From mboxrd@z Thu Jan 1 00:00:00 1970 From: Andreas Dannenberg Date: Thu, 9 Jun 2016 21:44:41 -0500 Subject: [U-Boot] [PATCH v2] verified-boot: Minimal support for booting U-Boot proper from SPL In-Reply-To: <20160609191844.b5f0e43009f6d5dc129b7c54@gmail.com> References: <20160609191844.b5f0e43009f6d5dc129b7c54@gmail.com> Message-ID: <20160610024441.GG10708@borg.dal.design.ti.com> List-Id: MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: u-boot@lists.denx.de On Thu, Jun 09, 2016 at 07:18:44PM -0700, Teddy Reed wrote: > This allows a board to configure verified boot within the SPL using > a FIT or FIT with external data. It also allows the SPL to perform > signature verification without needing relocation. > > The board configuration will need to add the following feature defines: > CONFIG_SPL_CRYPTO_SUPPORT > CONFIG_SPL_HASH_SUPPORT > CONFIG_SPL_SHA256 > > In this example, SHA256 is the only selected hashing algorithm. > > And the following booleans: > CONFIG_SPL=y > CONFIG_SPL_DM=y > CONFIG_SPL_LOAD_FIT=y > CONFIG_SPL_FIT=y > CONFIG_SPL_OF_CONTROL=y > CONFIG_SPL_OF_LIBFDT=y > CONFIG_SPL_FIT_SIGNATURE=y > > Signed-off-by: Teddy Reed > Acked-by: Simon Glass Applies cleanly now and builds without issues. Acked-by: Andreas Dannenberg