diff options
author | Sascha Hauer <s.hauer@pengutronix.de> | 2017-03-23 11:19:38 +0100 |
---|---|---|
committer | Sascha Hauer <s.hauer@pengutronix.de> | 2017-04-04 08:44:29 +0200 |
commit | 9dc622d5622ceeedfc5e793a201cad029ff0f5ab (patch) | |
tree | ab76b409c306a42a62fb1a85db09d8122e9ac8f9 /commands/Kconfig | |
parent | f98666122e3456115cbb0cb8bd730a87183deb98 (diff) | |
download | barebox-9dc622d5622ceeedfc5e793a201cad029ff0f5ab.tar.gz barebox-9dc622d5622ceeedfc5e793a201cad029ff0f5ab.tar.xz |
i.MX: hab: Add HAB fusebox related convenience functions / command
Secure boot with HAB requires handling of the super root key hash
and actually locking down the device. The related information is
stored in the i.MX fusebox device (IIM on older SoCs, OCOTP on newer
SoCs). This patch adds several convenience functions to store and
read the super root key hash and to lock down a SoC. Also we add
a command to do this from the command line.
Signed-off-by: Sascha Hauer <s.hauer@pengutronix.de>
Signed-off-by: Oleksij Rempel <o.rempel@pengutronix.de>
Signed-off-by: Sascha Hauer <s.hauer@pengutronix.de>
Diffstat (limited to 'commands/Kconfig')
-rw-r--r-- | commands/Kconfig | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/commands/Kconfig b/commands/Kconfig index bc0885c69d..8a8f94622d 100644 --- a/commands/Kconfig +++ b/commands/Kconfig @@ -1930,6 +1930,11 @@ config CMD_WD_DEFAULT_TIMOUT 'wd' is done without a timeout value (which means the watchdog gets enabled and re-triggered with the default timeout value). +config CMD_HAB + bool + depends on HAB + prompt "High Assurance boot (hab)" + # end Hardware manipulation commands endmenu |