All of lore.kernel.org
 help / color / mirror / Atom feed
* Support for "Signed firmware" update
@ 2019-11-19  7:28 Thaj
  2019-11-19 18:01 ` Adriana Kobylak
  0 siblings, 1 reply; 3+ messages in thread
From: Thaj @ 2019-11-19  7:28 UTC (permalink / raw)
  To: openbmc

[-- Attachment #1: Type: text/plain, Size: 75 bytes --]

Is there a plan to support BMC/Host signed firmware update?

Regards,
Thaj

[-- Attachment #2: Type: text/html, Size: 130 bytes --]

^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: Support for "Signed firmware" update
  2019-11-19  7:28 Support for "Signed firmware" update Thaj
@ 2019-11-19 18:01 ` Adriana Kobylak
  2019-11-20 11:58   ` Thaj
  0 siblings, 1 reply; 3+ messages in thread
From: Adriana Kobylak @ 2019-11-19 18:01 UTC (permalink / raw)
  To: Thaj; +Cc: openbmc, openbmc

On 2019-11-19 01:28, Thaj wrote:
> Is there a plan to support BMC/Host signed firmware update?

Hi Thaj, there's already support for checking signatures during a 
firmware update, it's enabled via the "verify_signature" config option 
in the phosphor-bmc-code-mgmt and openpower-pnor-code-mgmt repos.
The OpenBMC images are signed via the phosphor-image-signing.bb recipe 
in the meta-phosphor layer.
Is this what you were looking for?

> 
> Regards,
> Thaj

^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: Support for "Signed firmware" update
  2019-11-19 18:01 ` Adriana Kobylak
@ 2019-11-20 11:58   ` Thaj
  0 siblings, 0 replies; 3+ messages in thread
From: Thaj @ 2019-11-20 11:58 UTC (permalink / raw)
  To: Adriana Kobylak; +Cc: openbmc, openbmc

[-- Attachment #1: Type: text/plain, Size: 676 bytes --]

Hi Adriana, This is exactly I was looking for. I will try it and post here
if I face any issue. Thanks for the info.

On Tue, Nov 19, 2019 at 11:31 PM Adriana Kobylak <anoo@linux.ibm.com> wrote:

> On 2019-11-19 01:28, Thaj wrote:
> > Is there a plan to support BMC/Host signed firmware update?
>
> Hi Thaj, there's already support for checking signatures during a
> firmware update, it's enabled via the "verify_signature" config option
> in the phosphor-bmc-code-mgmt and openpower-pnor-code-mgmt repos.
> The OpenBMC images are signed via the phosphor-image-signing.bb recipe
> in the meta-phosphor layer.
> Is this what you were looking for?
>
> >
> > Regards,
> > Thaj
>

[-- Attachment #2: Type: text/html, Size: 1107 bytes --]

^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2019-11-20 11:58 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2019-11-19  7:28 Support for "Signed firmware" update Thaj
2019-11-19 18:01 ` Adriana Kobylak
2019-11-20 11:58   ` Thaj

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.