build bot (Jenkins) has posted comments on this change. ( https://review.coreboot.org/c/coreboot/+/29547 )
Change subject: security/vboot: Add measured boot mode ......................................................................
Patch Set 50:
(15 comments)
https://review.coreboot.org/#/c/29547/50/src/lib/cbfs.c File src/lib/cbfs.c:
https://review.coreboot.org/#/c/29547/50/src/lib/cbfs.c@39 PS50, Line 39: uint32_t __weak vboot_measure_region_hook(const struct region_device *region, const char *name, uint32_t type) line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/lib/cbfs.c@106 PS50, Line 106: size_t in_size, void *buffer, size_t buffer_size, uint32_t compression) line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/lib/cbfs.c@119 PS50, Line 119: if ((ENV_BOOTBLOCK || ENV_VERSTAGE) && !IS_ENABLED(CONFIG_COMPRESS_PRERAM_STAGES)) line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/lib/cbfs.c@261 PS50, Line 261: if (ENV_VERSTAGE && !IS_ENABLED(CONFIG_NO_XIP_EARLY_STAGES) && IS_ENABLED(CONFIG_BOOT_DEVICE_MEMORY_MAPPED)) { line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/lib/fmap.c File src/lib/fmap.c:
https://review.coreboot.org/#/c/29547/50/src/lib/fmap.c@31 PS50, Line 31: uint32_t __weak vboot_measure_region_hook(const struct region_device *region, const char *name, uint32_t type) line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_crtm.h File src/security/vboot/vboot_crtm.h:
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_crtm.h@70 PS50, Line 70: uint32_t vboot_measure_region_hook(const struct region_device *region, const char *name, uint32_t type); line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_crtm.c File src/security/vboot/vboot_crtm.c:
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_crtm.c@154 PS50, Line 154: uint32_t vboot_measure_region_hook(const struct region_device *region, const char *name, uint32_t type) line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_crtm.c@213 PS50, Line 213: } adding a line without newline at end of file
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c File src/security/vboot/vboot_logic.c:
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c@98 PS50, Line 98: BUG(); /* Should never get called if init() returned an error. */ Avoid crashing the kernel - try using WARN_ON & recovery code rather than BUG() or BUG_ON()
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c@10... PS50, Line 104: BUG(); /* Should never get called if init() returned an error. */ Avoid crashing the kernel - try using WARN_ON & recovery code rather than BUG() or BUG_ON()
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c@28... PS50, Line 281: return vboot_extend_pcr(ctx, 0, BOOT_MODE_PCR) || vboot_extend_pcr(ctx, 1, HWID_DIGEST_PCR); line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c@30... PS50, Line 308: if (IS_ENABLED(CONFIG_RESUME_PATH_SAME_AS_BOOT) && vboot_platform_is_resuming()) line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c@31... PS50, Line 319: if (IS_ENABLED(CONFIG_VBOOT_MEASURED_BOOT) && !(ctx.flags & VB2_CONTEXT_S3_RESUME)) { line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c@32... PS50, Line 324: if (IS_ENABLED(CONFIG_VBOOT_PHYSICAL_DEV_SWITCH) && get_developer_mode_switch()) line over 80 characters
https://review.coreboot.org/#/c/29547/50/src/security/vboot/vboot_logic.c@33... PS50, Line 333: if (IS_ENABLED(CONFIG_VBOOT_WIPEOUT_SUPPORTED) && get_wipeout_mode_switch()) line over 80 characters