Signing is performed with test keys by default, set CONFIG_SIGNING_KEYS_DIR to a non-empty value to use other keys. Depending on the version of the Talos II firmware this alone might not allow booting because coreboot replaces only part of the stock firmware and its newer versions enable secure boot by default (not to be confused with SecureBoot in EFI). The signing performed in this commit is still a prerequisite and might as well be done on its own. Fixing operation with newer stock firmware will be done in a follow-up change. Change-Id: Id88baef5ecb1f8ffd74a7f464bbbaaaea0ca643d Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com> Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com> Reviewed-on: https://review.coreboot.org/c/coreboot/+/67065 Tested-by: build bot (Jenkins) <no-reply@coreboot.org> Reviewed-by: Krystian Hebel <krystian.hebel@3mdeb.com>
70 lines
2.2 KiB
Text
70 lines
2.2 KiB
Text
[submodule "3rdparty/blobs"]
|
|
path = 3rdparty/blobs
|
|
url = https://review.coreboot.org/blobs.git
|
|
update = none
|
|
ignore = dirty
|
|
[submodule "util/nvidia-cbootimage"]
|
|
path = util/nvidia/cbootimage
|
|
url = https://review.coreboot.org/nvidia-cbootimage.git
|
|
[submodule "vboot"]
|
|
path = 3rdparty/vboot
|
|
url = https://review.coreboot.org/vboot.git
|
|
branch = main
|
|
[submodule "arm-trusted-firmware"]
|
|
path = 3rdparty/arm-trusted-firmware
|
|
url = https://review.coreboot.org/arm-trusted-firmware.git
|
|
[submodule "libhwbase"]
|
|
path = 3rdparty/libhwbase
|
|
url = https://review.coreboot.org/libhwbase.git
|
|
[submodule "libgfxinit"]
|
|
path = 3rdparty/libgfxinit
|
|
url = https://review.coreboot.org/libgfxinit.git
|
|
[submodule "3rdparty/fsp"]
|
|
path = 3rdparty/fsp
|
|
url = https://review.coreboot.org/fsp.git
|
|
update = none
|
|
ignore = dirty
|
|
[submodule "opensbi"]
|
|
path = 3rdparty/opensbi
|
|
url = https://review.coreboot.org/opensbi.git
|
|
[submodule "intel-microcode"]
|
|
path = 3rdparty/intel-microcode
|
|
url = https://review.coreboot.org/intel-microcode.git
|
|
update = none
|
|
ignore = dirty
|
|
branch = main
|
|
[submodule "3rdparty/ffs"]
|
|
path = 3rdparty/ffs
|
|
url = https://review.coreboot.org/ffs.git
|
|
[submodule "3rdparty/amd_blobs"]
|
|
path = 3rdparty/amd_blobs
|
|
url = https://review.coreboot.org/amd_blobs
|
|
update = none
|
|
ignore = dirty
|
|
[submodule "3rdparty/cmocka"]
|
|
path = 3rdparty/cmocka
|
|
url = https://review.coreboot.org/cmocka.git
|
|
update = none
|
|
branch = stable-1.1
|
|
[submodule "3rdparty/qc_blobs"]
|
|
path = 3rdparty/qc_blobs
|
|
url = https://review.coreboot.org/qc_blobs.git
|
|
update = none
|
|
ignore = dirty
|
|
[submodule "3rdparty/intel-sec-tools"]
|
|
path = 3rdparty/intel-sec-tools
|
|
url = https://review.coreboot.org/9esec-security-tooling.git
|
|
[submodule "3rdparty/stm"]
|
|
path = 3rdparty/stm
|
|
url = https://review.coreboot.org/STM
|
|
branch = stmpe
|
|
[submodule "util/goswid"]
|
|
path = util/goswid
|
|
url = https://review.coreboot.org/goswid
|
|
branch = trunk
|
|
[submodule "src/vendorcode/amd/opensil/genoa_poc/opensil"]
|
|
path = src/vendorcode/amd/opensil/genoa_poc/opensil
|
|
url = https://review.coreboot.org/opensil_genoa_poc.git
|
|
[submodule "3rdparty/open-power-signing-utils"]
|
|
path = 3rdparty/open-power-signing-utils
|
|
url = https://review.coreboot.org/open-power-signing-utils.git
|