On Wed, May 6, 2020 at 6:55 PM Richard Hughes <hughsient@xxxxxxxxx> wrote: > > Export standard LPC configuration values from various LPC/eSPI > controllers. This allows userspace components such as fwupd to > verify the most basic SPI protections are set correctly. > For instance, checking BIOSWE is disabled and BLE is enabled. > > More cutting-edge checks (e.g. PRx and BootGuard) can be added > once the basics are in place. Exporting these values from the > kernel allows us to report the security level of the platform > without rebooting and running an unsigned EFI binary like > chipsec. > Isn't it covered by Intel SPI NOR driver? -- With Best Regards, Andy Shevchenko