]> git.proxmox.com Git - mirror_edk2.git/blobdiff - ArmVirtPkg/ArmVirtQemuKernel.dsc
ArmVirtPkg/ArmVirtXen: don't set Pcd*ImageVerificationPolicy
[mirror_edk2.git] / ArmVirtPkg / ArmVirtQemuKernel.dsc
index 46d8bac3ef4d48feebd22ecb6afe249b56f5d49c..c3e0c9bf25492b03c522b20ec620487a25009458 100644 (file)
   #\r
   gEmbeddedTokenSpaceGuid.PcdPrePiCpuIoSize|16\r
 \r
+!if $(SECURE_BOOT_ENABLE) == TRUE\r
+  # override the default values from SecurityPkg to ensure images from all sources are verified in secure boot\r
+  gEfiSecurityPkgTokenSpaceGuid.PcdOptionRomImageVerificationPolicy|0x04\r
+  gEfiSecurityPkgTokenSpaceGuid.PcdFixedMediaImageVerificationPolicy|0x04\r
+  gEfiSecurityPkgTokenSpaceGuid.PcdRemovableMediaImageVerificationPolicy|0x04\r
+!endif\r
+\r
 [PcdsPatchableInModule.common]\r
   #\r
   # This will be overridden in the code\r