Tom Rini | 51b06fa | 2017-01-22 19:43:10 -0500 | [diff] [blame] | 1 | config CHAIN_OF_TRUST |
| 2 | depends on !FIT_SIGNATURE && SECURE_BOOT |
Simon Glass | 311ec4f | 2017-04-26 22:27:53 -0600 | [diff] [blame] | 3 | imply CMD_BLOB |
Simon Glass | 027608e | 2017-05-17 03:25:25 -0600 | [diff] [blame] | 4 | imply CMD_HASH if ARM |
Tom Rini | a5c4d40 | 2017-03-01 16:51:58 -0500 | [diff] [blame] | 5 | select FSL_CAAM |
Ley Foon Tan | 48fcc4a | 2017-05-03 17:13:32 +0800 | [diff] [blame] | 6 | select SPL_BOARD_INIT if (ARM && SPL) |
Tom Rini | 5bdd919 | 2017-05-15 12:17:49 -0400 | [diff] [blame] | 7 | select SHA_HW_ACCEL |
| 8 | select SHA_PROG_HW_ACCEL |
Simon Glass | 73c18b4 | 2017-07-23 21:19:39 -0600 | [diff] [blame] | 9 | select ENV_IS_NOWHERE |
Tom Rini | 51b06fa | 2017-01-22 19:43:10 -0500 | [diff] [blame] | 10 | bool |
| 11 | default y |
Simon Glass | a6a9ea4 | 2017-05-17 03:25:16 -0600 | [diff] [blame] | 12 | |
| 13 | config CMD_ESBC_VALIDATE |
| 14 | bool "Enable the 'esbc_validate' and 'esbc_halt' commands" |
| 15 | default y if CHAIN_OF_TRUST |
| 16 | help |
| 17 | This option enables two commands used for secure booting: |
| 18 | |
| 19 | esbc_validate - validate signature using RSA verification |
| 20 | esbc_halt - put the core in spin loop (Secure Boot Only) |