    9. Sign WinDivert.sys with the test certificate, e.g. with: -
      -    SignTool sign /v /s TestCertStoreName /n TestCertName WinDivert.sys
      -
      -
    10. -
    11. Before you can load test-signed drivers, you must enable - Windows test mode. - To do this, run the command: -
      -    Bcdedit.exe -set TESTSIGNING ON
      -
      - and restart Windows. - For more information, see - The - TESTSIGNING Boot Configuration Option. -
    12. -
    -After following these steps you should be able to use the WinDivert driver.

    -

    2.3 Visual Studio 2010 Support

    +

    2.2 Visual Studio 2010 Support

    To build the WinDivert package for Visual Studio 2010:

      @@ -182,7 +141,7 @@ This will build Visual Studio 2010 compatible files and place them in the

    -

    2.4 MinGW Support

    +

    2.3 MinGW Support

    To build the WinDivert package for MinGW:

      diff --git a/mingw-build.sh b/mingw-build.sh index 9723f61..ea0aa97 100644 --- a/mingw-build.sh +++ b/mingw-build.sh @@ -21,11 +21,11 @@ set -e -ENVS="i586-mingw32msvc amd64-mingw32msvc" +ENVS="i686-w64-mingw32 x86_64-w64-mingw32" for ENV in $ENVS do - if [ $ENV = "i586-mingw32msvc" ] + if [ $ENV = "i686-w64-mingw32" ] then CPU=i386 else diff --git a/release-build.sh b/release-build.sh index 7f6c64c..007a699 100644 --- a/release-build.sh +++ b/release-build.sh @@ -56,6 +56,11 @@ do cp sys/divert.inf $INSTALL/x86/WinDivert.inf echo "\tcopy $INSTALL/x86/WinDivert.sys..." cp install/$TARGET/i386/WinDivert.sys $INSTALL/x86 + if ! grep "DigiCert High Assurance EV Root" $INSTALL/x86/WinDivert.sys \ + 2>&1 >/dev/null + then + echo "\tWARNING: using unsigned WinDivert.sys..." + fi if [ $TARGET != MINGW ] then echo "\tcopy $INSTALL/x86/WinDivert.lib..." @@ -86,6 +91,11 @@ do cp sys/divert.inf $INSTALL/amd64/WinDivert.inf echo "\tcopy $INSTALL/amd64/WinDivert.sys..." cp install/$TARGET/amd64/WinDivert.sys $INSTALL/amd64 + if ! grep "DigiCert High Assurance EV Root" \ + $INSTALL/amd64/WinDivert.sys 2>&1 >/dev/null + then + echo "\tWARNING: using unsigned WinDivert.sys..." + fi if [ $TARGET != MINGW ] then echo "\tcopy $INSTALL/amd64/WinDivert.lib..."