/** @file\r
This includes some definitions introduced in UEFI that will be used in both PEI and DXE phases.\r
\r
- Copyright (c) 2006 - 2009, Intel Corporation \r
- All rights reserved. This program and the accompanying materials \r
- are licensed and made available under the terms and conditions of the BSD License \r
- which accompanies this distribution. The full text of the license may be found at \r
- http://opensource.org/licenses/bsd-license.php \r
-\r
- THE PROGRAM IS DISTRIBUTED UNDER THE BSD LICENSE ON AN "AS IS" BASIS, \r
- WITHOUT WARRANTIES OR REPRESENTATIONS OF ANY KIND, EITHER EXPRESS OR IMPLIED. \r
+Copyright (c) 2006 - 2011, Intel Corporation. All rights reserved.<BR>\r
+This program and the accompanying materials are licensed and made available under \r
+the terms and conditions of the BSD License that accompanies this distribution. \r
+The full text of the license may be found at\r
+http://opensource.org/licenses/bsd-license.php. \r
+ \r
+THE PROGRAM IS DISTRIBUTED UNDER THE BSD LICENSE ON AN "AS IS" BASIS, \r
+WITHOUT WARRANTIES OR REPRESENTATIONS OF ANY KIND, EITHER EXPRESS OR IMPLIED. \r
\r
**/\r
\r
///\r
EfiLoaderData,\r
///\r
- /// The code portions of a loaded Boot Services Driver\r
+ /// The code portions of a loaded Boot Services Driver.\r
///\r
EfiBootServicesCode,\r
///\r
///\r
/// Attributes of variable.\r
/// \r
-#define EFI_VARIABLE_NON_VOLATILE 0x00000001\r
-#define EFI_VARIABLE_BOOTSERVICE_ACCESS 0x00000002\r
-#define EFI_VARIABLE_RUNTIME_ACCESS 0x00000004\r
-#define EFI_VARIABLE_HARDWARE_ERROR_RECORD 0x00000008\r
-\r
+#define EFI_VARIABLE_NON_VOLATILE 0x00000001\r
+#define EFI_VARIABLE_BOOTSERVICE_ACCESS 0x00000002\r
+#define EFI_VARIABLE_RUNTIME_ACCESS 0x00000004\r
///\r
/// This attribute is identified by the mnemonic 'HR' \r
/// elsewhere in this specification.\r
/// \r
-#define EFI_VARIABLE_AUTHENTICATED_WRITE_ACCESS 0x00000010\r
+#define EFI_VARIABLE_HARDWARE_ERROR_RECORD 0x00000008\r
+///\r
+/// Attributes of Authenticated Variable\r
+///\r
+#define EFI_VARIABLE_AUTHENTICATED_WRITE_ACCESS 0x00000010\r
+#define EFI_VARIABLE_TIME_BASED_AUTHENTICATED_WRITE_ACCESS 0x00000020\r
+#define EFI_VARIABLE_APPEND_WRITE 0x00000040\r
+\r
\r
/// \r
/// AuthInfo is a WIN_CERTIFICATE using the wCertificateType\r
/// WIN_CERTIFICATE_UEFI_GUID and the CertType\r
-/// EFI_CERT_TYPE_RSA2048_SHA256. If the attribute specifies\r
+/// EFI_CERT_TYPE_RSA2048_SHA256_GUID. If the attribute specifies\r
/// authenticated access, then the Data buffer should begin with an\r
/// authentication descriptor prior to the data payload and DataSize\r
/// should reflect the the data.and descriptor size. The caller\r
/// key associated w/ the public/private 2048-bit RSA key-pair. The\r
/// WIN_CERTIFICATE shall be used to describe the signature of the\r
/// Variable data *Data. In addition, the signature will also\r
-/// include the MonotonicCount value to guard against replay attacks\r
+/// include the MonotonicCount value to guard against replay attacks.\r
/// \r
typedef struct {\r
///\r
WIN_CERTIFICATE_UEFI_GUID AuthInfo;\r
} EFI_VARIABLE_AUTHENTICATION;\r
\r
-#endif\r
+///\r
+/// When the attribute EFI_VARIABLE_TIME_BASED_AUTHENTICATED_WRITE_ACCESS is \r
+/// set, then the Data buffer shall begin with an instance of a complete (and serialized)\r
+/// EFI_VARIABLE_AUTHENTICATION_2 descriptor. The descriptor shall be followed by the new \r
+/// variable value and DataSize shall reflect the combined size of the descriptor and the new \r
+/// variable value. The authentication descriptor is not part of the variable data and is not \r
+/// returned by subsequent calls to GetVariable().\r
+///\r
+typedef struct {\r
+ ///\r
+ /// For the TimeStamp value, components Pad1, Nanosecond, TimeZone, Daylight and \r
+ /// Pad2 shall be set to 0. This means that the time shall always be expressed in GMT.\r
+ ///\r
+ EFI_TIME TimeStamp;\r
+ /// \r
+ /// Only a CertType of EFI_CERT_TYPE_PKCS7_GUID is accepted.\r
+ ///\r
+ WIN_CERTIFICATE_UEFI_GUID AuthInfo;\r
+ } EFI_VARIABLE_AUTHENTICATION_2;\r
\r
+#endif\r