build bot (Jenkins) has posted comments on this change. ( https://review.coreboot.org/c/coreboot/+/29547 )
Change subject: security/vboot: Add measured boot mode ......................................................................
Patch Set 54:
(14 comments)
https://review.coreboot.org/#/c/29547/54/src/lib/cbfs.c File src/lib/cbfs.c:
https://review.coreboot.org/#/c/29547/54/src/lib/cbfs.c@64 PS54, Line 64: if (!ret && !ENV_BOOTBLOCK && !ENV_DECOMPRESSOR && IS_ENABLED(CONFIG_VBOOT_MEASURED_BOOT)) { line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/lib/cbfs.c@110 PS54, Line 110: size_t in_size, void *buffer, size_t buffer_size, uint32_t compression) line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/lib/cbfs.c@123 PS54, Line 123: if ((ENV_BOOTBLOCK || ENV_VERSTAGE) && !IS_ENABLED(CONFIG_COMPRESS_PRERAM_STAGES)) line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/lib/cbfs.c@265 PS54, Line 265: if (ENV_VERSTAGE && !IS_ENABLED(CONFIG_NO_XIP_EARLY_STAGES) && IS_ENABLED(CONFIG_BOOT_DEVICE_MEMORY_MAPPED)) { line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/lib/prog_loaders.c File src/lib/prog_loaders.c:
https://review.coreboot.org/#/c/29547/54/src/lib/prog_loaders.c@51 PS54, Line 51: if (!ENV_BOOTBLOCK && !ENV_DECOMPRESSOR && IS_ENABLED(CONFIG_VBOOT_MEASURED_BOOT)) line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_crtm.h File src/security/vboot/vboot_crtm.h:
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_crtm.h@73 PS54, Line 73: uint32_t vboot_measure_region_hook(const struct region_device *region, const char *name, uint32_t type); line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_crtm.c File src/security/vboot/vboot_crtm.c:
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_crtm.c@153 PS54, Line 153: uint32_t vboot_measure_region_hook(const struct region_device *region, const char *name, uint32_t type) line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c File src/security/vboot/vboot_logic.c:
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c@98 PS54, Line 98: BUG(); /* Should never get called if init() returned an error. */ Avoid crashing the kernel - try using WARN_ON & recovery code rather than BUG() or BUG_ON()
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c@10... PS54, Line 104: BUG(); /* Should never get called if init() returned an error. */ Avoid crashing the kernel - try using WARN_ON & recovery code rather than BUG() or BUG_ON()
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c@28... PS54, Line 281: return vboot_extend_pcr(ctx, 0, BOOT_MODE_PCR) || vboot_extend_pcr(ctx, 1, HWID_DIGEST_PCR); line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c@30... PS54, Line 308: if (IS_ENABLED(CONFIG_RESUME_PATH_SAME_AS_BOOT) && vboot_platform_is_resuming()) line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c@31... PS54, Line 319: if (IS_ENABLED(CONFIG_VBOOT_MEASURED_BOOT) && !(ctx.flags & VB2_CONTEXT_S3_RESUME)) { line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c@32... PS54, Line 324: if (IS_ENABLED(CONFIG_VBOOT_PHYSICAL_DEV_SWITCH) && get_developer_mode_switch()) line over 80 characters
https://review.coreboot.org/#/c/29547/54/src/security/vboot/vboot_logic.c@33... PS54, Line 333: if (IS_ENABLED(CONFIG_VBOOT_WIPEOUT_SUPPORTED) && get_wipeout_mode_switch()) line over 80 characters