On 13.09.24 13:51, Nico Huber via coreboot wrote:
On 13.09.24 13:07, Nico Huber via coreboot wrote:
So, what I'm suggesting is to just look for an update in a pre- defined path on the boot medium.
Looks like this is already specified for capsules:
8.5.5. Delivery of Capsules via file on Mass Storage Device[1]
And there is a fwupd plugin supporting it[2].
So why is the fragile, more complex, harder to secure memory-scatter- gather-mix-coreboot-with-edk2 path even considered? What do I miss?
Nico
[1] https://uefi.org/specs/UEFI/2.10_A/08_Services_Runtime_Services.html#deliver...
[2] https://fwupd.github.io/libfwupdplugin/uefi-capsule-README.html#update-behav...