[OpenPower-Firmware] STB verification of Hostboot by SBE

Hugo Landau hlandau at devever.net
Mon Nov 13 14:37:13 AEDT 2017


Hi,

What is the situation regarding the cryptographic verification of the
initial Hostboot payload executed on the POWER9 cores?

This POWER8-era document [1] suggests that the SBE cryptographically
verifies Hostboot after loading it and before executing it, but I can't
find any code for it in POWER9's open-power/sbe.

[1]
https://www.ibm.com/developerworks/library/l-trusted-boot-openPOWER-trs/index.html



More information about the OpenPower-Firmware mailing list