trustfence: generalize u-boot environment encryption configuration

Signed-off-by: Mike Engel <Mike.Engel@digi.com>
(cherry picked from commit cd9a79152866ed2fcc91a2316d6a4f9eb3e72266)
(cherry picked from commit eb3d6e0355)
This commit is contained in:
Mike Engel 2026-03-26 17:53:11 +01:00
parent c5dc142d65
commit a16ad0fd2d
1 changed files with 1 additions and 4 deletions

View File

@ -266,10 +266,7 @@ python () {
d.setVar("TRUSTFENCE_SIGN_ARTIFACTS", "0")
if (d.getVar("TRUSTFENCE_ENCRYPT_ENVIRONMENT") == "1"):
if (d.getVar("DEY_SOC_VENDOR") == "NXP"):
d.appendVar("UBOOT_TF_CONF", "CONFIG_ENV_AES=y CONFIG_ENV_AES_CAAM_KEY=y CONFIG_ENV_ENCRYPT=y ")
elif (d.getVar("DEY_SOC_VENDOR") == "STM"):
d.appendVar("UBOOT_TF_CONF", "CONFIG_ENV_AES_CCMP1=y ")
d.appendVar("UBOOT_TF_CONF", "CONFIG_ENV_ENCRYPT=y ")
# Provide sane default values for SWUPDATE class in case Trustfence is enabled
if (d.getVar("TRUSTFENCE_SIGN") == "1"):