From 1650cc973a795e1637f1c7948b615125d4acf79e Mon Sep 17 00:00:00 2001 From: Hector Palacios Date: Thu, 17 Aug 2023 08:16:04 +0200 Subject: [PATCH] ccmp15: force set TRUSTFENCE_KEY_INDEX to "0" The STM32MP15 SoC can only use one sign key. Forcibly set TRUSTFENCE_KEY_INDEX on the machine conf so that it cannot be overriden by mistake on the local.conf. Signed-off-by: Hector Palacios --- meta-digi-arm/conf/machine/ccmp15-dvk.conf | 3 +++ 1 file changed, 3 insertions(+) diff --git a/meta-digi-arm/conf/machine/ccmp15-dvk.conf b/meta-digi-arm/conf/machine/ccmp15-dvk.conf index 438b46414..9d23122e2 100644 --- a/meta-digi-arm/conf/machine/ccmp15-dvk.conf +++ b/meta-digi-arm/conf/machine/ccmp15-dvk.conf @@ -168,6 +168,9 @@ BOOTABLE_ARTIFACTS = " \ # TRUSTFENCE basic support # Alternatively, uncommment to enable the console with the specified GPIO # TRUSTFENCE_CONSOLE_GPIO_ENABLE_NAME ?= "GPIOB6" +# +# The CCMP15 can only use key 0. This setting cannot be overriden. +TRUSTFENCE_KEY_INDEX = "0" # Default overlayfs_etc mount point and type OVERLAYFS_ETC_MOUNT_POINT ?= "/mnt/data"