7 comments:
File src/include/boot_device.h:
Patch Set #5, Line 78: Looks
Locks
Done
File src/security/lockdown/Kconfig:
nit: should probably say "boot media", not "chip"
Done
File src/security/lockdown/Kconfig:
Patch Set #6, Line 26: programmer
controller
Done
Patch Set #6, Line 27: chipset lockdown
Then what about the LOCK_IN_VERSTAGE and LOCK_IN_RAMSTAGE options?
Done
File src/security/lockdown/lockdown.c:
Patch Set #5, Line 76: security_lockdown_bootmedia
Is there an expectation to add this to a BS entry some place else? Otherwise you could drop the void […]
Done
File src/security/lockdown/lockdown.c:
Patch Set #6, Line 56: for (size_t i = 0; i < ARRAY_SIZE(wp_prot); i++) {
This is the same sequence as above in the BOOTMEDIA_LOCK_RO path. […]
Done
Patch Set #6, Line 75: security_lockdown_bootmedia
This is calling a symbol that doesn't exist?
Done
To view, visit change 32705. To unsubscribe, or for help writing mail filters, visit settings.