This patch adds the standalone MM version of VarCheckPolicyLib.
What have been tested:
- For Traditional MM, build OVMF with "-DSECURE_BOOT_ENABLE=TRUE -DSMM_REQUIRE=TRUE",
then boot it on qemu-system-x86_64.
- For Standalone MM, build Developerbox platform(aarch64) with "-DSECURE_BOOT_ENABLE=TRUE",
then device boots fine.
Signed-off-by: Masahisa Kojima <masahisa.kojima@linaro.org>
Co-authored-by: Kun Qin <kun.q@outlook.com>
Cc: Jian J Wang <jian.j.wang@intel.com>
Cc: Hao A Wu <hao.a.wu@intel.com>
Cc: Liming Gao <gaoliming@byosoft.com.cn>
Cc: Ard Biesheuvel <ard.biesheuvel@arm.com>
Cc: Sami Mujawar <sami.mujawar@arm.com>
Cc: Jiewen Yao <jiewen.yao@intel.com>
Cc: Supreeth Venkatesh <supreeth.venkatesh@arm.com>
Cc: Bret Barkelew <Bret.Barkelew@microsoft.com>
Masahisa Kojima (1):
MdeModulePkg/VarCheckPolicyLib: implement standalone MM version
.../VarCheckPolicyLib/VarCheckPolicyLib.inf | 5 +-
....inf => VarCheckPolicyLibStandaloneMm.inf} | 23 +++++----
.../VarCheckPolicyLib/VarCheckPolicyLib.h | 42 ++++++++++++++++
.../VarCheckPolicyLib/VarCheckPolicyLib.c | 14 +++---
.../VarCheckPolicyLibStandaloneMm.c | 50 +++++++++++++++++++
.../VarCheckPolicyLibTraditional.c | 50 +++++++++++++++++++
6 files changed, 165 insertions(+), 19 deletions(-)
copy MdeModulePkg/Library/VarCheckPolicyLib/{VarCheckPolicyLib.inf => VarCheckPolicyLibStandaloneMm.inf} (51%)
create mode 100644 MdeModulePkg/Library/VarCheckPolicyLib/VarCheckPolicyLib.h
create mode 100644 MdeModulePkg/Library/VarCheckPolicyLib/VarCheckPolicyLibStandaloneMm.c
create mode 100644 MdeModulePkg/Library/VarCheckPolicyLib/VarCheckPolicyLibTraditional.c
--
2.17.1
-=-=-=-=-=-=-=-=-=-=-=-
Groups.io Links: You receive all messages sent to this group.
View/Reply Online (#68965): https://edk2.groups.io/g/devel/message/68965
Mute This Topic: https://groups.io/mt/79001232/1787277
Group Owner: devel+owner@edk2.groups.io
Unsubscribe: https://edk2.groups.io/g/devel/unsub [importer@patchew.org]
-=-=-=-=-=-=-=-=-=-=-=-