Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Distribute heads updates via https://fwupd.org/ #26

Closed
jakobjakobson13 opened this issue Oct 17, 2023 · 2 comments
Closed

Distribute heads updates via https://fwupd.org/ #26

jakobjakobson13 opened this issue Oct 17, 2023 · 2 comments

Comments

@jakobjakobson13
Copy link

Dear developers,

if it's technically possible, could you please distribute heads updates via https://fwupd.org ?

Thanks and bye
Jakob

@daringer
Copy link
Collaborator

On a first glance I believe this is not possible - more or less by design. Measured boot is "measuring" the firmware (HEADS) image and verifies this very firmware image during each boot process. If some outside entity (i.e., the OS via fwup) would update the firmware image, then for HEADS during the next boot it would look like the firmware has changed. Although in theory it might be possible to update the needed information from within the OS, too. I am not aware of any tooling which does so...

So under the line: sorry, this won't work.

@tlaurion
Copy link

tlaurion commented Oct 22, 2023

The idea behind fwup and coreboot in case of heads is to drop firmware payload under /boot and have Heads pickup and verify firmware before proposing to flash an upgrade through inner flashrom

linuxboot#834

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants