diff options
author | Vadim Sukhomlinov <sukhomlinov@google.com> | 2020-06-15 15:10:51 -0700 |
---|---|---|
committer | Commit Bot <commit-bot@chromium.org> | 2020-07-02 02:26:18 +0000 |
commit | 5f921bc00db9f9b1c8cee87cceb420ab46af857b (patch) | |
tree | e8f937ef47f5a87816e92e879c361819dcbf4419 /board/cr50/board.h | |
parent | acbcdd851d89a97fd2c9fd77a06951d010926927 (diff) | |
download | chrome-ec-5f921bc00db9f9b1c8cee87cceb420ab46af857b.tar.gz |
fips: introduce FIPS & policy power-up known-answer tests
Add invocation of power-up known-answer tests (KATs) on power-on
and after failures, while avoiding power-up tests on wake from sleep.
Added console & vendor commands to report FIPS status, run tests,
simulate errors.
BUG=b:138577539
TEST=manual; check console
fips on, fips test, fips sha, fips trng
will add tpmtest for vendor command
Signed-off-by: Vadim Sukhomlinov <sukhomlinov@google.com>
Change-Id: I58790d0637fda683c4b6187ba091edf08757f8ee
Reviewed-on: https://chromium-review.googlesource.com/c/chromiumos/platform/ec/+/2262055
Reviewed-by: Vadim Sukhomlinov <sukhomlinov@chromium.org>
Reviewed-by: Vadim Bendebury <vbendeb@chromium.org>
Tested-by: Vadim Sukhomlinov <sukhomlinov@chromium.org>
Commit-Queue: Vadim Sukhomlinov <sukhomlinov@chromium.org>
Auto-Submit: Vadim Sukhomlinov <sukhomlinov@chromium.org>
Diffstat (limited to 'board/cr50/board.h')
-rw-r--r-- | board/cr50/board.h | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/board/cr50/board.h b/board/cr50/board.h index 2b5ec7f5f7..5ebbd72a99 100644 --- a/board/cr50/board.h +++ b/board/cr50/board.h @@ -89,6 +89,9 @@ /* Also use the cr50 as a second factor authentication */ #define CONFIG_U2F +#undef CONFIG_FIPS_RSA2048 +#undef CONFIG_FIPS_SW_HMAC_DRBG + /* USB configuration */ #define CONFIG_USB #define CONFIG_USB_CONSOLE_STREAM |