mirror of
https://github.com/u-boot/u-boot.git
synced 2025-04-19 11:24:42 +00:00
doc: Update authenticated capsules documentation
Now that we moved out the capsule signature from the DTB, remove the relevant documentation. Signed-off-by: Ilias Apalodimas <ilias.apalodimas@linaro.org>
This commit is contained in:
parent
fd58c275f6
commit
00cf654b29
1 changed files with 0 additions and 15 deletions
|
@ -597,21 +597,6 @@ and used by the steps highlighted below.
|
||||||
[--fit | --raw | --guid <guid-string] \
|
[--fit | --raw | --guid <guid-string] \
|
||||||
<image_blob> <capsule_file_name>
|
<image_blob> <capsule_file_name>
|
||||||
|
|
||||||
4. Insert the signature list into a device tree in the following format::
|
|
||||||
|
|
||||||
{
|
|
||||||
signature {
|
|
||||||
capsule-key = [ <binary of signature list> ];
|
|
||||||
}
|
|
||||||
...
|
|
||||||
}
|
|
||||||
|
|
||||||
You can perform step-4 through the Kconfig symbol
|
|
||||||
CONFIG_EFI_CAPSULE_CRT_FILE. This symbol points to the signing key
|
|
||||||
generated in step-2. As part of U-Boot build, the ESL certificate file will
|
|
||||||
be generated from the signing key and automatically get embedded into the
|
|
||||||
platform's dtb.
|
|
||||||
|
|
||||||
Anti-rollback Protection
|
Anti-rollback Protection
|
||||||
************************
|
************************
|
||||||
|
|
||||||
|
|
Loading…
Add table
Reference in a new issue