[PATCH] common: Sconfig: fix help text of BOOT_UNSIGNED_IMAGES
Ulrich Ölmann
u.oelmann at pengutronix.de
Mon Sep 7 22:22:36 PDT 2026
Enabling this option relaxes the requirements for boot artifacts. For secure
boot, however, it must be disabled unless signed images are enforced at build
time via CONFIG_BOOTM_FORCE_SIGNED_IMAGES.
Signed-off-by: Ulrich Ölmann <u.oelmann at pengutronix.de>
---
common/Sconfig | 4 ++--
1 file changed, 2 insertions(+), 2 deletions(-)
diff --git a/common/Sconfig b/common/Sconfig
index b5c585b11b20..e5bfb63cfcb3 100644
--- a/common/Sconfig
+++ b/common/Sconfig
@@ -56,8 +56,8 @@ config BOOT_UNSIGNED_IMAGES
Say y here if you want to allow booting of images with
an invalid signature or no signature at all.
- Systems with verified boot chains should say y here
+ Systems with verified boot chains should say n here
or force it at compile time irrespective of policy
- with CONFIG_BOOTM_FORCE_SIGNED_IMAGES
+ with CONFIG_BOOTM_FORCE_SIGNED_IMAGES.
endmenu
--
2.47.3
More information about the barebox
mailing list