]> git.proxmox.com Git - mirror_edk2.git/commit - SecurityPkg/Library/DxeImageVerificationLib/DxeImageVerificationLib.c
1. Remove the code path which use X509 cert in KEK to validate PKCS7 signed image.
authorsfu5 <sfu5@6f19259b-4bc3-4df7-8a09-765794883524>
Wed, 15 Aug 2012 01:39:43 +0000 (01:39 +0000)
committersfu5 <sfu5@6f19259b-4bc3-4df7-8a09-765794883524>
Wed, 15 Aug 2012 01:39:43 +0000 (01:39 +0000)
commit50fe73a1aa8599e31af9ed8f59fcf95e8c58642a
tree9adab847d5e01b1835e595c1e39d290ff02b6c53
parent8c71ec8f11dd3e8f5163df48d1175c975aa19973
1. Remove the code path which use X509 cert in KEK to validate PKCS7 signed image.
2. Remove the code path to validate UEFI image signed by RSA2048 key.
3. Disable the ALLOW_EXECUTE/DEFER_EXECUTE/QUERY_USER policy PCD.

Signed-off-by: Fu Siyuan <siyuan.fu@intel.com>
Reviewed-by: Ye Ting <ting.ye@intel.com>
Reviewed-by: Dong Guo <guo.dong@intel.com>
git-svn-id: https://edk2.svn.sourceforge.net/svnroot/edk2/trunk/edk2@13636 6f19259b-4bc3-4df7-8a09-765794883524
SecurityPkg/Library/DxeImageVerificationLib/DxeImageVerificationLib.c