On 12/01/26 15:06, Suhaas Joshi wrote:
> Add firewall configurations to protect ATF and OP-TEE memory regions
> from non-secure reads and writes in AM62P.
> 
> Signed-off-by: Suhaas Joshi <[email protected]>
> ---
>  arch/arm/dts/k3-am62p-sk-binman.dtsi | 33 ++++++++++++++++++++++++++++
>  1 file changed, 33 insertions(+)
> 
> diff --git a/arch/arm/dts/k3-am62p-sk-binman.dtsi 
> b/arch/arm/dts/k3-am62p-sk-binman.dtsi
> index e1443d6226b..96c06c9ac77 100644
> --- a/arch/arm/dts/k3-am62p-sk-binman.dtsi
> +++ b/arch/arm/dts/k3-am62p-sk-binman.dtsi
> @@ -217,6 +217,39 @@
>  
>               fit {
>                       images {
> +                             atf {
> +                                     ti-secure {
> +                                             auth-in-place = <0xa02>;
> +
> +                                             firewall-1-0 {
> +                                                     insert-template = 
> <&firewall_bg_3>;
> +                                                     id = <1>;
> +                                                     region = <0>;
> +                                             };
> +
> +                                             firewall-1-1 {
> +                                                     insert-template = 
> <&firewall_armv8_atf_fg>;
> +                                                     id = <1>;
> +                                                     region = <1>;
> +                                             };
> +
> +                                     };
> +                             };
> +
> +                             tee {
> +                                     ti-secure {
> +                                             auth-in-place = <0xa02>;
> +
> +                                             firewall-1-2 {
> +                                                     insert-template = 
> <&firewall_armv8_optee_fg>;
> +                                                     id = <1>;
> +                                                     region = <2>;
> +                                             };
> +
> +                                     };
> +                             };
> +
nitpick again: one extra empty line here

> +
>                               tifsstub-hs {
>                                       description = "TIFSSTUB";
>                                       type = "firmware";

-- 
Thanking You
Neha Malcom Francis

Reply via email to