mirror of
https://github.com/linuxboot/heads.git
synced 2024-12-23 14:52:27 +00:00
a221321b6a
EC signatures requires that the digest has the corresponding length. Removing the hardcoded sha2-256 hash function and adding support of sha2-384 and sha2-512 should allow using EC crypto.
372 lines
9.8 KiB
Plaintext
372 lines
9.8 KiB
Plaintext
CONFIG_LOCALVERSION="-heads"
|
|
# CONFIG_LOCALVERSION_AUTO is not set
|
|
CONFIG_KERNEL_XZ=y
|
|
# CONFIG_SWAP is not set
|
|
# CONFIG_CROSS_MEMORY_ATTACH is not set
|
|
# CONFIG_USELIB is not set
|
|
CONFIG_NO_HZ_IDLE=y
|
|
CONFIG_LOG_BUF_SHIFT=18
|
|
CONFIG_CGROUPS=y
|
|
CONFIG_MEMCG=y
|
|
CONFIG_BLK_CGROUP=y
|
|
CONFIG_CGROUP_SCHED=y
|
|
CONFIG_CGROUP_PIDS=y
|
|
CONFIG_CGROUP_RDMA=y
|
|
CONFIG_CGROUP_FREEZER=y
|
|
CONFIG_CPUSETS=y
|
|
CONFIG_CGROUP_DEVICE=y
|
|
CONFIG_CGROUP_CPUACCT=y
|
|
CONFIG_CGROUP_PERF=y
|
|
CONFIG_CGROUP_DEBUG=y
|
|
CONFIG_BLK_DEV_INITRD=y
|
|
CONFIG_INITRAMFS_SOURCE="../../../blobs/dev.cpio"
|
|
# CONFIG_RD_GZIP is not set
|
|
# CONFIG_RD_BZIP2 is not set
|
|
# CONFIG_RD_LZMA is not set
|
|
# CONFIG_RD_LZO is not set
|
|
# CONFIG_RD_LZ4 is not set
|
|
CONFIG_CC_OPTIMIZE_FOR_SIZE=y
|
|
# CONFIG_SGETMASK_SYSCALL is not set
|
|
# CONFIG_SYSFS_SYSCALL is not set
|
|
# CONFIG_BASE_FULL is not set
|
|
# CONFIG_SIGNALFD is not set
|
|
# CONFIG_TIMERFD is not set
|
|
# CONFIG_AIO is not set
|
|
# CONFIG_MEMBARRIER is not set
|
|
CONFIG_EMBEDDED=y
|
|
# CONFIG_VM_EVENT_COUNTERS is not set
|
|
# CONFIG_SLUB_DEBUG is not set
|
|
# CONFIG_COMPAT_BRK is not set
|
|
CONFIG_JUMP_LABEL=y
|
|
CONFIG_CC_STACKPROTECTOR_STRONG=y
|
|
CONFIG_MODULES=y
|
|
# CONFIG_IOSCHED_DEADLINE is not set
|
|
# CONFIG_IOSCHED_CFQ is not set
|
|
CONFIG_SMP=y
|
|
# CONFIG_X86_EXTENDED_PLATFORM is not set
|
|
CONFIG_PROCESSOR_SELECT=y
|
|
# CONFIG_CPU_SUP_CENTAUR is not set
|
|
CONFIG_PREEMPT_VOLUNTARY=y
|
|
CONFIG_X86_REROUTE_FOR_BROKEN_BOOT_IRQS=y
|
|
# CONFIG_X86_MCE_AMD is not set
|
|
# CONFIG_PERF_EVENTS_INTEL_RAPL is not set
|
|
CONFIG_X86_MSR=y
|
|
# CONFIG_SPARSEMEM_VMEMMAP is not set
|
|
# CONFIG_COMPACTION is not set
|
|
# CONFIG_BOUNCE is not set
|
|
CONFIG_DEFAULT_MMAP_MIN_ADDR=65536
|
|
CONFIG_X86_PMEM_LEGACY=y
|
|
# CONFIG_SECCOMP is not set
|
|
CONFIG_KEXEC=y
|
|
CONFIG_KEXEC_FILE=y
|
|
# CONFIG_RANDOMIZE_BASE is not set
|
|
CONFIG_PHYSICAL_ALIGN=0x1000000
|
|
CONFIG_CMDLINE_BOOL=y
|
|
CONFIG_CMDLINE="nosmp debug"
|
|
# CONFIG_MODIFY_LDT_SYSCALL is not set
|
|
# CONFIG_SUSPEND is not set
|
|
CONFIG_ACPI_DEBUG=y
|
|
CONFIG_ACPI_PCI_SLOT=y
|
|
CONFIG_ACPI_CUSTOM_METHOD=y
|
|
CONFIG_ACPI_CONFIGFS=y
|
|
CONFIG_CPU_FREQ_DEFAULT_GOV_POWERSAVE=y
|
|
CONFIG_X86_ACPI_CPUFREQ=y
|
|
CONFIG_INTEL_IDLE=y
|
|
CONFIG_PCI_MSI=y
|
|
# CONFIG_HT_IRQ is not set
|
|
CONFIG_PCI_IOV=y
|
|
CONFIG_PCI_PRI=y
|
|
# CONFIG_COREDUMP is not set
|
|
CONFIG_IA32_EMULATION=y
|
|
CONFIG_NET=y
|
|
CONFIG_PACKET=y
|
|
CONFIG_UNIX=y
|
|
CONFIG_INET=y
|
|
CONFIG_SYN_COOKIES=y
|
|
# CONFIG_INET_XFRM_MODE_TRANSPORT is not set
|
|
# CONFIG_INET_XFRM_MODE_TUNNEL is not set
|
|
# CONFIG_INET_XFRM_MODE_BEET is not set
|
|
# CONFIG_INET_DIAG is not set
|
|
# CONFIG_IPV6 is not set
|
|
# CONFIG_WIRELESS is not set
|
|
# CONFIG_UEVENT_HELPER is not set
|
|
CONFIG_DEVTMPFS=y
|
|
CONFIG_DEVTMPFS_MOUNT=y
|
|
# CONFIG_STANDALONE is not set
|
|
# CONFIG_FIRMWARE_IN_KERNEL is not set
|
|
# CONFIG_ALLOW_DEV_COREDUMP is not set
|
|
CONFIG_BLK_DEV_LOOP=y
|
|
CONFIG_BLK_DEV_RAM=y
|
|
CONFIG_BLK_DEV_RAM_SIZE=65536
|
|
CONFIG_EEPROM_93CX6=m
|
|
CONFIG_INTEL_MEI_ME=m
|
|
CONFIG_INTEL_MEI_TXE=m
|
|
CONFIG_RAID_ATTRS=y
|
|
CONFIG_SCSI=y
|
|
CONFIG_BLK_DEV_SD=y
|
|
CONFIG_BLK_DEV_SR=y
|
|
CONFIG_CHR_DEV_SG=y
|
|
CONFIG_SCSI_CONSTANTS=y
|
|
CONFIG_SCSI_LOGGING=y
|
|
CONFIG_SCSI_SCAN_ASYNC=y
|
|
CONFIG_SCSI_SPI_ATTRS=y
|
|
CONFIG_SCSI_SAS_LIBSAS=y
|
|
CONFIG_ISCSI_TCP=y
|
|
CONFIG_MEGARAID_NEWGEN=y
|
|
CONFIG_MEGARAID_MM=m
|
|
CONFIG_MEGARAID_MAILBOX=m
|
|
CONFIG_MEGARAID_SAS=m
|
|
CONFIG_SCSI_GDTH=m
|
|
CONFIG_SCSI_ISCI=m
|
|
CONFIG_SCSI_DH=y
|
|
CONFIG_ATA=m
|
|
CONFIG_SATA_AHCI=m
|
|
CONFIG_SATA_AHCI_PLATFORM=m
|
|
# CONFIG_ATA_SFF is not set
|
|
CONFIG_MD=y
|
|
CONFIG_BLK_DEV_DM=y
|
|
CONFIG_DM_CRYPT=y
|
|
CONFIG_DM_THIN_PROVISIONING=y
|
|
CONFIG_DM_VERITY=y
|
|
CONFIG_DM_VERITY_FEC=y
|
|
CONFIG_NETDEVICES=y
|
|
# CONFIG_NET_VENDOR_3COM is not set
|
|
# CONFIG_NET_VENDOR_ADAPTEC is not set
|
|
# CONFIG_NET_VENDOR_AGERE is not set
|
|
# CONFIG_NET_VENDOR_ALTEON is not set
|
|
# CONFIG_NET_VENDOR_AMAZON is not set
|
|
# CONFIG_NET_VENDOR_AMD is not set
|
|
# CONFIG_NET_VENDOR_ARC is not set
|
|
# CONFIG_NET_VENDOR_ATHEROS is not set
|
|
# CONFIG_NET_CADENCE is not set
|
|
# CONFIG_NET_VENDOR_BROADCOM is not set
|
|
# CONFIG_NET_VENDOR_BROCADE is not set
|
|
# CONFIG_NET_VENDOR_CAVIUM is not set
|
|
# CONFIG_NET_VENDOR_CHELSIO is not set
|
|
# CONFIG_NET_VENDOR_CISCO is not set
|
|
# CONFIG_NET_VENDOR_DEC is not set
|
|
# CONFIG_NET_VENDOR_DLINK is not set
|
|
# CONFIG_NET_VENDOR_EMULEX is not set
|
|
# CONFIG_NET_VENDOR_EZCHIP is not set
|
|
# CONFIG_NET_VENDOR_EXAR is not set
|
|
# CONFIG_NET_VENDOR_HP is not set
|
|
CONFIG_E1000=m
|
|
CONFIG_E1000E=m
|
|
CONFIG_IGB=m
|
|
# CONFIG_NET_VENDOR_I825XX is not set
|
|
# CONFIG_NET_VENDOR_MARVELL is not set
|
|
CONFIG_MLX4_EN=m
|
|
# CONFIG_NET_VENDOR_MICREL is not set
|
|
# CONFIG_NET_VENDOR_MYRI is not set
|
|
# CONFIG_NET_VENDOR_NATSEMI is not set
|
|
# CONFIG_NET_VENDOR_NETRONOME is not set
|
|
# CONFIG_NET_VENDOR_NVIDIA is not set
|
|
# CONFIG_NET_VENDOR_OKI is not set
|
|
# CONFIG_NET_PACKET_ENGINE is not set
|
|
# CONFIG_NET_VENDOR_QLOGIC is not set
|
|
# CONFIG_NET_VENDOR_QUALCOMM is not set
|
|
# CONFIG_NET_VENDOR_REALTEK is not set
|
|
# CONFIG_NET_VENDOR_RENESAS is not set
|
|
# CONFIG_NET_VENDOR_RDC is not set
|
|
# CONFIG_NET_VENDOR_ROCKER is not set
|
|
# CONFIG_NET_VENDOR_SAMSUNG is not set
|
|
# CONFIG_NET_VENDOR_SEEQ is not set
|
|
# CONFIG_NET_VENDOR_SILAN is not set
|
|
# CONFIG_NET_VENDOR_SIS is not set
|
|
# CONFIG_NET_VENDOR_SMSC is not set
|
|
# CONFIG_NET_VENDOR_STMICRO is not set
|
|
# CONFIG_NET_VENDOR_SUN is not set
|
|
# CONFIG_NET_VENDOR_TEHUTI is not set
|
|
# CONFIG_NET_VENDOR_TI is not set
|
|
# CONFIG_NET_VENDOR_VIA is not set
|
|
# CONFIG_NET_VENDOR_WIZNET is not set
|
|
# CONFIG_NET_VENDOR_SYNOPSYS is not set
|
|
# CONFIG_USB_NET_DRIVERS is not set
|
|
# CONFIG_WLAN is not set
|
|
# CONFIG_INPUT_MOUSE is not set
|
|
# CONFIG_SERIO_SERPORT is not set
|
|
# CONFIG_LEGACY_PTYS is not set
|
|
CONFIG_SERIAL_8250=y
|
|
# CONFIG_SERIAL_8250_DEPRECATED_OPTIONS is not set
|
|
CONFIG_SERIAL_8250_CONSOLE=y
|
|
# CONFIG_SERIAL_8250_PCI is not set
|
|
CONFIG_SERIAL_8250_EXTENDED=y
|
|
# CONFIG_SERIAL_8250_LPSS is not set
|
|
# CONFIG_SERIAL_8250_MID is not set
|
|
CONFIG_TTY_PRINTK=y
|
|
CONFIG_HW_RANDOM=y
|
|
CONFIG_HW_RANDOM_TIMERIOMEM=m
|
|
CONFIG_HW_RANDOM_INTEL=m
|
|
CONFIG_HW_RANDOM_AMD=m
|
|
CONFIG_HW_RANDOM_VIA=m
|
|
CONFIG_HW_RANDOM_TPM=m
|
|
CONFIG_NVRAM=y
|
|
CONFIG_TCG_TPM=y
|
|
CONFIG_TCG_TIS=y
|
|
CONFIG_TCG_TIS_I2C_ATMEL=y
|
|
CONFIG_TCG_TIS_I2C_INFINEON=y
|
|
CONFIG_TCG_TIS_I2C_NUVOTON=y
|
|
CONFIG_TCG_NSC=y
|
|
CONFIG_TCG_ATMEL=y
|
|
CONFIG_TCG_INFINEON=y
|
|
CONFIG_TCG_CRB=y
|
|
CONFIG_TCG_TIS_ST33ZP24_I2C=y
|
|
# CONFIG_I2C_COMPAT is not set
|
|
CONFIG_I2C_CHARDEV=y
|
|
CONFIG_I2C_MUX=m
|
|
CONFIG_I2C_MUX_PCA9541=m
|
|
CONFIG_I2C_MUX_REG=m
|
|
# CONFIG_I2C_HELPER_AUTO is not set
|
|
CONFIG_I2C_I801=y
|
|
CONFIG_I2C_SCMI=y
|
|
CONFIG_I2C_SLAVE=y
|
|
CONFIG_PTP_1588_CLOCK=y
|
|
# CONFIG_HWMON is not set
|
|
CONFIG_X86_PKG_TEMP_THERMAL=y
|
|
CONFIG_INT340X_THERMAL=y
|
|
CONFIG_INTEL_PCH_THERMAL=y
|
|
CONFIG_MFD_SYSCON=y
|
|
# CONFIG_VGA_ARB is not set
|
|
CONFIG_DRM=y
|
|
CONFIG_DRM_BOCHS=y
|
|
CONFIG_FRAMEBUFFER_CONSOLE=y
|
|
CONFIG_USB_HID=m
|
|
CONFIG_USB=y
|
|
CONFIG_USB_XHCI_HCD=m
|
|
CONFIG_USB_XHCI_PLATFORM=m
|
|
CONFIG_USB_EHCI_HCD=m
|
|
CONFIG_USB_EHCI_HCD_PLATFORM=m
|
|
CONFIG_USB_STORAGE=m
|
|
CONFIG_RTC_CLASS=y
|
|
# CONFIG_X86_PLATFORM_DEVICES is not set
|
|
CONFIG_INTEL_IOMMU=y
|
|
CONFIG_INTEL_IOMMU_SVM=y
|
|
CONFIG_GENERIC_PHY=y
|
|
# CONFIG_BLK_DEV_PMEM is not set
|
|
# CONFIG_ND_BLK is not set
|
|
# CONFIG_BTT is not set
|
|
# CONFIG_DMIID is not set
|
|
CONFIG_DMI_SYSFS=y
|
|
CONFIG_GOOGLE_FIRMWARE=y
|
|
CONFIG_GOOGLE_MEMCONSOLE_X86_LEGACY=y
|
|
# CONFIG_EXT2_FS is not set
|
|
CONFIG_EXT4_FS=y
|
|
CONFIG_EXT4_USE_FOR_EXT2=y
|
|
CONFIG_XFS_FS=y
|
|
# CONFIG_DNOTIFY is not set
|
|
# CONFIG_INOTIFY_USER is not set
|
|
CONFIG_ISO9660_FS=y
|
|
CONFIG_JOLIET=y
|
|
CONFIG_MSDOS_FS=y
|
|
CONFIG_VFAT_FS=y
|
|
# CONFIG_PROC_SYSCTL is not set
|
|
# CONFIG_PROC_PAGE_MONITOR is not set
|
|
CONFIG_TMPFS=y
|
|
# CONFIG_MISC_FILESYSTEMS is not set
|
|
# CONFIG_NETWORK_FILESYSTEMS is not set
|
|
CONFIG_NLS_DEFAULT="utf8"
|
|
CONFIG_NLS_CODEPAGE_437=y
|
|
CONFIG_NLS_ISO8859_1=y
|
|
CONFIG_NLS_UTF8=y
|
|
CONFIG_PRINTK_TIME=y
|
|
CONFIG_MESSAGE_LOGLEVEL_DEFAULT=6
|
|
CONFIG_BOOT_PRINTK_DELAY=y
|
|
CONFIG_DYNAMIC_DEBUG=y
|
|
CONFIG_DEBUG_INFO=y
|
|
CONFIG_DEBUG_INFO_DWARF4=y
|
|
CONFIG_GDB_SCRIPTS=y
|
|
# CONFIG_ENABLE_WARN_DEPRECATED is not set
|
|
# CONFIG_ENABLE_MUST_CHECK is not set
|
|
CONFIG_FRAME_WARN=1024
|
|
CONFIG_DEBUG_FS=y
|
|
CONFIG_MAGIC_SYSRQ=y
|
|
CONFIG_HARDLOCKUP_DETECTOR=y
|
|
CONFIG_WQ_WATCHDOG=y
|
|
# CONFIG_SCHED_DEBUG is not set
|
|
CONFIG_STACKTRACE=y
|
|
# CONFIG_DEBUG_BUGVERBOSE is not set
|
|
# CONFIG_RCU_TRACE is not set
|
|
# CONFIG_FTRACE is not set
|
|
# CONFIG_STRICT_DEVMEM is not set
|
|
# CONFIG_X86_VERBOSE_BOOTUP is not set
|
|
# CONFIG_DOUBLEFAULT is not set
|
|
CONFIG_IO_DELAY_0XED=y
|
|
CONFIG_OPTIMIZE_INLINING=y
|
|
# CONFIG_X86_DEBUG_FPU is not set
|
|
CONFIG_HARDENED_USERCOPY=y
|
|
CONFIG_CRYPTO_RSA=m
|
|
CONFIG_CRYPTO_USER=y
|
|
CONFIG_CRYPTO_MCRYPTD=m
|
|
CONFIG_CRYPTO_AUTHENC=m
|
|
CONFIG_CRYPTO_CCM=m
|
|
CONFIG_CRYPTO_GCM=m
|
|
CONFIG_CRYPTO_CHACHA20POLY1305=m
|
|
CONFIG_CRYPTO_CTS=m
|
|
CONFIG_CRYPTO_LRW=y
|
|
CONFIG_CRYPTO_PCBC=m
|
|
CONFIG_CRYPTO_XTS=y
|
|
CONFIG_CRYPTO_KEYWRAP=m
|
|
CONFIG_CRYPTO_CMAC=m
|
|
CONFIG_CRYPTO_HMAC=y
|
|
CONFIG_CRYPTO_XCBC=m
|
|
CONFIG_CRYPTO_VMAC=m
|
|
CONFIG_CRYPTO_CRC32C_INTEL=y
|
|
CONFIG_CRYPTO_CRC32=m
|
|
CONFIG_CRYPTO_CRC32_PCLMUL=m
|
|
CONFIG_CRYPTO_CRCT10DIF_PCLMUL=m
|
|
CONFIG_CRYPTO_POLY1305_X86_64=m
|
|
CONFIG_CRYPTO_MD4=m
|
|
CONFIG_CRYPTO_MICHAEL_MIC=m
|
|
CONFIG_CRYPTO_RMD128=m
|
|
CONFIG_CRYPTO_RMD160=m
|
|
CONFIG_CRYPTO_RMD256=m
|
|
CONFIG_CRYPTO_RMD320=m
|
|
CONFIG_CRYPTO_SHA1_SSSE3=y
|
|
CONFIG_CRYPTO_SHA256_SSSE3=y
|
|
CONFIG_CRYPTO_SHA512_SSSE3=y
|
|
CONFIG_CRYPTO_TGR192=m
|
|
CONFIG_CRYPTO_WP512=m
|
|
CONFIG_CRYPTO_GHASH_CLMUL_NI_INTEL=m
|
|
CONFIG_CRYPTO_AES_NI_INTEL=y
|
|
CONFIG_CRYPTO_ANUBIS=m
|
|
CONFIG_CRYPTO_ARC4=m
|
|
CONFIG_CRYPTO_BLOWFISH=m
|
|
CONFIG_CRYPTO_BLOWFISH_X86_64=m
|
|
CONFIG_CRYPTO_CAMELLIA=m
|
|
CONFIG_CRYPTO_CAMELLIA_AESNI_AVX2_X86_64=m
|
|
CONFIG_CRYPTO_CAST5_AVX_X86_64=m
|
|
CONFIG_CRYPTO_CAST6_AVX_X86_64=m
|
|
CONFIG_CRYPTO_DES3_EDE_X86_64=m
|
|
CONFIG_CRYPTO_FCRYPT=m
|
|
CONFIG_CRYPTO_KHAZAD=m
|
|
CONFIG_CRYPTO_SALSA20=m
|
|
CONFIG_CRYPTO_CHACHA20_X86_64=m
|
|
CONFIG_CRYPTO_SEED=m
|
|
CONFIG_CRYPTO_SERPENT_SSE2_X86_64=m
|
|
CONFIG_CRYPTO_SERPENT_AVX2_X86_64=m
|
|
CONFIG_CRYPTO_TEA=m
|
|
CONFIG_CRYPTO_TWOFISH=m
|
|
CONFIG_CRYPTO_TWOFISH_AVX_X86_64=m
|
|
CONFIG_CRYPTO_DEFLATE=m
|
|
CONFIG_CRYPTO_LZO=y
|
|
CONFIG_CRYPTO_842=m
|
|
CONFIG_CRYPTO_LZ4=m
|
|
CONFIG_CRYPTO_LZ4HC=m
|
|
CONFIG_CRYPTO_ANSI_CPRNG=m
|
|
CONFIG_CRYPTO_DRBG_HASH=y
|
|
CONFIG_CRYPTO_DRBG_CTR=y
|
|
CONFIG_CRYPTO_USER_API_HASH=y
|
|
CONFIG_CRYPTO_USER_API_SKCIPHER=y
|
|
CONFIG_CRYPTO_USER_API_RNG=y
|
|
CONFIG_CRYPTO_USER_API_AEAD=y
|
|
# CONFIG_CRYPTO_HW is not set
|
|
# CONFIG_VIRTUALIZATION is not set
|
|
CONFIG_CRC_CCITT=m
|
|
CONFIG_CRC_T10DIF=y
|
|
CONFIG_CRC_ITU_T=m
|
|
CONFIG_CRC7=m
|
|
CONFIG_CRC8=m
|
|
CONFIG_XZ_DEC_TEST=m
|
|
CONFIG_CORDIC=m
|
|
CONFIG_IRQ_POLL=y
|