[coreboot] Plans for upcoming Broadwell Thinkpads

Timothy Pearson tpearson at raptorengineeringinc.com
Fri Feb 6 18:16:48 CET 2015


On 02/06/2015 06:29 AM, Zaolin wrote:
> Hi,
>
> new thinkpad's can't be used anymore for coreboot. Especially the U and
> Y Intel CPU Series.
> They come with Intel Boot Guard and you are won't be able to boot
> anything which is unsigned and
> not approved by OEM. This means the OEM are fusing SHA256 public key
> hashes into the southbridge.
>
> For more details take a look at Intel Boot Guard architecture. It could
> be also confirmed by Secunet AG and Google.
>
> Regards Zaolin

That's scary to say the least.  No more Thinkpads for us...



More information about the coreboot mailing list