[coreboot] Verify option rom non-execution?
Igor Skochinsky
skochinsky at mail.ru
Sat Nov 11 14:43:55 CET 2017
Hello Taiidan,
Saturday, November 11, 2017, 12:11:56 AM, you wrote:
Tgc> Hi! how can I verify the non-execution of option roms? I recently
Tgc> noticed that I had somehow turned that on with one of my latest compiles
Tgc> (without yabel secure mode either)
You can't really prove a negative, so I can only imagine two options:
- remove the possibility to execute oproms from your firmware
- make a sentinel oprom which would print a warning/halt the system on execution
--
WBR,
Igor mailto:roxfan at skynet.be
More information about the coreboot
mailing list