diff options
author | Randall Spangler <rspangler@chromium.org> | 2015-05-19 12:45:20 -0700 |
---|---|---|
committer | ChromeOS Commit Bot <chromeos-commit-bot@chromium.org> | 2015-05-22 01:21:59 +0000 |
commit | b87d1ec11813e0f75dafd15fa0a309b506208bc6 (patch) | |
tree | ea7954c041ddd762b2e1156c0cccfd6e3429a536 /firmware/lib20/api.c | |
parent | 2d25e837ccc1c4f3123fedc056a396b3e6e3aa5f (diff) | |
download | vboot-b87d1ec11813e0f75dafd15fa0a309b506208bc6.tar.gz |
vboot2: Split keyblock checking and signature validation
This is necessary for the next change, which adds keyblock hash checking.
Also clean up some other assorted comments, and move the diagnostic
check of root key to see if it's the checked-in one earlier in
firmware preamble validation so it's closer to where the root key is
loaded.
No functional or higher-level API changes; just shuffling around code
under the covers.
BUG=chromium:487699
BRANCH=none
TEST=make -j runtests
Change-Id: Ibc3960a4d882dc2ad8684e235db4b9d066eac080
Signed-off-by: Randall Spangler <rspangler@chromium.org>
Reviewed-on: https://chromium-review.googlesource.com/272223
Reviewed-by: Bill Richardson <wfrichar@chromium.org>
Diffstat (limited to 'firmware/lib20/api.c')
-rw-r--r-- | firmware/lib20/api.c | 8 |
1 files changed, 8 insertions, 0 deletions
diff --git a/firmware/lib20/api.c b/firmware/lib20/api.c index 55c59ead..bee93285 100644 --- a/firmware/lib20/api.c +++ b/firmware/lib20/api.c @@ -77,6 +77,14 @@ int vb2api_init_hash(struct vb2_context *ctx, uint32_t tag, uint32_t *size) } /* + * Work buffer now contains: + * - vb2_shared_data + * - packed firmware data key + * - firmware preamble + * - hash data + */ + + /* * Unpack the firmware data key to see which hashing algorithm we * should use. * |