Aaron Durbin has posted comments on this change. ( https://review.coreboot.org/c/coreboot/+/32153 )
Change subject: src/security/vboot: When VBOOT Stage Verification is enabled, boot ROMSTAGE and POSTCAR from Read-Only region.
......................................................................
Patch Set 1:
(1 comment)
https://review.coreboot.org/#/c/32153/1//COMMIT_MSG
Commit Message:
https://review.coreboot.org/#/c/32153/1//COMMIT_MSG@13
PS1, Line 13: RAMSTAGE. RAMSTAGE authenticates PAYLOAD.
This is Intel enhancement. Here, we make use of VBOOT 2. […]
Well, I'm confused by the comment that romstage and postcar are in RO. That's not a property that applies globally.
--
To view, visit
https://review.coreboot.org/c/coreboot/+/32153
To unsubscribe, or for help writing mail filters, visit
https://review.coreboot.org/settings
Gerrit-Project: coreboot
Gerrit-Branch: master
Gerrit-Change-Id: I6d4b7dbea62a92ca75d731c84b7c1402a207634a
Gerrit-Change-Number: 32153
Gerrit-PatchSet: 1
Gerrit-Owner: Amol N Sukerkar
amol.n.sukerkar@intel.com
Gerrit-Reviewer: Aaron Durbin
adurbin@chromium.org
Gerrit-Reviewer: Amol N Sukerkar
amol.n.sukerkar@intel.com
Gerrit-Reviewer: Martin Roth
martinroth@google.com
Gerrit-Reviewer: Patrick Georgi
pgeorgi@google.com
Gerrit-Reviewer: Subrata Banik
subrata.banik@intel.com
Gerrit-Reviewer: build bot (Jenkins)
no-reply@coreboot.org
Gerrit-Comment-Date: Tue, 02 Apr 2019 22:08:19 +0000
Gerrit-HasComments: Yes
Gerrit-Has-Labels: No
Comment-In-Reply-To: Amol N Sukerkar
amol.n.sukerkar@intel.com
Comment-In-Reply-To: Aaron Durbin
adurbin@chromium.org
Gerrit-MessageType: comment