diff mbox series

[4/6] efi/arm: check secure boot status in efi init

Message ID 20200904072905.25332-5-clin@suse.com
State New
Headers show
Series add ima_arch support for ARM64 | expand

Commit Message

Chester Lin Sept. 4, 2020, 7:29 a.m. UTC
set EFI_SECURE_BOOT flag when UEFI secure boot is eanbled on ARM.

Signed-off-by: Chester Lin <clin@suse.com>
---
 drivers/firmware/efi/arm-init.c | 3 +++
 1 file changed, 3 insertions(+)
diff mbox series

Patch

diff --git a/drivers/firmware/efi/arm-init.c b/drivers/firmware/efi/arm-init.c
index 71c445d20258..70f2eaf5fb1a 100644
--- a/drivers/firmware/efi/arm-init.c
+++ b/drivers/firmware/efi/arm-init.c
@@ -234,6 +234,9 @@  void __init efi_init(void)
 		return;
 	}
 
+	if (efi_secureboot_enabled_in_fdt())
+		set_bit(EFI_SECURE_BOOT, &efi.flags);
+
 	reserve_regions();
 	efi_esrt_init();