@@ -292,7 +292,6 @@ bootutil_img_hash(struct boot_loader_state *state,
292
292
# define KEY_BUF_SIZE (SIG_BUF_SIZE + 24)
293
293
#endif /* !MCUBOOT_HW_KEY */
294
294
295
- #if !defined(CONFIG_BOOT_SIGNATURE_USING_KMU )
296
295
#if !defined(MCUBOOT_HW_KEY )
297
296
static int
298
297
bootutil_find_key (uint8_t * keyhash , uint8_t keyhash_len )
@@ -361,7 +360,6 @@ bootutil_find_key(uint8_t image_index, uint8_t *key, uint16_t key_len)
361
360
}
362
361
#endif /* !MCUBOOT_HW_KEY */
363
362
#endif /* !MCUBOOT_BUILTIN_KEY */
364
- #endif /* !defined(CONFIG_BOOT_SIGNATURE_USING_KMU) */
365
363
#endif /* EXPECTED_SIG_TLV */
366
364
367
365
/**
@@ -731,7 +729,6 @@ bootutil_img_validate(struct boot_loader_state *state,
731
729
break ;
732
730
}
733
731
#endif /* defined(EXPECTED_HASH_TLV) && !defined(MCUBOOT_SIGN_PURE) */
734
- #if !defined(CONFIG_BOOT_SIGNATURE_USING_KMU )
735
732
#ifdef EXPECTED_KEY_TLV
736
733
case EXPECTED_KEY_TLV :
737
734
{
@@ -763,18 +760,15 @@ bootutil_img_validate(struct boot_loader_state *state,
763
760
break ;
764
761
}
765
762
#endif /* EXPECTED_KEY_TLV */
766
- #endif /* !defined(CONFIG_BOOT_SIGNATURE_USING_KMU) */
767
763
#ifdef EXPECTED_SIG_TLV
768
764
case EXPECTED_SIG_TLV :
769
765
{
770
766
BOOT_LOG_DBG ("bootutil_img_validate: EXPECTED_SIG_TLV == %d" , EXPECTED_SIG_TLV );
771
- #if !defined(CONFIG_BOOT_SIGNATURE_USING_KMU )
772
767
/* Ignore this signature if it is out of bounds. */
773
768
if (key_id < 0 || key_id >= bootutil_key_cnt ) {
774
769
key_id = -1 ;
775
770
continue ;
776
771
}
777
- #endif /* !defined(CONFIG_BOOT_SIGNATURE_USING_KMU) */
778
772
if (!EXPECTED_SIG_LEN (len ) || len > sizeof (buf )) {
779
773
rc = -1 ;
780
774
goto out ;
@@ -931,7 +925,7 @@ bootutil_img_validate(struct boot_loader_state *state,
931
925
}
932
926
933
927
#ifdef EXPECTED_SIG_TLV
934
- #if !defined( CONFIG_BOOT_SIGNATURE_USING_KMU ) && defined( EXPECTED_KEY_TLV )
928
+ #ifdef EXPECTED_KEY_TLV
935
929
rc = bootutil_tlv_iter_begin (& it , hdr , fap , EXPECTED_KEY_TLV , false);
936
930
if (rc ) {
937
931
goto out ;
@@ -977,7 +971,7 @@ bootutil_img_validate(struct boot_loader_state *state,
977
971
*/
978
972
}
979
973
}
980
- #endif /* !CONFIG_BOOT_SIGNATURE_USING_KMU && EXPECTED_KEY_TLV */
974
+ #endif /* EXPECTED_KEY_TLV */
981
975
982
976
rc = bootutil_tlv_iter_begin (& it , hdr , fap , IMAGE_TLV_DECOMP_SIGNATURE , true);
983
977
if (rc ) {
@@ -1000,12 +994,10 @@ bootutil_img_validate(struct boot_loader_state *state,
1000
994
1001
995
if (type == IMAGE_TLV_DECOMP_SIGNATURE ) {
1002
996
/* Ignore this signature if it is out of bounds. */
1003
- #if !defined(CONFIG_BOOT_SIGNATURE_USING_KMU )
1004
997
if (key_id < 0 || key_id >= bootutil_key_cnt ) {
1005
998
key_id = -1 ;
1006
999
continue ;
1007
1000
}
1008
- #endif
1009
1001
1010
1002
if (!EXPECTED_SIG_LEN (len ) || len > sizeof (buf )) {
1011
1003
rc = -1 ;
0 commit comments