2017-01-23 09:43:10 +09:00
|
|
|
config CHAIN_OF_TRUST
|
|
|
|
depends on !FIT_SIGNATURE && SECURE_BOOT
|
2017-04-27 13:27:53 +09:00
|
|
|
imply CMD_BLOB
|
2017-05-17 18:25:25 +09:00
|
|
|
imply CMD_HASH if ARM
|
2017-03-02 06:51:58 +09:00
|
|
|
select FSL_CAAM
|
2017-05-03 18:13:32 +09:00
|
|
|
select SPL_BOARD_INIT if (ARM && SPL)
|
2017-05-16 01:17:49 +09:00
|
|
|
select SHA_HW_ACCEL
|
|
|
|
select SHA_PROG_HW_ACCEL
|
2017-07-24 12:19:39 +09:00
|
|
|
select ENV_IS_NOWHERE
|
2017-01-23 09:43:10 +09:00
|
|
|
bool
|
|
|
|
default y
|
2017-05-17 18:25:16 +09:00
|
|
|
|
|
|
|
config CMD_ESBC_VALIDATE
|
|
|
|
bool "Enable the 'esbc_validate' and 'esbc_halt' commands"
|
|
|
|
default y if CHAIN_OF_TRUST
|
|
|
|
help
|
|
|
|
This option enables two commands used for secure booting:
|
|
|
|
|
|
|
|
esbc_validate - validate signature using RSA verification
|
|
|
|
esbc_halt - put the core in spin loop (Secure Boot Only)
|