Open fboudra opened 1 month ago
@fboudra Thanks for reporting.
Let me ask you:
I'm building Torizon OS 7 for verdin-imx8mp. For info, I have a NVMe SSD on PCIe on the platform. I can successfully boot with nvme_boot command once I closed the device and my local patch.
@fboudra Thanks for the information.
I think it's perfectly acceptable for us to add the commands you mentioned to the whitelist. We're also considering making the default list of allowed/denied categories more easily configurable for Yocto users. We have internal discussions to decide when to do that though.
Hi,
The U-Boot hardening implementation lacks the support for pci and nvme commands.
As a workaround, I added locally the categories and commands.
Update: