From mboxrd@z Thu Jan 1 00:00:00 1970 From: Troy Benjegerdes Date: Mon, 8 Feb 2016 09:46:06 -0600 Subject: [U-Boot] u-boot legacy/FIT/FIT+signature compatability Message-ID: <20160208154606.GD3544@nl.grid.coop> List-Id: MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: u-boot@lists.denx.de so I'm tracing through stuff on an am3517-evm board, and finding that with a FIT image file that works without signature checking compiled in, when I turn on sig checking, if it doesn't find a signature I just get a data abort, *and* the resulting u-boot doesn't recognize old 'legacy' boot images anymore either. I get the point that if you have signatures on, you may not want to hand over keys to decrypt secure filesystems if you try to boot an unsigned image, but I think the fallbacks and backwards compatability could be developed a little better, especially since why now that I have CONFIG_FIT I now can't seem to load a legacy image. -- ---------------------------------------------------------------------------- Troy Benjegerdes 'da hozer' hozer at hozed.org 7 elements earth::water::air::fire::mind::spirit::soul grid.coop Never pick a fight with someone who buys ink by the barrel, nor try buy a hacker who makes money by the megahash