On 12/01/26 15:06, Suhaas Joshi wrote:
> Add firewall configurations to protect ATF and OP-TEE memory regions
> from non-secure reads and writes in AM62x.
>
> Signed-off-by: Suhaas Joshi <[email protected]>
> ---
> arch/arm/dts/k3-am625-sk-binman.dtsi | 30 ++++++++++++++++++++++++++++
> 1 file changed, 30 insertions(+)
>
> diff --git a/arch/arm/dts/k3-am625-sk-binman.dtsi
> b/arch/arm/dts/k3-am625-sk-binman.dtsi
> index 42edb35fa7b..a1ac1f52c94 100644
> --- a/arch/arm/dts/k3-am625-sk-binman.dtsi
> +++ b/arch/arm/dts/k3-am625-sk-binman.dtsi
> @@ -276,6 +276,36 @@
> fit {
> images {
>
nitpick: no need for empty line here
> + atf {
> + ti-secure {
> + auth-in-place = <0xa02>;
> +
> + firewall-1-0 {
> + insert-template =
> <&firewall_bg_3>;
> + id = <1>;
> + region = <0>;
> + };
> +
> + firewall-1-1 {
> + insert-template =
> <&firewall_armv8_atf_fg>;
> + id = <1>;
> + region = <1>;
> + };
> + };
> + };
> +
> + tee {
> + ti-secure {
> + auth-in-place = <0xa02>;
> +
> + firewall-1-2 {
> + insert-template =
> <&firewall_armv8_optee_fg>;
> + id = <1>;
> + region = <2>;
> + };
> + };
> + };
> +
> tifsstub-hs {
> description = "TIFSSTUB";
> type = "firmware";
--
Thanking You
Neha Malcom Francis