Reference patch set: https://patchwork.ozlabs.org/project/uboot/list/?series=411513&state=* Hopefully, other boards using same uboot-version can benefit from the added support. **Note for Maintainers - to enable KASLR seed, you need:** - `CONFIG_RANDOMIZE_BASE=y` configured in your kernel .config - `CONFIG_CMD_KASLRSEED=y` and` CONFIG_DM_RNG=y` configure in your u-boot .config - exposed crypto and rng nodes in you board's device-tree - `kasrlseed` command before kernel boot in your boot.cmd - `CONFIG_SECURITY_DMESG_RESTRICT=y` in kernel .config is also advisable * KASRL-supported u-boot 2024.07 for everyone: - move /chosen/kaslr-seed support patchset to general 2024.07 BOOTPATCHDIR - attach nanopi-r5c and oprangepi5-plus BOOTPACHDIR to patches/uboot/v2024.07 general dir * u-boot: patch nanopi-r5c-rk3568_defconfig and orangepi-5-plus-rk3588_defconfig to enable KASLR * rewrite-uboot-patches nanopi-r5c/orangepi5-plus * patches: uboot: Improve kaslrseed support for v2024.07 --------- Co-authored-by: ColorfulRhino <131405023+ColorfulRhino@users.noreply.github.com> |
||
|---|---|---|
| .. | ||
| legacy | ||
| u-boot-meson-s4t7 | ||
| u-boot-qemu-x86 | ||
| u-boot-radxa-latest | ||
| u-boot-rockchip64 | ||
| u-boot-rockchip64-v2022.04 | ||
| u-boot-sunxi | ||
| u-boot-sunxi-crust | ||
| u-boot-tqma | ||
| v2020.04 | ||
| v2022.01 | ||
| v2022.07 | ||
| v2022.10 | ||
| v2023.01 | ||
| v2023.07.02 | ||
| v2023.10 | ||
| v2024.01 | ||
| v2024.04 | ||
| v2024.07 | ||