Add bootscript support to esbc_validate.
authorgaurav rana <gaurav.rana@freescale.com>
Tue, 10 Mar 2015 08:38:50 +0000 (14:08 +0530)
committerYork Sun <yorksun@freescale.com>
Tue, 21 Apr 2015 17:19:19 +0000 (10:19 -0700)
commit98cb0efde8aaed200750e6d75fa8e5fc01dcd8f4
treebc4bd9462e516ce795e51b633f71f0800f3c4b73
parent997c67d98b2230d3d17ed8143e490067d640b75b
Add bootscript support to esbc_validate.

1. Default environment will be used for secure boot flow
 which can't be edited or saved.
2. Command for secure boot is predefined in the default
 environment which will run on autoboot (and autoboot is
 the only option allowed in case of secure boot) and it
 looks like this:
 #define CONFIG_SECBOOT \
 "setenv bs_hdraddr 0xe8e00000;"                 \
 "esbc_validate $bs_hdraddr;"                    \
 "source $img_addr;"                             \
 "esbc_halt;"
 #endif
3. Boot Script can contain esbc_validate commands and bootm command.
 Uboot source command used in default secure boot command will
 run the bootscript.
4. Command esbc_halt added to ensure either bootm executes
 after validation of images or core should just spin.

Signed-off-by: Ruchika Gupta <ruchika.gupta@freescale.com>
Signed-off-by: Gaurav Rana <gaurav.rana@freescale.com>
Reviewed-by: York Sun <yorksun@freescale.com>
arch/arm/include/asm/fsl_secure_boot.h [new file with mode: 0644]
arch/powerpc/include/asm/fsl_secure_boot.h
board/freescale/common/cmd_esbc_validate.c
include/config_fsl_secboot.h [new file with mode: 0644]
include/configs/ls1021aqds.h