-
Notifications
You must be signed in to change notification settings - Fork 716
[nrf fromlist] cmake: mcuboot: SHA512/pure image signing #3074
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
2769fac to
bcb8673
Compare
cmake/mcuboot.cmake
Outdated
| endif() | ||
|
|
||
| # Set proper hash calculation algorithm for signing | ||
| if(CONFIG_MCUBOOT_BOOTLOADER_USES_SHA512 AND NOT CONFIG_MCUBOOT_BOOTLOADER_SIGNATURE_TYPE_PURE) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
If found better, you may change the order of ifs.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
done
8601d86 to
ca746d8
Compare
9f6a64e to
afb0f66
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
move this (and config MCUBOOT_BOOTLOADER_USES_SHA512) upstream
Wasn't there a reason for |
That should not have been added to ncs at all, it's not ncs specific and just causes issues in upmerges with conflicts |
afb0f66 to
eea08e1
Compare
f433fae to
7bf019c
Compare
done |
7bf019c to
f774c89
Compare
scripts/ci/check_compliance.py
Outdated
| "MCUBOOT_BOOTLOADER_SIGNATURE_TYPE_PURE", # Used in mcuboot.cmake | ||
| "MCUBOOT_BOOTLOADER_USES_SHA512", # Used in mcuboot.cmake |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
remove as per upstream pr
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
done
cf3c4b1 to
fc881c1
Compare
e80496c to
9e78a04
Compare
9e78a04 to
f4a9178
Compare
This reverts commit 6b37917. Changes were moved to upstream in PR #93813. Signed-off-by: Michal Kozikowski <[email protected]>
Update signing script to use proper arguments for imgtool when SHA512 or pure signature is needed. Signed-off-by: Michal Kozikowski <[email protected]> (cherry picked from commit 6c72cd3)
f4a9178 to
1a1f36f
Compare
Update signing script to use proper arguments for imgtool when SHA512 or pure signature is needed.
Upstream PR #: 93813