Support for "Signed firmware" update

Thaj tajudheenk at gmail.com
Wed Nov 20 22:58:21 AEDT 2019


Hi Adriana, This is exactly I was looking for. I will try it and post here
if I face any issue. Thanks for the info.

On Tue, Nov 19, 2019 at 11:31 PM Adriana Kobylak <anoo at linux.ibm.com> wrote:

> On 2019-11-19 01:28, Thaj wrote:
> > Is there a plan to support BMC/Host signed firmware update?
>
> Hi Thaj, there's already support for checking signatures during a
> firmware update, it's enabled via the "verify_signature" config option
> in the phosphor-bmc-code-mgmt and openpower-pnor-code-mgmt repos.
> The OpenBMC images are signed via the phosphor-image-signing.bb recipe
> in the meta-phosphor layer.
> Is this what you were looking for?
>
> >
> > Regards,
> > Thaj
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.ozlabs.org/pipermail/openbmc/attachments/20191120/d0c0a82f/attachment.htm>


More information about the openbmc mailing list