#11682 NORM 1.75-fi: Corrupted bootfw files are fatal to secure boot; ecfw updates are not

Zarro Boogs per Child bugtracker at laptop.org
Thu Mar 8 10:20:19 EST 2012


#11682: Corrupted bootfw files are fatal to secure boot; ecfw updates are not
-------------------------------------------+--------------------------------
           Reporter:  greenfeld            |       Owner:  wmb at firmworks.com                
               Type:  defect               |      Status:  new                              
           Priority:  normal               |   Milestone:  1.75-firmware                    
          Component:  ofw - open firmware  |     Version:  Development build as of this date
         Resolution:                       |    Keywords:                                   
        Next_action:  review               |    Verified:  0                                
Deployment_affected:                       |   Blockedby:                                   
           Blocking:                       |  
-------------------------------------------+--------------------------------

Comment(by greenfeld):

 The ecfw.zip file used was a copy of 4.0.4.02 signed with a custom key &
 the obc-sign-fw script, used for testing #11061.

 I downgraded one minor revision to force a secured XO-1.75 to load it
 again from this file by removing external power (to avoid using the copy
 in OFW, which is looked at first) and reapplying it before the ecfw.zip
 file was read.

 The ecfw.zip file is not used in any known current OS build.  In most
 cases deployments likely will just include the bootfw.zip file.

-- 
Ticket URL: <http://dev.laptop.org/ticket/11682#comment:5>
One Laptop Per Child <http://laptop.org/>
OLPC bug tracking system


More information about the Bugs mailing list