On Tue, 26 May 2020 at 04:44, Heiko Stuebner <[email protected]> wrote: > > From: Heiko Stuebner <[email protected]> > > With SPL_FIT_SIGNATURE enabled we will likely want a generated > u-boot.itb to be signed and the key stores so that the spl can > reach it. > > So add a SPL_FIT_SIGNATURE_KEY_DIR option and suitable hooks > into the Makefile to have mkimage sign the .itb and store the > used key into the spl dtb file. > > The added dependencies should make sure that the u-boot.itb > gets generated before the spl-binary gets build, so that there > is the necessary space for the key to get included. > > Signed-off-by: Heiko Stuebner <[email protected]> > Reviewed-by: Philipp Tomsich <[email protected]> > --- > changes in v2.1: > - depend on $(CONFIG_SPL_FIT_SIGNATURE)$(U_BOOT_ITS) > instead of only $(CONFIG_SPL_FIT_GENERATOR) > > Kconfig | 8 ++++++++ > Makefile | 11 ++++++++++- > 2 files changed, 18 insertions(+), 1 deletion(-) >
Reviewed-by: Simon Glass <[email protected]>

