xref: /OK3568_Linux_fs/buildroot/boot/shim/Config.in (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyunconfig BR2_TARGET_SHIM
2*4882a593Smuzhiyun	bool "shim"
3*4882a593Smuzhiyun	# it includes gnu-efi
4*4882a593Smuzhiyun	depends on BR2_PACKAGE_GNU_EFI_ARCH_SUPPORTS
5*4882a593Smuzhiyun	help
6*4882a593Smuzhiyun	  Boot loader to chain-load signed boot loaders under Secure
7*4882a593Smuzhiyun	  Boot.
8*4882a593Smuzhiyun
9*4882a593Smuzhiyun	  This package provides a minimalist boot loader which allows
10*4882a593Smuzhiyun	  verifying signatures of other UEFI binaries against either
11*4882a593Smuzhiyun	  the Secure Boot DB/DBX or against a built-in signature
12*4882a593Smuzhiyun	  database.  Its purpose is to allow a small,
13*4882a593Smuzhiyun	  infrequently-changing binary to be signed by the UEFI CA,
14*4882a593Smuzhiyun	  while allowing an OS distributor to revision their main
15*4882a593Smuzhiyun	  bootloader independently of the CA.
16*4882a593Smuzhiyun
17*4882a593Smuzhiyun	  https://github.com/rhboot/shim
18