[PATCH 1/1] bootm: Allow loading OP-TEE from FIT image

Sascha Hauer s.hauer at pengutronix.de
Fri Sep 18 05:42:40 EDT 2020


On Tue, Sep 15, 2020 at 03:36:30PM +0200, Albert Schwarzkopf wrote:
> Currently, TEE binaries can only be loaded if CONFIG_BOOTM_FORCE_SIGNED_IMAGES
> is not set. No signature check is being performed on them.
> 
> Allow loading OP-TEE from FIT images. Therefore, now it's possible
> to ensure that only trusted OP-TEE binaries will be loaded by using
> signed FIT images.
> 
> Signed-off-by: Albert Schwarzkopf <a.schwarzkopf at phytec.de>
> ---
>  arch/arm/lib32/bootm.c | 44 +++++++++++++++++++++++++++++++++++++-----
>  1 file changed, 39 insertions(+), 5 deletions(-)

Applied, thanks

Sascha

-- 
Pengutronix e.K.                           |                             |
Steuerwalder Str. 21                       | http://www.pengutronix.de/  |
31137 Hildesheim, Germany                  | Phone: +49-5121-206917-0    |
Amtsgericht Hildesheim, HRA 2686           | Fax:   +49-5121-206917-5555 |



More information about the barebox mailing list