From mboxrd@z Thu Jan 1 00:00:00 1970 Delivery-date: Tue, 28 Oct 2025 19:04:31 +0100 Received: from metis.whiteo.stw.pengutronix.de ([2a0a:edc0:2:b01:1d::104]) by lore.white.stw.pengutronix.de with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1vDo3b-00ClkJ-21 for lore@lore.pengutronix.de; Tue, 28 Oct 2025 19:04:31 +0100 Received: from bombadil.infradead.org ([2607:7c80:54:3::133]) by metis.whiteo.stw.pengutronix.de with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1vDo3X-0001BU-EQ for lore@pengutronix.de; Tue, 28 Oct 2025 19:04:31 +0100 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=lists.infradead.org; s=bombadil.20210309; h=Sender:List-Subscribe:List-Help :List-Post:List-Archive:List-Unsubscribe:List-Id:Cc:To:In-Reply-To:References :Message-Id:Content-Transfer-Encoding:Content-Type:MIME-Version:Subject:Date: From:Reply-To:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Owner; bh=GUcudRsu7gxgH4Qmv63TZy3lVpdcp6hjD/tFgEm8LqM=; b=oR7pkMQ5aa3UyE+Z40fJ1EU3as xN9ehFXtFnjbE68GvlMUZlYAEi/oFpsCetk/FdY8ZpABAuGDMeYi130URShtus9x9nR0RfJkUi80h 6h0D5M4IPoh7Eg9DytPbdMSkndmVI3KBsVY81tGYWIvLizLIPkb1nLYE5VABezw9WqdaDmfAtvJ4o lq+Wo0V4MsAPy+VoRzf9aPSEVaHIqrYoc5oQxaqUuN4lbVPgKhSNpgAElw9fGBBkdx9eUoGNv7YYm zqwhByp9Dj/5U0qx8RLJworVKbIi2JOuBqOApCh38U/6/gw+WWoxPFaAlOyJAL5dWf4PC/xAJ5AQA adqJDnFg==; Received: from localhost ([::1] helo=bombadil.infradead.org) by bombadil.infradead.org with esmtp (Exim 4.98.2 #2 (Red Hat Linux)) id 1vDo2s-0000000GSEO-3Fhj; Tue, 28 Oct 2025 18:03:46 +0000 Received: from desiato.infradead.org ([2001:8b0:10b:1:d65d:64ff:fe57:4e05]) by bombadil.infradead.org with esmtps (Exim 4.98.2 #2 (Red Hat Linux)) id 1vDo2n-0000000GSAJ-2Xei for barebox@bombadil.infradead.org; Tue, 28 Oct 2025 18:03:41 +0000 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=infradead.org; s=desiato.20200630; h=Cc:To:In-Reply-To:References: Message-Id:Content-Transfer-Encoding:Content-Type:MIME-Version:Subject:Date: From:Sender:Reply-To:Content-ID:Content-Description; bh=GUcudRsu7gxgH4Qmv63TZy3lVpdcp6hjD/tFgEm8LqM=; b=AgR8wZmuTSRJcvSKzCg22mT5qq 1mallQe0AEFkYzzxPSx6TQ7/j2K8XpjEi51wj5gTVYide/nnZUw9UYyFxsfXJ/6eXrdBjJv4EX0C6 4NPzpRZfFTwq8lQLXCkXCfxfA/AFynZdDxGzH0iQsVhq1arf6TFzw3GONy4hJEmNzc/6kzKJesbMb facXhJS/ii/Iu5t+Kz4DRWPZZJIlq5BrNTU3ws8WGCzIW+uf6KDpSKJV7t38Lm0ss0HMUWC4HoAKz hhG3zagoirnLif9+bAIzuSkqh2I/DmvwnIkwE6QLSfa7lZaY5SaFyPECpRFiXxYQzds2dIYRd4QDi FS+YviwQ==; Received: from metis.whiteo.stw.pengutronix.de ([2a0a:edc0:2:b01:1d::104]) by desiato.infradead.org with esmtps (Exim 4.98.2 #2 (Red Hat Linux)) id 1vDnAz-000000050DW-2lUu for barebox@lists.infradead.org; Tue, 28 Oct 2025 17:08:08 +0000 Received: from dude04.red.stw.pengutronix.de ([2a0a:edc0:0:1101:1d::ac]) by metis.whiteo.stw.pengutronix.de with esmtp (Exim 4.92) (envelope-from ) id 1vDo2h-0000PX-Cr; Tue, 28 Oct 2025 19:03:35 +0100 From: Jonas Rebmann Date: Tue, 28 Oct 2025 19:03:17 +0100 MIME-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: 7bit Message-Id: <20251028-tlv-signature-v2-12-3bafce636ad7@pengutronix.de> References: <20251028-tlv-signature-v2-0-3bafce636ad7@pengutronix.de> In-Reply-To: <20251028-tlv-signature-v2-0-3bafce636ad7@pengutronix.de> To: Sascha Hauer , BAREBOX Cc: Ahmad Fatoum , Jonas Rebmann X-Mailer: b4 0.15-dev-7abec X-Developer-Signature: v=1; a=openpgp-sha256; l=1401; i=jre@pengutronix.de; h=from:subject:message-id; bh=1tyx1NbZ+VKfZ6AbEioL8By/H/92v/wzZIRbQS6BigI=; b=owGbwMvMwCV2ZcYT3onnbjcwnlZLYshkZC0xdfuolbEmJ+189YH0yc+tW77Jd5XGnDXUWbV/p k7Zt+WMHaUsDGJcDLJiiiyxanIKQsb+180q7WJh5rAygQxh4OIUgImk1jEytNcem/NVYn1F1K7N ndN3Rn2wrpoYPC1N0GF5m+GWHM47Qgz/HWzOn29/rSj2wm1OcdamuuSCyft/vtsnwy+9a8UduwQ zNgA= X-Developer-Key: i=jre@pengutronix.de; a=openpgp; fpr=0B7B750D5D3CD21B3B130DE8B61515E135CD49B5 X-CRM114-Version: 20100106-BlameMichelson ( TRE 0.8.0 (BSD) ) MR-646709E3 X-CRM114-CacheID: sfid-20251028_170805_848870_1573849D X-CRM114-Status: UNSURE ( 8.77 ) X-CRM114-Notice: Please train this message. X-BeenThere: barebox@lists.infradead.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: "barebox" X-SA-Exim-Connect-IP: 2607:7c80:54:3::133 X-SA-Exim-Mail-From: barebox-bounces+lore=pengutronix.de@lists.infradead.org X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on metis.whiteo.stw.pengutronix.de X-Spam-Level: X-Spam-Status: No, score=-3.4 required=4.0 tests=AWL,BAYES_00,DKIMWL_WL_HIGH, DKIM_SIGNED,DKIM_VALID,HEADER_FROM_DIFFERENT_DOMAINS, MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_NONE autolearn=unavailable autolearn_force=no version=3.4.2 Subject: [PATCH v2 12/17] crypto: Use "development" keys for "fit" and "tlv" keyring X-SA-Exim-Version: 4.2.1 (built Wed, 08 May 2019 21:11:16 +0000) X-SA-Exim-Scanned: Yes (on metis.whiteo.stw.pengutronix.de) All users of the CONFIG_CRYPTO_PUBLIC_KEYS feature should update to the new syntax making keyring selection mandatory. Instead of just making the addition of the builtin snakeoil keys explicit for the "fit" key, also add them to the "tlv" key to use them as a testing set for TLV keys too. Signed-off-by: Jonas Rebmann --- crypto/Makefile | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/crypto/Makefile b/crypto/Makefile index 08b9a46e4c..cbc5f5235a 100644 --- a/crypto/Makefile +++ b/crypto/Makefile @@ -33,10 +33,12 @@ CONFIG_CRYPTO_PUBLIC_KEYS := $(foreach d,$(CONFIG_CRYPTO_PUBLIC_KEYS),"$(d)") ifdef CONFIG_CRYPTO_BUILTIN_DEVELOPMENT_KEYS ifdef CONFIG_CRYPTO_RSA -CONFIG_CRYPTO_PUBLIC_KEYS += rsa-devel:$(srctree)/crypto/fit-4096-development.crt +CONFIG_CRYPTO_PUBLIC_KEYS += keyring=fit,fit-hint=rsa-devel:$(srctree)/crypto/fit-4096-development.crt +CONFIG_CRYPTO_PUBLIC_KEYS += keyring=tlv-generic:$(srctree)/crypto/fit-4096-development.crt endif ifdef CONFIG_CRYPTO_ECDSA -CONFIG_CRYPTO_PUBLIC_KEYS += ecdsa-devel:$(srctree)/crypto/fit-ecdsa-development.crt +CONFIG_CRYPTO_PUBLIC_KEYS += keyring=fit,fit-hint=ecdsa-devel:$(srctree)/crypto/fit-ecdsa-development.crt +CONFIG_CRYPTO_PUBLIC_KEYS += keyring=tlv-generic:$(srctree)/crypto/fit-ecdsa-development.crt endif endif -- 2.51.2.535.g419c72cb8a