From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id 9E790C19F2E for ; Thu, 27 Feb 2025 15:35:16 +0000 (UTC) Received: from localhost ([::1] helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1tnfum-0001mh-DL; Thu, 27 Feb 2025 10:35:08 -0500 Received: from eggs.gnu.org ([2001:470:142:3::10]) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1tnfuh-0001cm-8d for grub-devel@gnu.org; Thu, 27 Feb 2025 10:35:04 -0500 Received: from mx0b-001b2d01.pphosted.com ([148.163.158.5]) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1tnfub-00025B-7h for grub-devel@gnu.org; Thu, 27 Feb 2025 10:35:02 -0500 Received: from pps.filterd (m0356516.ppops.net [127.0.0.1]) by mx0a-001b2d01.pphosted.com (8.18.1.2/8.18.1.2) with ESMTP id 51R6Pq07007418; Thu, 27 Feb 2025 15:34:54 GMT DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ibm.com; h=cc :content-transfer-encoding:content-type:date:from:in-reply-to :message-id:mime-version:references:subject:to; s=pp1; bh=proPO/ eQMTSy6xRHTSzzFxx0vIRQMMXY2PKSyNkq4Nk=; b=XAlrF+1CEMEdf4iJyMbCM2 V7J3+4ffisLHL/jJwcmhd102XxlnQqrS+VF5wMgAoLX8jXaOqfFKJf75rwkY0nta z8JvPq79mZwkSDeRNsGKDAVOSKmjPZpco1vfNfy8tOa+7V1ODkaVh0uFV/Oa6GEW 0O9qpTzrc4EOxSa6vVZaOI4zklI8E20qNwlxVFR5soVjRySucbzDm2MNGEqADJTK 5yOGRZZ/Na2FPDcZBRS912G9ZnWYzDI1TcRN6PKjjHsCWWqzTNGp2zft5wDrsWq5 c7WddpfnR2PrhfhTBsRQTuqKjXibaxas7xsA3+b1Ik9MefRY93IN+4i8Kn7qOKsA == Received: from ppma22.wdc07v.mail.ibm.com (5c.69.3da9.ip4.static.sl-reverse.com [169.61.105.92]) by mx0a-001b2d01.pphosted.com (PPS) with ESMTPS id 452js6tjtc-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Thu, 27 Feb 2025 15:34:53 +0000 (GMT) Received: from pps.filterd (ppma22.wdc07v.mail.ibm.com [127.0.0.1]) by ppma22.wdc07v.mail.ibm.com (8.18.1.2/8.18.1.2) with ESMTP id 51RC6QN0012597; Thu, 27 Feb 2025 15:34:53 GMT Received: from smtprelay04.wdc07v.mail.ibm.com ([172.16.1.71]) by ppma22.wdc07v.mail.ibm.com (PPS) with ESMTPS id 44ys9yshxd-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Thu, 27 Feb 2025 15:34:53 +0000 Received: from smtpav06.wdc07v.mail.ibm.com (smtpav06.wdc07v.mail.ibm.com [10.39.53.233]) by smtprelay04.wdc07v.mail.ibm.com (8.14.9/8.14.9/NCO v10.0) with ESMTP id 51RFYqO029164238 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Thu, 27 Feb 2025 15:34:52 GMT Received: from smtpav06.wdc07v.mail.ibm.com (unknown [127.0.0.1]) by IMSVA (Postfix) with ESMTP id 3AE055804E; Thu, 27 Feb 2025 15:34:52 +0000 (GMT) Received: from smtpav06.wdc07v.mail.ibm.com (unknown [127.0.0.1]) by IMSVA (Postfix) with ESMTP id 5875F5803F; Thu, 27 Feb 2025 15:34:51 +0000 (GMT) Received: from ltc.linux.ibm.com (unknown [9.5.196.140]) by smtpav06.wdc07v.mail.ibm.com (Postfix) with ESMTP; Thu, 27 Feb 2025 15:34:51 +0000 (GMT) MIME-Version: 1.0 Date: Thu, 27 Feb 2025 21:04:51 +0530 From: sudhakar To: Avnish Chouhan Cc: grub-devel@gnu.org, dja@axtens.net, jan.setjeeilers@oracle.com, julian.klode@canonical.com, mate.kukri@canonical.com, pjones@redhat.com, stefanb@linux.ibm.com, nayna@linux.ibm.com, ssrish@linux.ibm.com, daniel.kiper@oracle.com Subject: Re: [PATCH v1 13/21] ieee1275: enter lockdown based on /ibm,secure-boot In-Reply-To: <28a00a923d88337c54d66b8b96920e50@linux.ibm.com> References: <20241218145647.1390837-1-sudhakar@linux.ibm.com> <20241218145647.1390837-14-sudhakar@linux.ibm.com> <28a00a923d88337c54d66b8b96920e50@linux.ibm.com> Message-ID: X-Sender: sudhakar@linux.ibm.com X-TM-AS-GCONF: 00 X-Proofpoint-GUID: GlcDCrUZLiih-AAvfXuZT0BhZZUnOQdj X-Proofpoint-ORIG-GUID: GlcDCrUZLiih-AAvfXuZT0BhZZUnOQdj X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.293,Aquarius:18.0.1057,Hydra:6.0.680,FMLib:17.12.68.34 definitions=2025-02-27_06,2025-02-27_01,2024-11-22_01 X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 malwarescore=0 bulkscore=0 priorityscore=1501 phishscore=0 spamscore=0 suspectscore=0 mlxscore=0 adultscore=0 lowpriorityscore=0 clxscore=1011 impostorscore=0 mlxlogscore=999 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.19.0-2502100000 definitions=main-2502270117 Received-SPF: pass client-ip=148.163.158.5; envelope-from=sudhakar@linux.ibm.com; helo=mx0b-001b2d01.pphosted.com X-Spam_score_int: -26 X-Spam_score: -2.7 X-Spam_bar: -- X-Spam_report: (-2.7 / 5.0 requ) BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H2=0.001, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001 autolearn=ham autolearn_force=no X-Spam_action: no action X-BeenThere: grub-devel@gnu.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: The development of GNU GRUB List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: The development of GNU GRUB Content-Transfer-Encoding: base64 Content-Type: text/plain; charset="utf-8"; Format="flowed" Errors-To: grub-devel-bounces+grub-devel=archiver.kernel.org@gnu.org Sender: grub-devel-bounces+grub-devel=archiver.kernel.org@gnu.org T24gMjAyNS0wMi0wNiAxMTo1MywgQXZuaXNoIENob3VoYW4gd3JvdGU6Cj4gT24gMjAyNC0xMi0x OCAyMDoyNiwgU3VkaGFrYXIgS3VwcHVzYW15IHdyb3RlOgo+PiBGcm9tOiBEYW5pZWwgQXh0ZW5z IDxkamFAYXh0ZW5zLm5ldD4KPj4gCj4+IElmIHRoZSAnaWJtLHNlY3VyZS1ib290JyBwcm9wZXJ0 eSBvZiB0aGUgcm9vdCBub2RlIGlzIDIgb3IgZ3JlYXRlciwKPj4gZW50ZXIgbG9ja2Rvd24uCj4+ IAo+PiBTaWduZWQtb2ZmLWJ5OiBEYW5pZWwgQXh0ZW5zIDxkamFAYXh0ZW5zLm5ldD4KPj4gU2ln bmVkLW9mZi1ieTogU3VkaGFrYXIgS3VwcHVzYW15IDxzdWRoYWthckBsaW51eC5pYm0uY29tPgo+ PiAtLS0KPj4gIGRvY3MvZ3J1Yi50ZXhpICAgICAgICAgICAgICAgICB8ICA0ICsrLS0KPj4gIGdy dWItY29yZS9NYWtlZmlsZS5jb3JlLmRlZiAgICB8ICAxICsKPj4gIGdydWItY29yZS9rZXJuL2ll ZWUxMjc1L2luaXQuYyB8IDI4ICsrKysrKysrKysrKysrKysrKysrKysrKysrKysKPj4gIGluY2x1 ZGUvZ3J1Yi9sb2NrZG93bi5oICAgICAgICB8ICAzICsrLQo+PiAgNCBmaWxlcyBjaGFuZ2VkLCAz MyBpbnNlcnRpb25zKCspLCAzIGRlbGV0aW9ucygtKQo+PiAKPj4gZGlmZiAtLWdpdCBhL2RvY3Mv Z3J1Yi50ZXhpIGIvZG9jcy9ncnViLnRleGkKPj4gaW5kZXggZjcxY2U5ZmZjLi42YjYzNGYxMTEg MTAwNjQ0Cj4+IC0tLSBhL2RvY3MvZ3J1Yi50ZXhpCj4+ICsrKyBiL2RvY3MvZ3J1Yi50ZXhpCj4+ IEBAIC04OTU5LDggKzg5NTksOCBAQCBwbGF0Zm9ybXMuCj4+ICBAc2VjdGlvbiBMb2NrZG93biB3 aGVuIGJvb3Rpbmcgb24gYSBzZWN1cmUgc2V0dXAKPj4gCj4+ICBUaGUgR1JVQiBjYW4gYmUgbG9j a2VkIGRvd24gd2hlbiBib290ZWQgb24gYSBzZWN1cmUgYm9vdCBlbnZpcm9ubWVudCwKPj4gZm9y IGV4YW1wbGUKPj4gLWlmIHRoZSBVRUZJIHNlY3VyZSBib290IGlzIGVuYWJsZWQuIE9uIGEgbG9j a2VkIGRvd24gY29uZmlndXJhdGlvbiwKPj4gdGhlIEdSVUIgd2lsbAo+PiAtYmUgcmVzdHJpY3Rl ZCBhbmQgc29tZSBvcGVyYXRpb25zL2NvbW1hbmRzIGNhbm5vdCBiZSBleGVjdXRlZC4KPj4gK2lm IFVFRkkgb3IgUG93ZXIgc2VjdXJlIGJvb3QgaXMgZW5hYmxlZC4gT24gYSBsb2NrZWQgZG93biAK Pj4gY29uZmlndXJhdGlvbiwgdGhlCj4+ICtHUlVCIHdpbGwgYmUgcmVzdHJpY3RlZCBhbmQgc29t ZSBvcGVyYXRpb25zL2NvbW1hbmRzIGNhbm5vdCBiZSAKPj4gZXhlY3V0ZWQuCj4+IAo+PiAgVGhl IEBzYW1we2xvY2tkb3dufSB2YXJpYWJsZSBpcyBzZXQgdG8gQHNhbXB7eX0gd2hlbiB0aGUgR1JV QiBpcyAKPj4gbG9ja2VkIGRvd24uCj4+ICBPdGhlcndpc2UgaXQgZG9lcyBub3QgZXhpdC4KPj4g ZGlmZiAtLWdpdCBhL2dydWItY29yZS9NYWtlZmlsZS5jb3JlLmRlZiBiL2dydWItY29yZS9NYWtl ZmlsZS5jb3JlLmRlZgo+PiBpbmRleCA5Y2Y0YTYwMDkuLjFlZDU1YjBlMyAxMDA2NDQKPj4gLS0t IGEvZ3J1Yi1jb3JlL01ha2VmaWxlLmNvcmUuZGVmCj4+ICsrKyBiL2dydWItY29yZS9NYWtlZmls ZS5jb3JlLmRlZgo+PiBAQCAtMzMxLDYgKzMzMSw3IEBAIGtlcm5lbCA9IHsKPj4gICAgcG93ZXJw Y19pZWVlMTI3NSA9IGtlcm4vcG93ZXJwYy9jYWNoZS5TOwo+PiAgICBwb3dlcnBjX2llZWUxMjc1 ID0ga2Vybi9wb3dlcnBjL2RsLmM7Cj4+ICAgIHBvd2VycGNfaWVlZTEyNzUgPSBrZXJuL3Bvd2Vy cGMvY29tcGlsZXItcnQuUzsKPj4gKyAgcG93ZXJwY19pZWVlMTI3NSA9IGtlcm4vbG9ja2Rvd24u YzsKPj4gCj4+ICAgIHNwYXJjNjRfaWVlZTEyNzUgPSBrZXJuL3NwYXJjNjQvY2FjaGUuUzsKPj4g ICAgc3BhcmM2NF9pZWVlMTI3NSA9IGtlcm4vc3BhcmM2NC9kbC5jOwo+PiBkaWZmIC0tZ2l0IGEv Z3J1Yi1jb3JlL2tlcm4vaWVlZTEyNzUvaW5pdC5jIAo+PiBiL2dydWItY29yZS9rZXJuL2llZWUx Mjc1L2luaXQuYwo+PiBpbmRleCBkZmJkMGI4OTkuLjU5OTg0YjYwNSAxMDA2NDQKPj4gLS0tIGEv Z3J1Yi1jb3JlL2tlcm4vaWVlZTEyNzUvaW5pdC5jCj4+ICsrKyBiL2dydWItY29yZS9rZXJuL2ll ZWUxMjc1L2luaXQuYwo+PiBAQCAtNDksNiArNDksNyBAQAo+PiAgI2lmIGRlZmluZWQoX19wb3dl cnBjX18pIHx8IGRlZmluZWQoX19pMzg2X18pCj4+ICAjaW5jbHVkZSA8Z3J1Yi9pZWVlMTI3NS9h bGxvYy5oPgo+PiAgI2VuZGlmCj4+ICsjaW5jbHVkZSA8Z3J1Yi9sb2NrZG93bi5oPgo+PiAKPj4g IC8qIFRoZSBtYXhpbXVtIGhlYXAgc2l6ZSB3ZSdyZSBnb2luZyB0byBjbGFpbSBhdCBib290LiBO b3QgdXNlZCBieSAKPj4gc3BhcmMuICovCj4+ICAjaWZkZWYgX19pMzg2X18KPj4gQEAgLTk1Myw2 ICs5NTQsMzEgQEAgZ3J1Yl9wYXJzZV9jbWRsaW5lICh2b2lkKQo+PiAgICAgIH0KPj4gIH0KPj4g Cj4+ICtzdGF0aWMgdm9pZAo+PiArZ3J1Yl9nZXRfaWVlZTEyNzVfc2VjdXJlX2Jvb3QgKHZvaWQp Cj4+ICt7Cj4+ICsgIGdydWJfaWVlZTEyNzVfcGhhbmRsZV90IHJvb3Q7Cj4+ICsgIGludCByYzsK Pj4gKyAgZ3J1Yl91aW50MzJfdCBpc19zYjsKPj4gKwo+PiArICBncnViX2llZWUxMjc1X2ZpbmRk ZXZpY2UgKCIvIiwgJnJvb3QpOwo+IAo+IEhpLAo+IAo+IEZhaWx1cmUgY2hlY2sgY29uZGl0aW9u IGlzIG1pc3NpbmchCj4gCj4gVGhhbmsgeW91LAo+IEF2bmlzaCBDaG91aGFuCj4gCj4+ICsKPj4g KyAgcmMgPSBncnViX2llZWUxMjc1X2dldF9pbnRlZ2VyX3Byb3BlcnR5IChyb290LCAiaWJtLHNl Y3VyZS1ib290IiwgCj4+ICZpc19zYiwKPj4gKyAgICAgICAgICAgICAgICAgICAgICAgICAgICAg ICAgICAgICAgICAgICBzaXplb2YgKGlzX3NiKSwgMCk7Cj4+ICsKPj4gKyAgLyoKPj4gKyAgICog aWJtLHNlY3VyZS1ib290Ogo+PiArICAgKiAwIC0gZGlzYWJsZWQKPj4gKyAgICogMSAtIGF1ZGl0 Cj4+ICsgICAqIDIgLSBlbmZvcmNlCj4+ICsgICAqIDMgLSBlbmZvcmNlICsgT1Mtc3BlY2lmaWMg YmVoYXZpb3VyCj4+ICsgICAqCj4+ICsgICAqIFdlIG9ubHkgc3VwcG9ydCBlbmZvcmNlLgo+PiAr ICAgKi8KPj4gKyAgaWYgKHJjID49IDAgJiYgaXNfc2IgPj0gMikKPj4gKyAgICBncnViX2xvY2tk b3duICgpOwo+PiArfQo+PiArCj4+ICBncnViX2FkZHJfdCBncnViX21vZGJhc2U7Cj4+IAo+PiAg dm9pZAo+PiBAQCAtOTc4LDYgKzEwMDQsOCBAQCBncnViX21hY2hpbmVfaW5pdCAodm9pZCkKPj4g ICNlbHNlCj4+ICAgIGdydWJfaW5zdGFsbF9nZXRfdGltZV9tcyAoZ3J1Yl9ydGNfZ2V0X3RpbWVf bXMpOwo+PiAgI2VuZGlmCj4+ICsKPj4gKyAgZ3J1Yl9nZXRfaWVlZTEyNzVfc2VjdXJlX2Jvb3Qg KCk7Cj4+ICB9Cj4+IAo+PiAgdm9pZAo+PiBkaWZmIC0tZ2l0IGEvaW5jbHVkZS9ncnViL2xvY2tk b3duLmggYi9pbmNsdWRlL2dydWIvbG9ja2Rvd24uaAo+PiBpbmRleCA0MDUzMWZhODIuLmViZmVl NGJmMCAxMDA2NDQKPj4gLS0tIGEvaW5jbHVkZS9ncnViL2xvY2tkb3duLmgKPj4gKysrIGIvaW5j bHVkZS9ncnViL2xvY2tkb3duLmgKPj4gQEAgLTI0LDcgKzI0LDggQEAKPj4gICNkZWZpbmUgR1JV Ql9MT0NLRE9XTl9ESVNBQkxFRCAgICAgICAwCj4+ICAjZGVmaW5lIEdSVUJfTE9DS0RPV05fRU5B QkxFRCAgICAgICAgMQo+PiAKPj4gLSNpZmRlZiBHUlVCX01BQ0hJTkVfRUZJCj4+ICsjaWYgZGVm aW5lZChHUlVCX01BQ0hJTkVfRUZJKSB8fCBcCj4+ICsgICAgKGRlZmluZWQoX19wb3dlcnBjX18p ICYmIGRlZmluZWQoR1JVQl9NQUNISU5FX0lFRUUxMjc1KSkKPj4gIGV4dGVybiB2b2lkCj4+ICBF WFBPUlRfRlVOQyAoZ3J1Yl9sb2NrZG93bikgKHZvaWQpOwo+PiAgZXh0ZXJuIGludAoKCkFkZHJl c3NlZCBhYm92ZSBjb21tZW50cy4gVGhhbmsgeW91IEF2bmlzaCBDaG91aGFuLgoKVGhhbmtzLApT dWRoYWthciBLdXBwdXNhbXkKCl9fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f X19fX19fX19fCkdydWItZGV2ZWwgbWFpbGluZyBsaXN0CkdydWItZGV2ZWxAZ251Lm9yZwpodHRw czovL2xpc3RzLmdudS5vcmcvbWFpbG1hbi9saXN0aW5mby9ncnViLWRldmVsCg==