]> git.proxmox.com Git - mirror_edk2.git/commit - SecurityPkg/VariableAuthenticated/SecureBootConfigDxe/SecureBootConfigImpl.c
SecurityPkg: enhance secure boot Config Dxe & Time Based AuthVariable.
authorZhang Lubo <lubo.zhang@intel.com>
Thu, 5 Jan 2017 06:58:05 +0000 (14:58 +0800)
committerJiaxin Wu <jiaxin.wu@intel.com>
Mon, 20 Feb 2017 02:09:53 +0000 (10:09 +0800)
commitc035e37335ae43229d7e68de74a65f2c01ebc0af
treeffdf5d04eae742a9f907149ffde82c2b8e0c74a2
parent80e63e846af4ac135da5faccead7450e956d6462
SecurityPkg: enhance secure boot Config Dxe & Time Based AuthVariable.

V3: code clean up

prohibit Image SHA-1 hash option in SecureBootConfigDxe.
Timebased Auth Variable driver should ensure AuthAlgorithm
is SHA256 before further verification

Contributed-under: TianoCore Contribution Agreement 1.0
Signed-off-by: Zhang Lubo <lubo.zhang@intel.com>
Cc: Chao Zhang <chao.b.zhang@intel.com>
Cc: Long Qin <qin.long@intel.com>
Cc: Yao Jiewen <jiewen.yao@intel.com>
Reviewed-by: Chao Zhang <chao.b.zhang@intel.com>
Reviewed-by: Long Qin <qin.long@intel.com>
SecurityPkg/Library/AuthVariableLib/AuthService.c
SecurityPkg/Library/AuthVariableLib/AuthServiceInternal.h
SecurityPkg/VariableAuthenticated/SecureBootConfigDxe/SecureBootConfigImpl.c
SecurityPkg/VariableAuthenticated/SecureBootConfigDxe/SecureBootConfigImpl.h