Attention is currently required from: Felix Singer, Benjamin Doron, Subrata Banik.
Nico Huber has posted comments on this change. ( https://review.coreboot.org/c/coreboot/+/50053 )
Change subject: mb/{asrock,intel,siemens}: Define `.chipset_lockdown`
......................................................................
Patch Set 6:
(1 comment)
File src/mainboard/siemens/chili/variants/chili/devicetree.cb:
https://review.coreboot.org/c/coreboot/+/50053/comment/a2688abf_4fdc4e90
PS6, Line 13: .chipset_lockdown = CHIPSET_LOCKDOWN_COREBOOT,
IIRC, we didn't set it on purpose. The coreboot path seemed unfinished […]
Turns out that the LOCKDOWN_FSP path is broken by now (we can't flash
internally anymore with it). I'll give up on upstream security for the
time being. As long as Intel is "contributing", it seems impossible.
--
To view, visit
https://review.coreboot.org/c/coreboot/+/50053
To unsubscribe, or for help writing mail filters, visit
https://review.coreboot.org/settings
Gerrit-Project: coreboot
Gerrit-Branch: master
Gerrit-Change-Id: I8e263ea7d2b64c9f577998eb3851a1aa1b0902f5
Gerrit-Change-Number: 50053
Gerrit-PatchSet: 6
Gerrit-Owner: Benjamin Doron
benjamin.doron00@gmail.com
Gerrit-Reviewer: Felix Singer
felixsinger@posteo.net
Gerrit-Reviewer: Angel Pons
th3fanbus@gmail.com
Gerrit-Reviewer: Maxim Polyakov
max.senia.poliak@gmail.com
Gerrit-Reviewer: Nico Huber
nico.h@gmx.de
Gerrit-Reviewer: Subrata Banik
subrata.banik@intel.com
Gerrit-Reviewer: build bot (Jenkins)
no-reply@coreboot.org
Gerrit-CC: Paul Menzel
paulepanter@mailbox.org
Gerrit-Attention: Felix Singer
felixsinger@posteo.net
Gerrit-Attention: Benjamin Doron
benjamin.doron00@gmail.com
Gerrit-Attention: Subrata Banik
subrata.banik@intel.com
Gerrit-Comment-Date: Sun, 11 Jul 2021 09:17:38 +0000
Gerrit-HasComments: Yes
Gerrit-Has-Labels: No
Comment-In-Reply-To: Nico Huber
nico.h@gmx.de
Gerrit-MessageType: comment