[][SBC][MT7988][Add target device for secure boot]

[Description]
Add target device for secure boot
mediatek_mt7988a-gsw-10g-spim-nand-sb

[Release-log]
N/A

Change-Id: Ie4171a1719713f90a5c801edbf7fdf0a3ab3f44b
Reviewed-on: https://gerrit.mediatek.inc/c/openwrt/feeds/mtk_openwrt_feeds/+/6688065
Build: srv_hbgsm110
diff --git a/target/linux/mediatek/image/mt7988.mk b/target/linux/mediatek/image/mt7988.mk
index 6f636e4..28414e2 100644
--- a/target/linux/mediatek/image/mt7988.mk
+++ b/target/linux/mediatek/image/mt7988.mk
@@ -17,6 +17,36 @@
 endef
 TARGET_DEVICES += mediatek_mt7988a-gsw-10g-spim-nand
 
+define Device/mediatek_mt7988a-gsw-10g-spim-nand-sb
+  DEVICE_VENDOR := MediaTek
+  DEVICE_MODEL := mt7988a-gsw-10g-spim-nand-sb
+  DEVICE_DTS := mt7988a-gsw-10g-spim-nand
+  DEVICE_DTS_DIR := $(DTS_DIR)/mediatek
+  SUPPORTED_DEVICES := mediatek,mt7988a-gsw-10g-spim-snand
+  DEVICE_PACKAGES := uboot-envtools dmsetup
+  UBINIZE_OPTS := -E 5
+  BLOCKSIZE := 128k
+  PAGESIZE := 2048
+  IMAGE_SIZE := 65536k
+  KERNEL_IN_UBI := 1
+  IMAGES += factory.bin
+  IMAGE/factory.bin := append-ubi | check-size $$$$(IMAGE_SIZE)
+  IMAGE/sysupgrade.bin := sysupgrade-tar rootfs=$$$$(IMAGE_ROOTFS)-hashed | \
+	append-metadata
+  FIT_KEY_DIR := $(TOPDIR)/../../keys
+  FIT_KEY_NAME := fit_key
+  ANTI_ROLLBACK_TABLE := $(TOPDIR)/../../fw_ar_table.xml
+  AUTO_AR_CONF := $(TOPDIR)/../../auto_ar_conf.mk
+  HASHED_BOOT_DEVICE := 253:0
+  BASIC_KERNEL_CMDLINE := console=ttyS0,115200n1 rootfstype=squashfs loglevel=8
+  KERNEL = kernel-bin | lzma | squashfs-hashed | fw-ar-ver | \
+	fit-sign lzma $$(KDIR)/image-sb-$$(firstword $$(DEVICE_DTS)).dtb
+  KERNEL_INITRAMFS =
+endef
+TARGET_DEVICES += mediatek_mt7988a-gsw-10g-spim-nand-sb
+DEFAULT_DEVICE_VARS += FIT_KEY_DIR FIT_KEY_NAME ANTI_ROLLBACK_TABLE \
+	AUTO_AR_CONF HASHED_BOOT_DEVICE BASIC_KERNEL_CMDLINE
+
 define Device/mediatek_mt7988a-gsw-10g-spim-nand-4pcie
   DEVICE_VENDOR := MediaTek
   DEVICE_MODEL := mt7988a-gsw-10g-spim-nand-4pcie
@@ -152,4 +182,4 @@
 		     kmod-nls-iso8859-1
   IMAGE/sysupgrade.bin := sysupgrade-tar | append-metadata
 endef
-TARGET_DEVICES += mediatek_mt7988a-dsa-10g-sd
\ No newline at end of file
+TARGET_DEVICES += mediatek_mt7988a-dsa-10g-sd