diff options
author | Ilias Apalodimas <ilias.apalodimas@linaro.org> | 2022-04-28 14:57:52 +0800 |
---|---|---|
committer | Peng Fan <peng.fan@nxp.com> | 2022-04-28 15:42:14 +0800 |
commit | 4bdbe46ec36ec30f148f9cd988486d1a10ffd180 (patch) | |
tree | a863a3b9aa439ec1f1e6e549c97e42577687c359 /configs/imx8ulp_9x9_evk_android_defconfig | |
parent | 9a8e243e8a1b3a764e91330dd981ef82ac087bf8 (diff) |
efi_loader: add sha384/512 on certificate revocation
Currently we don't support sha384/512 for the X.509
certificate To-Be-Signed contents. Moreover if we come across such a
hash we skip the check and approve the image, although the image
might needs to be rejected.
It's worth noting here that efi_hash_regions() can now be reused from
efi_signature_lookup_digest() and add sha348/512 support there as well
Signed-off-by: Ilias Apalodimas <ilias.apalodimas@linaro.org>
Reviewed-by: Ye Li <ye.li@nxp.com>
Signed-off-by: Peng Fan <peng.fan@nxp.com>
Diffstat (limited to 'configs/imx8ulp_9x9_evk_android_defconfig')
0 files changed, 0 insertions, 0 deletions