From bde91baf8a3b398170388ffb9835979ebfc2e4c4 Mon Sep 17 00:00:00 2001 From: Manorit Chawdhry Date: Wed, 14 Jun 2023 13:11:17 +0530 Subject: [PATCH] conf: machine: include: k3 enable fit signing for uboot Enables FIT Image signing for K3 platforms Signed-off-by: Manorit Chawdhry Signed-off-by: Ryan Eatmon --- meta-ti-bsp/conf/machine/include/k3.inc | 7 +++++++ meta-ti-bsp/recipes-kernel/linux/linux-ti-staging_6.1.bb | 1 + 2 files changed, 8 insertions(+) diff --git a/meta-ti-bsp/conf/machine/include/k3.inc b/meta-ti-bsp/conf/machine/include/k3.inc index f8bfb3db..eb25fa78 100644 --- a/meta-ti-bsp/conf/machine/include/k3.inc +++ b/meta-ti-bsp/conf/machine/include/k3.inc @@ -31,6 +31,13 @@ SPL_BINARY = "tispl.bin" SPL_BINARYNAME = "tispl.bin" UBOOT_SUFFIX = "img" +UBOOT_SIGN_ENABLE = "1" +UBOOT_MKIMAGE_DTCOPTS = "-I dts -O dtb" +UBOOT_SIGN_KEYNAME ?= "custMpk" +UBOOT_SIGN_KEYDIR ?= "${TI_SECURE_DEV_PKG}/keys" +FIT_HASH_ALG ?= "sha512" +FIT_SIGN_ALG ?= "rsa4096" + EXTRA_IMAGEDEPENDS += "virtual/bootloader" TFA_PLATFORM = "k3" diff --git a/meta-ti-bsp/recipes-kernel/linux/linux-ti-staging_6.1.bb b/meta-ti-bsp/recipes-kernel/linux/linux-ti-staging_6.1.bb index 3ee6c2bc..69f82e8c 100644 --- a/meta-ti-bsp/recipes-kernel/linux/linux-ti-staging_6.1.bb +++ b/meta-ti-bsp/recipes-kernel/linux/linux-ti-staging_6.1.bb @@ -3,6 +3,7 @@ SUMMARY = "Linux kernel for TI devices" LICENSE = "GPL-2.0-only" LIC_FILES_CHKSUM = "file://COPYING;md5=6bc538ed5bd9a7fc9398086aedcd7e46" +inherit ti-secdev inherit kernel require recipes-kernel/linux/setup-defconfig.inc