BMC Image Signing Proposal

Adriana Kobylak anoo at
Tue Feb 20 08:04:02 AEDT 2018

> What do you mean unsharable?

The public keys only apply to the BMC where the firmware image is being 
installed on and not are not intended to be shared with other BMCs / 
hosts. "Shareable files can be stored on one host and used on several 
others" (

On another note, I'll be adding the gerrit links to the main epic 
( as changes start getting 
submitted for anyone that wants to leave comments or follow along. The 
first ones are: - Add image signing 
framework and open keys - BMC Digital Signature 

More information about the openbmc mailing list