diff options
| author | Alex Bennée | 2022-01-05 14:49:56 +0100 |
|---|---|---|
| committer | Alex Bennée | 2022-01-18 17:42:42 +0100 |
| commit | 33973e1e1f88b7588fe9629645e279ff2c6ca1c4 (patch) | |
| tree | bddb1128cb4c4346513d2744a5fc413b02bce852 /monitor | |
| parent | tests/docker: add libfuse3 development headers (diff) | |
| download | qemu-33973e1e1f88b7588fe9629645e279ff2c6ca1c4.tar.gz qemu-33973e1e1f88b7588fe9629645e279ff2c6ca1c4.tar.xz qemu-33973e1e1f88b7588fe9629645e279ff2c6ca1c4.zip | |
hw/arm: add control knob to disable kaslr_seed via DTB
Generally a guest needs an external source of randomness to properly
enable things like address space randomisation. However in a trusted
boot environment where the firmware will cryptographically verify
components having random data in the DTB will cause verification to
fail. Add a control knob so we can prevent this being added to the
system DTB.
Signed-off-by: Alex Bennée <alex.bennee@linaro.org>
Tested-by: Heinrich Schuchardt <xypron.glpk@gmx.de>
Acked-by: Ilias Apalodimas <ilias.apalodimas@linaro.org>
Acked-by: Jerome Forissier <jerome@forissier.org>
Reviewed-by: Andrew Jones <drjones@redhat.com>
Message-Id: <20220105135009.1584676-22-alex.bennee@linaro.org>
Diffstat (limited to 'monitor')
0 files changed, 0 insertions, 0 deletions
