On Tue, Sep 15, 2020 at 03:36:30PM +0200, Albert Schwarzkopf wrote: > Currently, TEE binaries can only be loaded if CONFIG_BOOTM_FORCE_SIGNED_IMAGES > is not set. No signature check is being performed on them. > > Allow loading OP-TEE from FIT images. Therefore, now it's possible > to ensure that only trusted OP-TEE binaries will be loaded by using > signed FIT images. > > Signed-off-by: Albert Schwarzkopf <a.schwarzkopf@xxxxxxxxx> > --- > arch/arm/lib32/bootm.c | 44 +++++++++++++++++++++++++++++++++++++----- > 1 file changed, 39 insertions(+), 5 deletions(-) Applied, thanks Sascha -- Pengutronix e.K. | | Steuerwalder Str. 21 | http://www.pengutronix.de/ | 31137 Hildesheim, Germany | Phone: +49-5121-206917-0 | Amtsgericht Hildesheim, HRA 2686 | Fax: +49-5121-206917-5555 | _______________________________________________ barebox mailing list barebox@xxxxxxxxxxxxxxxxxxx http://lists.infradead.org/mailman/listinfo/barebox