[coreboot] Verify option rom non-execution?

Igor Skochinsky skochinsky at mail.ru
Sat Nov 11 14:43:55 CET 2017

Hello Taiidan,

Saturday, November 11, 2017, 12:11:56 AM, you wrote:

Tgc> Hi! how can I verify the non-execution of option roms? I recently 
Tgc> noticed that I had somehow turned that on with one of my latest compiles
Tgc> (without yabel secure mode either)

You can't really prove a negative, so I can only imagine two options:

 - remove the possibility to execute oproms from your firmware
 - make a sentinel oprom which would print a warning/halt the system on execution

 Igor                            mailto:roxfan at skynet.be

More information about the coreboot mailing list