summaryrefslogtreecommitdiff
path: root/futility/futility_options.h
diff options
context:
space:
mode:
authorJakub Czapiga <jacz@semihalf.com>2022-07-04 12:34:28 +0200
committerChromeos LUCI <chromeos-scoped@luci-project-accounts.iam.gserviceaccount.com>2022-07-22 07:46:32 +0000
commit64dd01225f64d6745a008d91fba3fcac2f1920bd (patch)
tree6d1bb9a194c763284a8d2655853b212ade295cd7 /futility/futility_options.h
parent499b1814a76303b332c49dd5efb2c84e30b973ba (diff)
downloadvboot-64dd01225f64d6745a008d91fba3fcac2f1920bd.tar.gz
futility: Add --keyset option to sign command for BIOS and kernelstabilize-14998.Bfactory-foobar-15000.B
This patch adds --keyset option for sign command for BIOS_IMAGE, RAW_FIRMWARE, RAW_KERNEL and KERN_PREAMBLE file types. The default value of this option is '/usr/share/vboot/devkeys'. It allows futility to load public and private keys, and keyblocks from under this path, when they were not provided manually using their respective options. Files loaded by default for BIOS_IMAGE and RAW_FIRMWARE: - ${keysetdir}/firmware_data_key.vbprivk - ${keysetdir}/firmware.keyblock - ${keysetdir}/kernel_subkey.vbpubk Files loaded by default for RAW_KERNEL: - ${keysetdir}/kernel_data_key.vbprivk - ${keysetdir}/kernel.keyblock File loaded by default for KERN_PREAMBLE: - ${keysetdir}/kernel_data_key.vbprivk BUG=none BRANCH=none TEST=make runfutiltests Signed-off-by: Jakub Czapiga <jacz@semihalf.com> Change-Id: Ic4026d501d88e0de7d2c6f52c7494c639d08bd15 Reviewed-on: https://chromium-review.googlesource.com/c/chromiumos/platform/vboot_reference/+/3740601 Auto-Submit: Jakub Czapiga <czapiga@google.com> Reviewed-by: Julius Werner <jwerner@chromium.org> Commit-Queue: Julius Werner <jwerner@chromium.org> Tested-by: Jakub Czapiga <czapiga@google.com>
Diffstat (limited to 'futility/futility_options.h')
-rw-r--r--futility/futility_options.h1
1 files changed, 1 insertions, 0 deletions
diff --git a/futility/futility_options.h b/futility/futility_options.h
index da839586..32f240a5 100644
--- a/futility/futility_options.h
+++ b/futility/futility_options.h
@@ -34,6 +34,7 @@ struct sign_option_s {
struct vb2_private_key *signprivate;
struct vb2_keyblock *keyblock;
struct vb2_packed_key *kernel_subkey;
+ const char *keysetdir;
uint32_t version;
int version_specified;
uint32_t flags;