From: Detlev Zundel <dzu@denx.de>
To: u-boot@lists.denx.de
Subject: [U-Boot] How to perform a secure boot on ARM Linux
Date: Mon, 20 Jan 2014 16:16:37 +0100 [thread overview]
Message-ID: <m2y52a7kfe.fsf@lamuella.denx.de> (raw)
In-Reply-To: <CAMxh77XsEnCddhnTH1rBDvPefJdBLV=--LF3OiwLhyQ5FG5iGQ@mail.gmail.com> (rakesh ranjan's message of "Mon, 20 Jan 2014 18:10:52 +0530")
Hi Rakesh,
> I have a beagle board and want to create a u-boot that verifies the kernel
> and rootfs before booting it. Any pointers on how it can be achieved will
> be appreciated.
You can start here by reading the provided documentation:
http://git.denx.de/?p=u-boot.git;a=blob;f=doc/uImage.FIT/signature.txt;hb=HEAD
There's also a ELCE 2013 presentation by Simon Glass:
http://events.linuxfoundation.org/sites/events/files/slides/chromeos_and_diy_vboot_0.pdf
And a paper by Jagan Teki from the U-Boot Mini Summit
http://www.denx.de/wiki/pub/U-Boot/MiniSummitELCE2013/U-Boot_verified_RSA_boot_flow_on_arm_target.pdf
The mailing list is surely the right place for further questions ;)
Cheers
Detlev
--
There are two hard things in computer science: cache invalidation,
naming things, and off-by-one errors.
--
DENX Software Engineering GmbH, MD: Wolfgang Denk & Detlev Zundel
HRB 165235 Munich, Office: Kirchenstr.5, D-82194 Groebenzell, Germany
Phone: (+49)-8142-66989-40 Fax: (+49)-8142-66989-80 Email: dzu at denx.de
next prev parent reply other threads:[~2014-01-20 15:16 UTC|newest]
Thread overview: 5+ messages / expand[flat|nested] mbox.gz Atom feed top
2014-01-20 12:40 [U-Boot] How to perform a secure boot on ARM Linux rakesh ranjan
2014-01-20 15:16 ` Detlev Zundel [this message]
2014-01-20 18:00 ` Jagan Teki
2014-01-20 18:47 ` Marek Vasut
2014-01-23 2:58 ` Simon Glass
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=m2y52a7kfe.fsf@lamuella.denx.de \
--to=dzu@denx.de \
--cc=u-boot@lists.denx.de \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.