Skip to content

config.novacustom_nv4x, ns5x: bump localversion to 1.8.0-rc3 - #783

Open
philipanda wants to merge 961 commits into
dasharofrom
ns5x-nv4x-nump-1.8.0-rc3
Open

config.novacustom_nv4x, ns5x: bump localversion to 1.8.0-rc3#783
philipanda wants to merge 961 commits into
dasharofrom
ns5x-nv4x-nump-1.8.0-rc3

Conversation

@philipanda

Copy link
Copy Markdown
Contributor

No description provided.

aronowski and others added 30 commits May 29, 2025 15:13
Run the tests CBK001.001 and CBK002.001 from OSFV's
dasharo-compatibility/custom-boot-menu-key.robot as per the build_q35
job's coreboot.rom artifact

Signed-off-by: Kamil Aronowski <kamil.aronowski@yahoo.com>
Fixes the problem where SATA disk is not visible on V1210/V1211.

Signed-off-by: Filip Lewiński <filip.lewinski@3mdeb.com>
Adding IT8613 SIO0 to \_SB.PCI0.LPCB scope in dsdt.asl, adding
acpi directory with superio.asl identical to EHL platform.

Signed-off-by: Mateusz Maciejewski <mateusz.maciejewski@3mdeb.com>
Upstream-Status: Inappropriate (Dasharo downstream)
Change-Id: Iacee23253d2766d9f3835860d0d64d84b5bcd880
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
EDK will publish its own version of the log after parsing and
importing coreboot's log discovered through CBMEM.

Publishing is done by appending a table, so coreboot must avoid
adding corresponding log tables to let OS find a more complete one
from EDK.

Upstream-Status: Pending
Change-Id: Iec92c2b5c426ee003e81996937862d81cb4ead24
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
No functional changes.  This replaces a macro with an inline function to
make code more readable and more convenient to extend in the future.

Upstream-Status: Pending
Change-Id: I456bc3bb749a9b58fba72f5562195525e55290bf
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
This event log format option automatically selects TCG log format
depending on which TPM is present.

Upstream-Status: Pending
Change-Id: I1997396f24ff6362fe64ac56f8e61efcf2ffb0f7
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
Move this check to pre-push rather then pre-commit, to avoid the
possibility of losing longer commit message if pre-commit fails.

pre-push hook must be installed additionally to make it work (by
default, only the pre-commit hook is installed)

pre-commit install -t pre-push

Change-Id: Ie205b55a5dcab759fd1b194378d7f73bc9992b31
Signed-off-by: Maciej Pijanowski <maciej.pijanowski@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I74d9fa455260df8213afb8a92b587095e948c56b
Signed-off-by: Maciej Pijanowski <maciej.pijanowski@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Upstream-Status: Inappropriate [custom build script]
Signed-off-by: Piotr Król <piotr.krol@3mdeb.com>
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
This change look for AIRGAP environment variable and if it is set it
perform airgap build of Dasharo for Odroid H4 and its version for
Intel Boot Guard.

This is required for security, privacy and trainers who would like to
perform 100% offline build.

To make that possible couple requirements have to be fulfilled:
- repository cannot be distcleaned, because it remove all artifacts, the
  assumption is that provided repository already has all dependencies
  fetched, so only make clean is made before proceeding
- since whole process rely on mounting edk2 as volume inside Dasharo SDK
  container, workspace directory to which it would be mount needs proper
  permissions otherwise docker will create mountpoint with root
  privileges, what cause issues in further use and build process
- finally we take into consideration BUILD_TIMELESS environment
  variable, which improve testability of build process and toolchain
  change

This change was tested by:
1. cloning relevant version of edk2
2. cloning coreboot, cd coreboot
3. running checkout on ipxe:

docker run --rm --user $(id -u):$(id -g) -v $PWD:/home/coreboot/coreboot \
  ${DASHARO_SDK} \
  make -C /home/coreboot/coreboot/payloads/external/iPXE checkout

4. Build

EDK2_REPO_PATH="${PWD}/../edk2" AIRGAP=1 BUILD_TIMELESS=1 ./build.sh odroid_h4_btg
EDK2_REPO_PATH="${PWD}/../edk2" AIRGAP=1 BUILD_TIMELESS=1 ./build.sh odroid_h4

Upstream-Status: Inappropriate [custom build script]
Signed-off-by: Piotr Król <piotr.krol@3mdeb.com>
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Upstream-Status: Inappropriate [CI workflow and custom build script]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Upstream-Status: Inappropriate [CI workflow]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
The NV4X and NS5X ADL are the only with enabled ccache. Disable it
for consistency.

Also dasharo-sdk v1.6.0 does not have ccache installed which causes
the build to fail.

Upstream-Status: Inappropriate [custom configs]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
This corrects change-id I885252a488bd35fc3afef571e6178642a059f883
("soc/intel/fast_spi/mmap_boot.c: allow mapping whole flash").  Looks
like hardware/chipset/ME/whatever limits what can be accessed via the
memory mapping to IFD BIOS region.

Instead of requesting mapping whatever is in front of IFD BIOS region,
add another xlate window for accessing that part of the flash via
implementation in src/soc/intel/common/block/fast_spi/fast_spi_flash.c

Upstream-Status: Pending
Change-Id: I2363f88655461951662c1a6fda9333785527e258
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
- Restart APs after BIOS ACM LOCK_CONFIG
- Prepare TXT environment for BIOS ACM LOCK_CONFIG
- Set the TXT platform type if CBNT is used
- Restart APs after clearing secrets
- Invalidate cache and reset system depending on ACM parameters

Upstream-Status: Pending
Change-Id: Ib57b4c7e60e37a8f48dd528bc5b23f0306b730e1
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Co-authored-by: SergiiDmytruk <sergii.dmytruk@3mdeb.com>
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
This is required for CBnT

Upstream-Status: Pending
Change-Id: I5e8fd3ae48908da9d7316fb0c453025b216f291c
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
…ching ME image

Upstream-Status: Pending
Change-Id: I76a4313bbc3a84dff51dfd5d3c74ea98d25db7c6
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Fix printing minor CBnT error codes

Upstream-Status: Pending
Change-Id: I5ba0965233783c47e86b8899cf0cab048df14180
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Add BtG and TXT FSP configuration parameters and add a defconfig for
V560TNx with CBnT enabled.

Upstream-Status: Pending
Change-Id: I84fffa4e4463a2b52f21ae6e768f732ad9cf956d
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Trust that CBnT has set up a safe environment, if NO_XIP_EARLY_STAGES is
not set by the platform.

Upstream-Status: Pending
Change-Id: I29fba8c5beb367feffe49e8cdfee995adec9cfba
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Log CBnT status if CBnT is enabled.

Upstream-Status: Pending
Change-Id: I938461176812431e46281832393d64b9bb6a64d4
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
There is no need to have them in RW sections.

Upstream-Status: Pending
Change-Id: I1cd6bc4dfc862313493b9cb45eb058c41fdc514a
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Enable CBnT with placeholder manifests for NovaCustom laptops. The
manifests are replaced with their actual contents by the BtG
provisioning scripts.

Upstream-Status: Pending
Change-Id: I06c57195e08330aa92cce0e25d9555b8b09a792b
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Increase RW_FWID and RO_FRID to accomodate larger FW IDs.

Upstream-Status: Pending
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Change-Id: I536b36ec4c1e3c5a0e3912bdc6f04b5a88a12c0c
CbnT does the TPM startup as a part of the ACM execution. It will
cause an invalid postinit error on TPM startup in bootblock or
verstage. Avoid it by selecting the option to ignore invalid postinit.

Upstream-Status: Pending
Change-Id: Idf5e481faf7aa21a8cd934957c5e676de1ee0638
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Log CBnT status if CBnT is enabled.

Upstream-Status: Pending
Change-Id: I3ef5cc73ac6440bf76457952f9352dd446be8082
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Enable CBnT on NovaCustom TGL platforms with sample manifests, which are
replaced by BtG provisioning scripts.

Upstream-Status: Pending
Change-Id: I0f5115a752d899b55fe84b58b669bd3841a79588
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Configure the necessary FSP parameters for TXT on Alder Lake

Upstream-Status: Pending
Change-Id: If301749bdc6ddb12129b7c86f1926c8ad4d07a62
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Enable CBnT with sample manifests on NovaCustom ADL platforms. The
sample manifests are replaced with their actual contents by BtG
provisioning scripts.

Upstream-Status: Pending
Change-Id: Ifa79f037f86716aa1275e27bdda0db5f1c9b5ec4
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
mkopec and others added 21 commits September 11, 2025 17:54
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: Ia65fac0b17a8daa75e6ea39b0622dbd19ac16639
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Throttling not implemented on this platform, FSP does not expose the
necessary UPD.

This reverts commit 253809a.

Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I41de8d7657dcc381b3008ef86f9275a866f99aa6
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I8477d860bffed399326edb6d0b1820c5ca41d505
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: Ie21ea54c00679bd85587c36f712009e335bc9300
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I8d8562de93e7c9ac678b8e3d1cbed2051603cae9
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I36fc9edccfed040056cf44bbb7ba72dd72f0eba1
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
When picking a persistent name for a network device systemd checks
ID_NET_NAME_ONBOARD, ID_NET_NAME_SLOT, ID_NET_NAME_PATH and
ID_NET_NAME_MAC udev attributes in this order and uses the first which
is present [0].  ID_NET_NAME_ONBOARD is derived (by systemd) from Type
41 records when available.

Do not publish the records to force the use of geographical/physical
persistent names in ID_NET_NAME_PATH (derived from PCIe paths).

This requirement seems to be motivated by compatibility, so considering
this a local change.

[0]: https://github.com/systemd/systemd/blob/778e95420a66ca34eb78008ccfac6153adf26310/src/shared/netif-util.c#L64

Change-Id: I61d3e7be39eea58a3c736ac97425e0721eefd31f
Upstream-Status: Inappropriate [Dasharo downstream]
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
The value of 10 is outdated since smbios_onboard_device_type enumeration
was extended with 6 more types in commit f6c100f
("include/smbios.h: Update misc_slot_type and
smbios_onboard_device_type"):
 * SMBIOS_DEVICE_TYPE_WIRELESS_LAN
 * SMBIOS_DEVICE_TYPE_BLUETOOTH
 * SMBIOS_DEVICE_TYPE_WWAN
 * SMBIOS_DEVICE_TYPE_EMMC
 * SMBIOS_DEVICE_TYPE_NVME
 * SMBIOS_DEVICE_TYPE_UFS

One side-effect of this is that devices with the new types won't have
Type 41 SMBIOS records generated for them automatically.  Haven't
observed this happening, but shouldn't hurt fixing the issue since it
has been noticed.

Change-Id: Iddaff8f71d9f028cdc9af692370a46e114e47332
Upstream-Status: Pending
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I15b326d4d47b101ce31ecb4e07c5c704c51d89c2
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
ME Soft Disable is not available on this platform, therefore disable the
ME menu.

Power state after power failure is not implemented, so also hide it.

Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I657c63bafdd1463769a8517bbd826671ab7958f9
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Required for the persistent bootsplash functionality.

Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I4ad9ff55d4fd3e50c2aa7be63c53bd6a3b773b92
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: Ic5f0f43f48ae7bd13f42d44328ec18eba3194144
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Pending
Change-Id: Idb9065444f8da2b7e2c70f6f9cc4ed2c9362f6af
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Inappropriate [custom configs]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Upstream-Status: Inappropriate [custom configs]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Upstream-Status: Inappropriate [custom config]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Upstream-Status: Inappropriate [custom configs]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Upstream-Status: Inappropriate [custom config]
Signed-off-by: Michał Żygowski <michal.zygowski@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Change-Id: I349f3dbaccd8d4aefc0adaec1274770f278eff24
Signed-off-by: Michał Kopeć <michal.kopec@3mdeb.com>
Upstream-Status: Inappropriate [Dasharo downstream]
Signed-off-by: Filip Lewiński <filip.lewinski@3mdeb.com>
This fixes EFI runtime services crashing when called by a FreeBSD as it
enforces aligned accesses.

Change-Id: I55b9965de237dae0f212d46c10fafd5d53d4666e
Upstream-Status: Inappropriate [Dasharo downstream]
Signed-off-by: Sergii Dmytruk <sergii.dmytruk@3mdeb.com>
@philipanda
philipanda force-pushed the ns5x-nv4x-nump-1.8.0-rc3 branch from 04252cb to 80d75e3 Compare September 30, 2025 09:22
@philipanda
philipanda requested review from BeataZdunczyk and mkopec and removed request for mkopec September 30, 2025 09:25
Upstream-Status: Inappropriate [Dasharo downstream]
Signed-off-by: Filip Gołaś <filip.golas@3mdeb.com>
@philipanda
philipanda force-pushed the ns5x-nv4x-nump-1.8.0-rc3 branch from 80d75e3 to c6391ac Compare September 30, 2025 09:30
@BeataZdunczyk
BeataZdunczyk requested review from mkopec and removed request for BeataZdunczyk September 30, 2025 09:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.