[PATCH] platform/x86: Export LPC attributes for the system SPI chip

Andy Shevchenko andy.shevchenko at gmail.com
Wed May 6 16:29:04 UTC 2020


On Wed, May 6, 2020 at 6:55 PM Richard Hughes <hughsient at gmail.com> wrote:
>
> Export standard LPC configuration values from various LPC/eSPI
> controllers. This allows userspace components such as fwupd to
> verify the most basic SPI protections are set correctly.
> For instance, checking BIOSWE is disabled and BLE is enabled.
>
> More cutting-edge checks (e.g. PRx and BootGuard) can be added
> once the basics are in place. Exporting these values from the
> kernel allows us to report the security level of the platform
> without rebooting and running an unsigned EFI binary like
> chipsec.
>

Isn't it covered by Intel SPI NOR driver?

-- 
With Best Regards,
Andy Shevchenko



More information about the Linux-security-module-archive mailing list