summary refs log tree commit diff stats
diff options
context:
space:
mode:
authorGerd Hoffmann <kraxel@redhat.com>2025-02-25 17:30:16 +0100
committerGerd Hoffmann <kraxel@redhat.com>2025-03-04 12:01:42 +0100
commit4ec89b00d5bd4184455cf41af859ec08ed87d8e5 (patch)
tree29c702c275709eb91192d2a37c36f8f079770890
parent3e33af2cb306311d6fa4372c6d27489c165c1bd4 (diff)
downloadfocaccia-qemu-4ec89b00d5bd4184455cf41af859ec08ed87d8e5.tar.gz
focaccia-qemu-4ec89b00d5bd4184455cf41af859ec08ed87d8e5.zip
hw/uefi: add var-service-pkcs7-stub.c
pkcs7 stub which is used in case gnutls is not available.

It throws EFI_WRITE_PROTECTED errors unconditionally, so all
authenticated variables are readonly for the guest.

Signed-off-by: Gerd Hoffmann <kraxel@redhat.com>
Message-ID: <20250225163031.1409078-13-kraxel@redhat.com>
-rw-r--r--hw/uefi/var-service-pkcs7-stub.c16
1 files changed, 16 insertions, 0 deletions
diff --git a/hw/uefi/var-service-pkcs7-stub.c b/hw/uefi/var-service-pkcs7-stub.c
new file mode 100644
index 0000000000..118cba446d
--- /dev/null
+++ b/hw/uefi/var-service-pkcs7-stub.c
@@ -0,0 +1,16 @@
+/*
+ * SPDX-License-Identifier: GPL-2.0-or-later
+ *
+ * uefi vars device - pkcs7 stubs
+ */
+#include "qemu/osdep.h"
+#include "system/dma.h"
+
+#include "hw/uefi/var-service.h"
+
+efi_status uefi_vars_check_pkcs7_2(uefi_variable *siglist,
+                                   void **digest, uint32_t *digest_size,
+                                   mm_variable_access *va, void *data)
+{
+    return EFI_WRITE_PROTECTED;
+}