[U-Boot] [PATCH 0/8] Secure boot improvements and test on Beaglebone Black
Tom Rini
trini at ti.com
Fri Dec 20 19:59:52 CET 2013
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
On 12/06/2013 06:36 PM, Simon Glass wrote:
> Hi Tom,
>
> On 2 October 2013 08:44, Simon Glass <sjg at chromium.org> wrote:
>> This series adds a few improvements to the image signing feature to
>> make it easier to use on the Beaglebone Black.
>>
>> - Add a DEV_TREE_BIN option to make it easier to include the correct FDT
>> (with embedded public keys) into the U-Boot image
>> - Enable cache for more TI boards (to speed things up)
>> - Increase malloc size
>> - Enable CONFIG_OF_CONTROL, FIT and secure boot on am33xx/omap
>> (RFC only, not sure we want this, although we could create a separate
>> config for it)
>>
>> I also have a change to adjust mkimage to automatically make space in the
>> FDT when adding hashes and signatures. Included here is the ENOSPC patch,
>> but the fit_image.c patch will wait until the dumpimage tool is merged,
>> since I am changing the same code.
>>
>> With this, secure boot was tested successfully on Beaglebone Black.
>
> Do you think any of these patches should be applied?
Sorry I've taken so long to cycle back on this. At the high level, I'm
OK with it. But we need to make sure we can do these features
optionally, perhaps with a separate build?
- --
Tom
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
iQIcBAEBAgAGBQJStJOnAAoJENk4IS6UOR1WpGcP/0CljP92ImQWtwcNcyCsjOqU
Nkm2hJ1eI3e4XGEVkO9zWAxrcTtCOgdWdOnMeLjtpWTrWZ/CKmEXcbU6rxR7Q/vu
/8r0FrUaYNHxsuTs0P5aBWhs3G+C83wKbbFViseHaKx2GMQ8+SZg72YBgDdI1t+B
rEaA9t4/ZEFKY5HgJ47NZ/cJvs/2EFpbGTZgmgiqT/1P0aayN6YOAvmbkkkuxn8g
HIJ8Jt1bGZ6CqTkDMt/qCeunCinSU76C19Bj+6cMTtoam9rltzdWaPoc4adi3QPw
WfEZnUia5KxuGDLV/itO2LUrO58r8N5eOJN3iISAGkgzmRumhaxjlOrytq97p//D
ZHlbwp2aQKLTRLh7B9T7HRs3AW3j+ltlQ11iF0GXtZ4WGeqy2IfMrhY708CwG/p5
Nu12cDW7hk5QJs/Dy55VsnxQ8t4yp/Y6v1K9g49BWKp/KZVa8qEab8VIV2N9iO38
czHfs4tlY3LgdP2y7fx15gANMM82eK6z9PkDtP+tvlkBGCh/FQ1wLUiq3pBR0VKu
vhmM33RzkI9l2nIFzDybwU5iLfjGOm4ILuLNsQpTU1wWCjoyCi6t3fkqNQfHrguS
Kun0UHf7M104q0SxwR03hv/RZw9sM5vFFq/2rWQI+vZ2neMMCd+LtOiIQUPTWUp+
NEYG+D/UfhT3WGlvzMdT
=wxou
-----END PGP SIGNATURE-----
More information about the U-Boot
mailing list