On Tue, Dec 10, 2019 at 04:06:27PM +0100, Maik Otto wrote: > the whole barebox with mbr and partition table will be signed by default > add the possibility in the Kconfig to change from full signing to skip-mbr > and from-dcdofs Not signing the MBR seems the right thing to do. Do we need it configurable at all or would it be better to just always skip the first KiB? Sascha -- Pengutronix e.K. | | Steuerwalder Str. 21 | http://www.pengutronix.de/ | 31137 Hildesheim, Germany | Phone: +49-5121-206917-0 | Amtsgericht Hildesheim, HRA 2686 | Fax: +49-5121-206917-5555 | _______________________________________________ barebox mailing list barebox@xxxxxxxxxxxxxxxxxxx http://lists.infradead.org/mailman/listinfo/barebox