commit | 05b9f88bc63b935d94087c4f90bd53797890ba1f | [log] [tgz] |
---|---|---|
author | Hung-Te Lin <hungte@chromium.org> | Thu Nov 01 17:23:55 2018 +0800 |
committer | Hung-Te Lin <hungte@chromium.org> | Wed Jul 10 01:20:05 2019 +0000 |
tree | c6289974be27c5ed14b507f42b2f7cbfd39378be | |
parent | fe5de15c899182ab5b1f6a97471ef2ccb56e21ac [diff] |
futility: updater: Need --force when re-keying to DEV keys For dogfood devices, we usually will only re-key from DEV to PreMP, and then PreMP to MP. It was found that for retail devices, if WP was disabled (unintended), user may accidentally re-key to DEV keys if they (1) recover with a DEV-signed image, or (2) received an AU that didn't have right signing keys. As a result, we want to make it harder when recovering to DEV keys. BUG=chromium:894324 TEST=make futil; tests/futility/run_test_scripts.sh $(pwd)/build/futility BRANCH=None Change-Id: Id3f7788e6c86d12b6e37b77818a1b4c2ceda1e2f Signed-off-by: Hung-Te Lin <hungte@chromium.org> Reviewed-on: https://chromium-review.googlesource.com/1312596 Reviewed-by: Mike Frysinger <vapier@chromium.org> Reviewed-on: https://chromium-review.googlesource.com/c/chromiumos/platform/vboot_reference/+/1694202