blob: 6c9df3a767637fccbd16a246a425c74a4451bc3c [file] [log] [blame]
Alexander Graf67ee7052016-03-04 01:10:07 +01001config EFI_LOADER
Heinrich Schuchardt96b236a2019-05-11 10:27:58 +02002 bool "Support running UEFI applications"
Heinrich Schuchardt79cea672019-11-17 10:44:16 +01003 depends on OF_LIBFDT && ( \
Heinrich Schuchardt30c3a5f2019-11-19 04:19:09 +01004 ARM && (SYS_CPU = arm1136 || \
5 SYS_CPU = arm1176 || \
6 SYS_CPU = armv7 || \
7 SYS_CPU = armv8) || \
Heinrich Schuchardt79cea672019-11-17 10:44:16 +01008 X86 || RISCV || SANDBOX)
Alexander Graf5e247172018-01-24 14:54:21 +01009 # We need EFI_STUB_64BIT to be set on x86_64 with EFI_STUB
10 depends on !EFI_STUB || !X86_64 || EFI_STUB_64BIT
11 # We need EFI_STUB_32BIT to be set on x86_32 with EFI_STUB
12 depends on !EFI_STUB || !X86 || X86_64 || EFI_STUB_32BIT
Heinrich Schuchardtac212dc2019-11-20 18:48:02 +010013 default y if !ARM || SYS_CPU = armv7 || SYS_CPU = armv8
Adam Ford70c8f052018-02-06 12:14:28 -060014 select LIB_UUID
Adam Fordb10ba902018-02-06 12:43:56 -060015 select HAVE_BLOCK_DEVICE
Heinrich Schuchardt9e18bfa2019-01-22 21:35:23 +010016 select REGEX
Heinrich Schuchardt35550cc2018-04-29 23:37:12 +020017 imply CFB_CONSOLE_ANSI
Heinrich Schuchardt6c46aaa2020-03-21 20:45:50 +010018 imply FAT
19 imply FAT_WRITE
Heinrich Schuchardt29db4c52019-12-04 22:58:58 +010020 imply USB_KEYBOARD_FN_KEYS
Heinrich Schuchardt8a7514a2020-01-15 00:49:35 +010021 imply VIDEO_ANSI
Alexander Graf67ee7052016-03-04 01:10:07 +010022 help
Heinrich Schuchardt96b236a2019-05-11 10:27:58 +020023 Select this option if you want to run UEFI applications (like GNU
24 GRUB or iPXE) on top of U-Boot. If this option is enabled, U-Boot
25 will expose the UEFI API to a loaded application, enabling it to
26 reuse U-Boot's device drivers.
Alexander Graf7c00a3c2016-05-11 18:25:48 +020027
Heinrich Schuchardt0cbab582019-05-08 23:17:38 +020028if EFI_LOADER
29
Heinrich Schuchardtf2856ad2019-05-31 22:56:02 +020030config EFI_GET_TIME
31 bool "GetTime() runtime service"
32 depends on DM_RTC
33 default y
34 help
35 Provide the GetTime() runtime service at boottime. This service
36 can be used by an EFI application to read the real time clock.
37
38config EFI_SET_TIME
39 bool "SetTime() runtime service"
40 depends on EFI_GET_TIME
41 default n
42 help
43 Provide the SetTime() runtime service at boottime. This service
44 can be used by an EFI application to adjust the real time clock.
45
Heinrich Schuchardt3db35912019-05-11 09:53:33 +020046config EFI_DEVICE_PATH_TO_TEXT
47 bool "Device path to text protocol"
48 default y
49 help
50 The device path to text protocol converts device nodes and paths to
51 human readable strings.
52
Heinrich Schuchardt0cbab582019-05-08 23:17:38 +020053config EFI_LOADER_HII
54 bool "HII protocols"
55 default y
56 help
57 The Human Interface Infrastructure is a complicated framework that
58 allows UEFI applications to draw fancy menus and hook strings using
59 a translation framework.
60
61 U-Boot implements enough of its features to be able to run the UEFI
62 Shell, but not more than that.
63
Heinrich Schuchardtb3258842019-05-16 07:52:58 +020064config EFI_UNICODE_COLLATION_PROTOCOL2
Heinrich Schuchardt532fec72019-05-08 23:24:26 +020065 bool "Unicode collation protocol"
66 default y
67 help
68 The Unicode collation protocol is used for lexical comparisons. It is
69 required to run the UEFI shell.
70
Heinrich Schuchardtb3258842019-05-16 07:52:58 +020071if EFI_UNICODE_COLLATION_PROTOCOL2
Heinrich Schuchardt532fec72019-05-08 23:24:26 +020072
Heinrich Schuchardt58ddcd32018-09-04 19:34:56 +020073config EFI_UNICODE_CAPITALIZATION
74 bool "Support Unicode capitalization"
Heinrich Schuchardt58ddcd32018-09-04 19:34:56 +020075 default y
76 help
77 Select this option to enable correct handling of the capitalization of
78 Unicode codepoints in the range 0x0000-0xffff. If this option is not
79 set, only the the correct handling of the letters of the codepage
80 used by the FAT file system is ensured.
81
Heinrich Schuchardt18ed8cf2019-05-16 18:19:00 +020082config EFI_UNICODE_COLLATION_PROTOCOL
83 bool "Deprecated version of the Unicode collation protocol"
84 default n
85 help
86 In EFI 1.10 a version of the Unicode collation protocol using ISO
87 639-2 language codes existed. This protocol is not part of the UEFI
88 specification any longer. Unfortunately it is required to run the
89 UEFI Self Certification Test (SCT) II, version 2.6, 2017.
90
91 Choose this option for testing only. It is bound to be removed.
92
Heinrich Schuchardt532fec72019-05-08 23:24:26 +020093endif
94
Alexander Graf7c00a3c2016-05-11 18:25:48 +020095config EFI_LOADER_BOUNCE_BUFFER
96 bool "EFI Applications use bounce buffers for DMA operations"
Heinrich Schuchardt0cbab582019-05-08 23:17:38 +020097 depends on ARM64
Alexander Graf7c00a3c2016-05-11 18:25:48 +020098 default n
99 help
100 Some hardware does not support DMA to full 64bit addresses. For this
101 hardware we can create a bounce buffer so that payloads don't have to
102 worry about platform details.
Alexander Graf44be5da2019-02-11 15:24:00 +0100103
Heinrich Schuchardt0cbab582019-05-08 23:17:38 +0200104config EFI_PLATFORM_LANG_CODES
105 string "Language codes supported by firmware"
106 default "en-US"
Alexander Graf44be5da2019-02-11 15:24:00 +0100107 help
Heinrich Schuchardt0cbab582019-05-08 23:17:38 +0200108 This value is used to initialize the PlatformLangCodes variable. Its
109 value is a semicolon (;) separated list of language codes in native
110 RFC 4646 format, e.g. "en-US;de-DE". The first language code is used
111 to initialize the PlatformLang variable.
Alexander Graf44be5da2019-02-11 15:24:00 +0100112
Heinrich Schuchardt05874fb2019-07-05 18:12:16 +0200113config EFI_HAVE_RUNTIME_RESET
114 # bool "Reset runtime service is available"
115 bool
116 default y
117 depends on ARCH_BCM283X || FSL_LAYERSCAPE || PSCI_RESET || SYSRESET_X86
118
Heinrich Schuchardt149d5d42019-07-22 22:04:36 +0200119config EFI_GRUB_ARM32_WORKAROUND
120 bool "Workaround for GRUB on 32bit ARM"
121 default y
122 depends on ARM && !ARM64
123 help
124 GRUB prior to version 2.04 requires U-Boot to disable caches. This
125 workaround currently is also needed on systems with caches that
126 cannot be managed via CP15.
Sughosh Ganu7064a5d2019-12-29 00:01:05 +0530127
128config EFI_RNG_PROTOCOL
129 bool "EFI_RNG_PROTOCOL support"
130 depends on DM_RNG
Peter Robinsonfa497522020-04-01 11:15:01 +0100131 default y
Sughosh Ganu7064a5d2019-12-29 00:01:05 +0530132 help
Heinrich Schuchardt7bcc7fc2020-02-14 23:28:58 +0100133 Provide a EFI_RNG_PROTOCOL implementation using the hardware random
134 number generator of the platform.
Sughosh Ganu7064a5d2019-12-29 00:01:05 +0530135
Ilias Apalodimas3510ba72020-02-21 09:55:45 +0200136config EFI_LOAD_FILE2_INITRD
137 bool "EFI_FILE_LOAD2_PROTOCOL for Linux initial ramdisk"
138 default n
139 help
140 Expose a EFI_FILE_LOAD2_PROTOCOL that the Linux UEFI stub can
141 use to load the initial ramdisk. Once this is enabled using
142 initrd=<ramdisk> will stop working.
143
144config EFI_INITRD_FILESPEC
145 string "initramfs path"
146 default "host 0:1 initrd"
147 depends on EFI_LOAD_FILE2_INITRD
148 help
149 Full path of the initramfs file, e.g. mmc 0:2 initramfs.cpio.gz.
150
AKASHI Takahiro1900a3b2020-04-14 11:51:38 +0900151config EFI_SECURE_BOOT
152 bool "Enable EFI secure boot support"
153 depends on EFI_LOADER
154 select SHA256
155 select RSA
156 select RSA_VERIFY_WITH_PKEY
157 select IMAGE_SIGN_INFO
158 select ASYMMETRIC_KEY_TYPE
159 select ASYMMETRIC_PUBLIC_KEY_SUBTYPE
160 select X509_CERTIFICATE_PARSER
161 select PKCS7_MESSAGE_PARSER
162 default n
163 help
164 Select this option to enable EFI secure boot support.
165 Once SecureBoot mode is enforced, any EFI binary can run only if
166 it is signed with a trusted key. To do that, you need to install,
167 at least, PK, KEK and db.
168
Ilias Apalodimas77a364f2020-05-17 22:25:44 +0300169config EFI_MM_COMM_TEE
170 bool "UEFI variables storage service via OP-TEE"
171 depends on OPTEE
172 default n
173 help
174 If OP-TEE is present and running StandAloneMM, dispatch all UEFI variable
175 related operations to that. The application will verify, authenticate and
176 store the variables on an RPMB.
177
Heinrich Schuchardt0cbab582019-05-08 23:17:38 +0200178endif