- Jan 24, 2025
-
-
Manisha Mishra authored
Add command to refresh firmware image before re-running entire test suite. Signed-off-by:
Manisha Mishra <manisha.mishra2@arm.com>
-
- Jan 21, 2025
-
-
Debbie Martin authored
Fix fault rendering for indented list of CVEs in the release notes. Signed-off-by:
Debbie Martin <Debbie.Martin@arm.com>
-
David Hu authored
Address Kronos device tree fixes in v1.1.1 release note. Signed-off-by:
David Hu <david.hu2@arm.com>
-
- Jan 15, 2025
-
-
Debbie Martin authored
Backport SCP vulnerability fixes. This covers 6 vulnerabilities, of which 2 have CVEs: CVE-2024-11863 and CVE-2024-11864. Also backport the SCMI validation check, which is necessary for the fixes. Update the release notes accordingly. Signed-off-by:
Debbie Martin <Debbie.Martin@arm.com>
-
- Jan 13, 2025
-
-
Change the yocto layer dependency diagram to show that meta-efi-secure-boot depends on meta-perl. Signed-off-by:
Maximilian Berndt <maximilian.berndt@arm.com>
-
- Dec 12, 2024
-
-
Mubashar Ahmad authored
The current virtualization high level diagram incorrectly shows the CAM demo deployed on all three Safety Island clusters. This has been amended to show the CAM demo being deployed on the top of Saftey Island 1 cluster. Also added the word 'backported' to .dictionary file. Signed-off-by:
Mubashar Ahmad <mubashar.ahmad@arm.com>
-
- Dec 05, 2024
-
-
Maximilian Berndt authored
Adapt the diagram because it shows that Actuation Service runs on SI Cl0 but instead it runs on SI Cl2. Signed-off-by:
Maximilian Berndt <maximilian.berndt@arm.com>
-
- Dec 04, 2024
-
-
Update Kronos device tree to address GIC GIC register region size and psci cpu_on function ID. - Update GIC GICR register region size to 0x40_0000. GICR region size = 16 (RDcount) * 64KB frame size * 4 (with GIC v4.1) - Update cpu_on function ID in psci node. Use SMC64 version function ID 0xc4000003 instead. Although this property doesn't actually take effect, align its value with cpu_suspend selection to avoid any confusion. Signed-off-by:
David Hu <david.hu2@arm.com>
-
- Dec 03, 2024
-
-
Ziad Elhanafy authored
The software reference stack uses an outband shared memory between the Safety Island Clusters and RSE for the MHUv3 communication and does not use in-band communication. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-
- Dec 02, 2024
-
-
Ziad Elhanafy authored
Add a note to the limitations section to mention that the RD-1 AE platform does not support DRAM partitioning. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-
- Nov 26, 2024
-
-
Debbie Martin authored
Backport the vulnerability fix for SCP firmware vulnerability CVE-2024-9413. Signed-off-by:
Debbie Martin <Debbie.Martin@arm.com>
-
- Nov 15, 2024
-
-
Maximilian Berndt authored
Adapt the README file because the distribution on which Primary Compute subsystem is based has been changed from Cassini to EWAOL. Signed-off-by:
Maximilian Berndt <maximilian.berndt@arm.com>
-
- Nov 14, 2024
-
-
David Hu authored
- Fix incorrect if() conditional statements in RSS drivers. - Update the release note. Signed-off-by:
David Hu <david.hu2@arm.com>
-
Maximilian Berndt authored
Change diagram to show that RSE BL1_2 is executed from SRAM, because the current diagram suggests that BL1_2 is executed from OTP memory, which is not the case. Additionally, change diagram to show that BL2 releases SCP RAMFW from reset, because the diagram suggests that this is done by RSE Runtime. Signed-off-by:
Maximilian Berndt <maximilian.berndt@arm.com>
-
- Oct 28, 2024
-
-
Musa Antike authored
- Google Analytics support is ended on the RTD side, so Sphinx Google Analytics extension is used instead. Signed-off-by:
Musa Antike <musa.antike@arm.com>
-
- Oct 03, 2024
-
-
Luca Fancellu authored
Use the RTD_ENV_ARM_AUTO_SOLUTIONS_VERSION backend variable to get the arm-auto-solutions version, in its absence, few other variable will be fetched, in case no variable is found a default value will be used. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
- Oct 02, 2024
-
-
There is currently no workaround for this. Signed-off-by:
Ambroise Vincent <ambroise.vincent@arm.com>
-
Luca Fancellu authored
Currently, the xl.cfg configuration for the DomU1 is wrongly assigning the vCPU0 to run on either the pCPU 1 or 2, instead what was intended was to pin both vCPU0 and vCPU1 to the pCPU1 and pCPU2 respectively. Correct the xl.cfg syntax to have that behaviour. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
- Oct 01, 2024
-
-
Michael Zhao authored
Signed-off-by:
Michael Zhao <michael.zhao2@arm.com>
-
Copy the results of the capsule update test run in the ACS tests to the FW directory so that it can be used by check-sr-results. Signed-off-by:
Isaac Perry <isaac.perry@arm.com>
-
Expect capsule-update.log as part of the results of the ACS tests. Signed-off-by:
Isaac Perry <isaac.perry@arm.com>
-
The capsule update is automated to test that SystemReady requirements for the FWU are met. Signed-off-by:
Isaac Perry <isaac.perry@arm.com> Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com> Signed-off-by:
Michael Zhao <michael.zhao2@arm.com>
-
Luca Fancellu authored
Change the 'Unreleased' section to 'v1.1'. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
Luca Fancellu authored
Move the entry about fixing the RSE for the RSE<->AP communication in the 'Resolved Issues' section, where it belongs. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
Luca Fancellu authored
Update the component table entries in the component page, aligning them to the v1.1 release. Add a deviation for the cspell checker for the conf.py file, since the name of the branch for the TF-A is in the not-allowed list. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
Luca Fancellu authored
Update the component table in the integration page for the v1.1 release. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
Luca Fancellu authored
Update the name of the branch for Trusted Firmware M and SCP firmware in the component table of the release notes page. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
Luca Fancellu authored
Add a full stop on all the entries of the bullet list of the changed section to be consistent with the Changed section of the 1.0 release. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
1- Add an additional screenshot showing what to choose when the `Install the GRUB boot loader` prompt appears. 2- Remove a redundant `mkdir` command which failed because the directory already exists, also update the related screenshot. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-
In the Secure Firmware Update, when the firmware update starts, RSE writes the image into the flash correctly. Then both RSE and U-Boot restart. U-Boot will require the RSE to write the image again. Since the image version has been updated, RSE will report a version error message. Add a note in the documentation to tell the user that this is an expected behavior. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-
Remove the width property from all documentation diagrams as they were causing the diagrams in the HTML version of the document to not scale correctly when zooming in/out. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-
Fix the indentation of some code blocks in the CAM Virtualization use case, which were causing the document to not be rendered as expected. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-
Isaac Perry authored
Capsule authentication has been implemented as part of Secure Firmware Update. The documentation makes note of this. Signed-off-by:
Isaac Perry <isaac.perry@arm.com> Signed-off-by:
Michael Zhao <michael.zhao2@arm.com>
-
- Sep 30, 2024
-
-
David Hu authored
The current capsule tampering for test doesn't modify header info, authentication info or payload in a capsule. This tampering might not be detected. Enhance the tampering by modifying the last few bytes of payload in the capsule. Signed-off-by:
David Hu <david.hu2@arm.com>
-
- Sep 27, 2024
-
-
Ziad Elhanafy authored
1- Align steps correctly in UEFI Secure Boot process. 2- Remove width property Secure Flash layout and Secure Firmware Update diagrams. 3- Rename `Armv8-R64` to `Armv8-R AArch64`. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-
- Sep 25, 2024
-
-
Luca Fancellu authored
Bump the CAM version to the latest changes by modifying the SHA, reflect the change also in the documentation and remove unused strings related to CAM from the rst_prolog in conf.py. Signed-off-by:
Luca Fancellu <luca.fancellu@arm.com>
-
Isaac Perry authored
Config changes and a Kronos FVP platform specific capsule update method enable capsule authentication. This prevents unsigned or tampered update capsules from being run by the firmware. Signed-off-by:
Isaac Perry <isaac.perry@arm.com>
-
Isaac Perry authored
The update capsule signature is inserted as a capsule-key node into the dts. The firmware uses the capsule-key to verify the update capsule's signature when capsule authentication is enabled. Signed-off-by:
Isaac Perry <isaac.perry@arm.com>
-
Isaac Perry authored
Three update capsules are deployed on the MMC for testing the capsule update. One is signed with a verification signature, one is unsigned and the last is a signed capsule that has been tampered with. Signed-off-by:
Isaac Perry <isaac.perry@arm.com>
-
Basic spinlock implementation is based on single atomic variable and doesn't guarantee locking fairness across multiple CPUs. It's even possible that single CPU will win the contention every time which will result in a live-lock. Ticket spinlocks provide a FIFO order of lock acquisition which resolves such unfairness issue at the cost of slightly increased memory footprint. Also remove the HIPC Safety Island Cluster hang known issue. Signed-off-by:
Ziad Elhanafy <ziad.elhanafy@arm.com>
-