From 55e3a192be1425ac406d356e1a3d52f3a27915a9 Mon Sep 17 00:00:00 2001 From: Markus Meissner Date: Mon, 22 Jan 2024 14:16:27 +0100 Subject: [PATCH] coreboot-nitrokey: hard-code ME state during boot, fixes Nitrokey/heads#39 Signed-off-by: Markus Meissner --- .../0002-dasharo-hardcode-me.patch | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 patches/coreboot-nitrokey-clevo_release/0002-dasharo-hardcode-me.patch diff --git a/patches/coreboot-nitrokey-clevo_release/0002-dasharo-hardcode-me.patch b/patches/coreboot-nitrokey-clevo_release/0002-dasharo-hardcode-me.patch new file mode 100644 index 000000000..cb4a77868 --- /dev/null +++ b/patches/coreboot-nitrokey-clevo_release/0002-dasharo-hardcode-me.patch @@ -0,0 +1,12 @@ +diff -ur coreboot-nitrokey.org/src/vendorcode/dasharo/options.c coreboot-nitrokey/src/vendorcode/dasharo/options.c +--- coreboot-nitrokey.org/src/vendorcode/dasharo/options.c 2024-01-22 14:11:59.525612567 +0100 ++++ coreboot-nitrokey/src/vendorcode/dasharo/options.c 2024-01-22 14:12:07.535544365 +0100 +@@ -133,7 +133,7 @@ + if (CONFIG(DRIVERS_EFI_VARIABLE_STORE)) + read_u8_var("MeMode", &var); + +- return var; ++ return ME_MODE_DISABLE_HAP; + } + + bool is_smm_bwp_permitted(void)