Age | Commit message (Collapse) | Author | Files | Lines |
|
This includes security and bug fixes from the 6.1.47 through to 6.1.51
stable releases.
Change-Id: I8f5d057a785e38f6980487c84c587e1baf38bf8f
Signed-off-by: Joel Stanley <joel@jms.id.au>
|
|
Boleslaw Ogonczyk Makowski (1):
Fix mounting in legacy mode in virtual media
Gunnar Mills (1):
System: Error log level when internalError
Jason M. Bills (1):
Don't return failed password in Redfish error response
Change-Id: I6abb0a4b71a987bf4b702e44f61985f721be8ebd
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Instead of individual filenames, adding the containing directory
itself.
Adding the directory used by the gRPC receiver of SMBIOS blobs from
remote hosts, so they can stick around after the smbios-mdr service is
restarted, without requiring hosts to send them again.
As for the gRPC receiver itself, see this patch stack:
https://gerrit.openbmc.org/c/openbmc/smbios-mdr/+/65048
Change-Id: Ic73ab81e3a9761a101b6040a445a5cf042cbb4b0
Signed-off-by: Josh Lehan <krellan@google.com>
|
|
IBM observed consistent hangs in the `uart_otp` tool when programming
the OTP image into the SoC. This was root-caused by Aspeed:
> Message-ID: <TYZPR06MB677027C95FCFABCDA6F81C4D800DA@TYZPR06MB6770.apcprd06.prod.outlook.com>
> From: Neal Liu <neal_liu@aspeedtech.com>
> Subject: Server Management technical issue by Rose.Drehmel@us.ibm.com
>
> Hi Andrew,
>
> It’s okay, I found the problem.
>
> The utility timeout is because it programs key retire bits in
> OTPCFG4[7:0] without enabling secure boot.
>
> In the case of secure boot is enabled, the hardware would detect the
> current boot up key number #id, and it can only retire the number
> which is smaller than the current boot up key #id.
> If not, the OTP status will keep busy, and the utility stocks in
> polling loop.
>
> If you still want to disable key #0 without enabling secure boot,
> OTPCFG0[5] can be another option for you.
>
> I also provide a new programmer.bin to fix this infinite loop problem
> in case user thought BMC is crashed.
>
> You can try it with this command:
>
> $ uart_otp -s 2600 -p ast2600_otp_programmer.bin /dev/ttyUSBx
>
> Thanks
>
> Best Regards,
>
> -Neal
In discussion with Chris we determined that we were not intentionally
attempting to retire the development / low-security key, rather were
just trying to be complete in the specification of our configuration.
Neal responded to our request of how to avoid programming a key
retirement in the configuration file:
> Message-ID: <TYZPR06MB67700B238DB429A51E048E328010A@TYZPR06MB6770.apcprd06.prod.outlook.com>
> From: Neal Liu <neal_liu@aspeedtech.com>
> Subject: Server Management technical issue by Rose.Drehmel@us.ibm.com
>
> Hi Andrew,
>
> Just delete line #72 as unspecified value.
>
> Thanks
>
> Best Regards,
>
> -Neal
>>
>> From: Andrew Jeffery <andrewrj@au1.ibm.com>
>> To: Neal Liu <neal_liu@aspeedtech.com>
>> Subject: Re: Server Management technical issue by Rose.Drehmel@us.ibm.com
>>
>> Hi Neal,
>>
>> I've discussed your findings with Chris Engel, who is our platform
>> security person. We determined that we do not want to mark the low
>> security key as retired in the OTP as we're handling that via the
>> FWSPIMISO strapping pin.
>>
>> What change should I make to our OTP configuration so that we don't
>> retire key 0 during programming?
>>
>> Andrew
Line 72 in this case refers to our OTP configuration file:
https://github.com/openbmc/openbmc/blob/2a25492c13e2b768f94b864a51f84e82e4238aef/meta-ibm/recipes-bsp/u-boot/u-boot-aspeed-sdk/p10bmc/ibm.json#L72
Leave "Keys Retire ID" unspecified to avoid leaving the OTP engine busy.
Cc: Chris Engel <cjengel@us.ibm.com>
Cc: Rose Drehmel <Rose.Drehmel@us.ibm.com>
Cc: Briana Foxworth <befoxwor@us.ibm.com>
Cc: Nicole Nett <nschwart@us.ibm.com>
Change-Id: Ib6b75a40f5debd5ba1166f0f69a07114b76d9c34
Signed-off-by: Andrew Jeffery <andrew@aj.id.au>
|
|
There's a bug in socsec that prevents the IBM's configuration from
successfully building an OTP image.
I have got the fix merged upstream:
https://github.com/AspeedTech-BMC/socsec/pull/18
However, Aspeed do not plan on doing a release until October:
> [ 17:51 ] arj: @Troy Lee any chance Neal can tag a new socsec release so we can bump it in OpenBMC and pick up some recent fixes?
> [ 18:25 ] Troy Lee: Current schedule is October.
https://discord.com/channels/775381525260664832/922871693008068638/1144547174286377062
For now, fix otptool using a recipe patch, in violation of the usual
guidelines.
I prefer we do this over switching to a "git" version for the recipe as
instability with these tools really cannot be tolerated.
Change-Id: I65b1992b5479ea257cfa65fd8b3cfc021b7d3dea
Signed-off-by: Andrew Jeffery <andrew@aj.id.au>
|
|
Change-Id: I95010b4925632b4384b90b2f113b9b826b5b63bd
Signed-off-by: Andrew Jeffery <andrew@aj.id.au>
|
|
Michal Orzel (1):
Change authority D-Bus names
Change-Id: I81a7e5c0fb65a7e77a4797477130d18a3e2763d9
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Divya Jyoti (1):
Fix incorrect response code for header size limit
Change-Id: I989caeb2aef2631d660a3ceb2e95d352ab493ea9
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Jonathan Doman (1):
Separate IPMI and legacy snoop code to different files
Change-Id: Iaf1f88220948ad3d01e162044f6b81bcfd66d607
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Jonathan Doman (1):
Refactor unnecessary shared_ptr usage
Change-Id: I270db996e670e45a6708cea9f770d70c59f81894
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Andrew Jeffery (1):
transport: Filter for the response to the issued request
Change-Id: If5e6f02b1478c920620c02515eba1dcf2e77fc3e
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Jinu Joy Thomas (1):
Correct PEL create on default value in D1 keyword (#158)
Change-Id: I829d90ba8f7f528c47d751034f2e6509ae58207e
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Dhruvaraj Subhashchandran (2):
Generate dump types table
Generate error map as part of dump types
Change-Id: I1fb7c3d9a09f1fb3cae85a3982d0a162b171fb80
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Matt Spinler (2):
Make gmock dep initially not required
Remove remaining fmt::format use
Change-Id: I23b8b23e274972c8265272f082eafed4cd6cf9fe
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
glome was moved to meta-security layer and libhoth was moved to
meta-tpm layer.
Change-Id: I4bcfb78948da25b90e02a1db786937484c09d93f
Signed-off-by: Tom Tung <shes050117@gmail.com>
|
|
This is required to pick up the glome recipe that was moved from
meta-google to meta-security.
Change-Id: I52790cd2b792ed208498715748e5bed6fb120d20
Signed-off-by: Willy Tu <wltu@google.com>
|
|
Vernon Mauery (1):
Add OEM get BMC Version String command
Change-Id: Ifb786919d28d3798a627d3a904e48fcf06ba1f3b
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Stanley Chu (1):
add run_state API
Signed-off-by: Tim Lee <timlee660101@gmail.com>
Change-Id: I41d78074c29ab3b1386137846d2e712025f37a41
|
|
Changelog:
Andrew Geissler (1):
ensure power off works after istep boot
Jason Albert (5):
Move -lstdc++fs to istep only builds, only used there
Fix issue with missig .c_str()
Update method to read eeprom label value
Renable VPD support in host builds
Update to pb-plugin build
RAJESWARAN THILLAIGOVINDAN (1):
Updated to support putScomUnderMask
Steven Janssen (2):
Update ecmd to latest ecmd15 branch changeset
update ecmd to latest with gcc compile fixes
deepa (1):
Fix CI build failure
deepakala-k (6):
Resolve compilation error
Fix istep name displayed on 'istep list'
Add support to log traces into journal
ecmd-pdbg: Fix getscom to handle target not enabled
ecmd-pdbg: Fix getscom to allow only functional targets
Fix omic getscom
Change-Id: I429e886938741a90ebf35a6ed8b3c5002bba4306
Signed-off-by: Deepa Karthikeyan <deepakala.karthikeyan@ibm.com>
|
|
Jason M. Bills (1):
Fix more build warnings
Change-Id: I3554ac3f66209cb02891984582fa12f997e851bc
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Change-Id: Ifccac09484d800c0c94092238ccb715362fb2b32
Signed-off-by: Charles Kearney <charles.kearney@hpe.com>
|
|
The ampere platform managment recipe is not upstreamed yet. Remove until dependency is satisfied.
Change-Id: I59863e7df1b64c7025cfbdc34f496a89fea14684
Signed-off-by: Charles Kearney <charles.kearney@hpe.com>
|
|
Change-Id: Ia13dbd9b2178aca967df916cb507e5c92bacd6ec
Signed-off-by: Charles Kearney <charles.kearney@hpe.com>
|
|
Bumping revisions in multiple projects in order to support changed name
of authority certificate store service:
- phosphor-certificate-manager: 2e8ef4ce...2e8fa88e
Michal Orzel (1):
config: Change authority D-Bus names
- bmcweb: 0a4776cf...b2254ccd
Michal Orzel (1):
Change authority D-Bus names
Myung Bae (1):
Ignore Non-software-related events during Update
- phosphor-user-manager: 24637e5f...23f82c1e
Michal Orzel (1):
Change authority D-Bus names
Change-Id: If75951a40e7264102424e1d31a29f7c2e8a90f0e
Signed-off-by: Michal Orzel <michalx.orzel@intel.com>
|
|
The machine is no longer being supported.
Change-Id: I06cccfd7abdefc6ba93c43b1135b4c8942267eb6
Signed-off-by: Willy Tu <wltu@google.com>
|
|
Changelog:
TIP FW 0.6.2 L0 0.5.1 L1
==============
- Release tag: TIP_FW_L0_0.6.2_L1_0.5.1
- Fix trap issue in export found on DC_SCM only.
- Optimize memory usage.
- RSA and RNG code cleanup.
Tested:
Build pass and boot up successful with correct version.
Signed-off-by: Tim Lee <timlee660101@gmail.com>
Change-Id: Ie35d15345fdefbdb9d66801f3ebb70ffc39d776d
|
|
Changelog:
IGPS 03.09.03 - Aug 10th 2023
==============
- Update scripts: fix typos.
- Update scripts: copy all keys always.
To replace a key please remove it from both:
IGPS_..\py_scripts\ImageGeneration\keys
IGPS_..\py_scripts\ImageGeneration\inputs\key_input
Tested:
Build pass and boot up successful both TIP and NO TIP mode.
Signed-off-by: Tim Lee <timlee660101@gmail.com>
Change-Id: I4f364735d393d6c84475fd11f96da14e4b1d7b56
|
|
The RPMB partition of the eMMC on our boards has been written
with a test key from optee-os. As a result, we cannot use the
key from OTP to access RPMB. Thus, we need to remove it.
And add back CFG_REE_FS and CFG_REE_FS_TA support for optee-os.
Tested: build pass and boot successfully then run xtest pass.
Signed-off-by: Tim Lee <timlee660101@gmail.com>
Change-Id: I47ea2f1ba8ed09b34a1530c2b4110d296dd09e11
|
|
Stanley Chu (7):
pinctrl: npcm8xx: sync with upstream driver
pinctrl: npcm8xx: add name for gpio function
board: nuvoton: set console environment variable
serial: npcm: support skip uart initialization
configs: arbel/poleg: support more uart baud rate
watchdog: npcm: fix reset/expire function
dts: npcm8xx: add watchdog
Signed-off-by: Tim Lee <timlee660101@gmail.com>
Change-Id: Id3923f96f68fa0f59f18b7f6d9f533d48d7cb6b1
|
|
George Liu (1):
hardcode dbus name
Change-Id: I0dcb9b2b146db38f396dd0246029e2b4c6a5614b
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Sunny Srivastava (1):
Set default for LX and FC keywords
girik (1):
UTIL:D1 keyword added to backup restore.
Change-Id: I4f2a7a3e7a5200c90b33c6ac132d2d20ab91478a
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Patrick Williams (1):
sensorcommands: avoid stringop-truncation warning
Vernon Mauery (1):
Fix for g++-13
Willy Tu (1):
ipmid: fru-reader: Use timegm instead of mktime
Change-Id: I910bd3e5817b7465482af90a484dbbb3e1c78004
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
George Liu (1):
meson_options.txt: Support for reading options from meson.options
Patrick Williams (1):
sdbus++: use non-deprecated namespaces
Change-Id: If92d8003fe12eb24d435206cd35e20af465d3350
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Konstantin Aladyshev (1):
serial: Initialize pkt_trailer for the binding
Change-Id: I4bfebca0409832bd5221eb3930f836cb20149347
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Andrew Jeffery (3):
tests: Exclude transport tests when build excludes testing ABIs
abi: Capture deprecation of pldm_close()
libpldm: Release v0.7.0
Change-Id: Ie723e58e778df276154ff4796521c730f49a75c8
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Faisal Awada (1):
psu-ng: Fix race condition within PSU monitor.
George Liu (3):
power-supply: Replace Argument class with CLI11
power-sequencer: Replace Argument class with CLI11
meson_options.txt: Support for reading options from meson.options
Change-Id: I9e2cccfe86e3ecf9a51d7b309a04abf02c553563
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Willy Tu (1):
fru-device: Remove the use of mktime
Change-Id: Iaf51d96d33ec27b79f24cf971d7091164a225235
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
bmcweb: srcrev bump 8e73b9064f..0a4776cf59
Ed Tanous (1):
Remove phosphor-rest workarounds
webui-vue: srcrev bump 7c1cfe7e25..ebef6eeea8
Ed Tanous (1):
Remove phosphor-rest style login
Change-Id: I0fc189c3e3e737249080865702062dbf59d2f5b1
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
Signed-off-by: Gunnar Mills <gmills@us.ibm.com>
|
|
George Liu (2):
meson_options.txt: Support for reading options from meson.options
meson: Replace configure_file with fs.copyfile
Change-Id: I802855baf60ca241329d7bc1d0962289cd01b540
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
The previous change introduced a bashism, but yocto expects that all
shell scripting is POSIX compatible.
Fixes: bf4e27c3408955c214000108001e92c308c1861f
Change-Id: Ifc3cce4d625a876b224853b3b04b1b84b95327b2
Signed-off-by: William A. Kennington III <wak@google.com>
|
|
This file is used to know which location codes to call out in error logs
when I2C and other accesses fail.
There are still a few missing callouts, but most are there.
Signed-off-by: Matt Spinler <spinler@us.ibm.com>
Change-Id: Ic0c61e362c5dcab4d374168da84bb7128d0bb22e
|
|
These addresses should not be used by default for traffic on the
interface, as we may have multiple BMCs using the same hardcoded address
WRT legacy applications. We want multiple BMCs of the same type to be
able to coexist if they have unique addresses and right now they are not
correctly preferring these addresses.
Change-Id: I0d02cbf63b54f2464ae889ea773e032da0e9b650
Signed-off-by: William A. Kennington III <wak@google.com>
|
|
Benjamin Gwin (1):
core: Fix use of wrong 'free' function
Change-Id: Ic90d2d5a7cd00822f819ceb916de32b6fb2c5679
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
George Liu (1):
meson_options.txt: Support for reading options from meson.options
Change-Id: I9254ecbbad2f5f1ea87213d7ba05c1424eb43813
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Andrew Jeffery (1):
transport: Stabilise core transport and implementation APIs
Change-Id: Ia32cddb79aa5ded3d07f99a0ce6796a79f3c0c18
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Alexander Hansen (1):
multiple ipmi shortname implementations
George Liu (1):
meson_options.txt: Support for reading options from meson.options
Konstantin Aladyshev (1):
Mark created SEL entries as 'IPMI generated'
Vernon Mauery (10):
change to use non-deprecated dcmi group value
make isDCMIPowerMgmtSupported cache response
Update DCMI power limit commands
Update DCMI asset tag commands
update DCMI management ctrl ID str commands
Update DCMI Get Capabilities command
update DCMI Read Temperatures command
update DCMI Get Power Reading command
Update DCMI Get Sensor Reading command
Update DCMI Get/Set Config Parameters commands
Change-Id: Ie0c7b6f67653a1a216896b8406daa99e25bb3f1e
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Patrick Williams (1):
sdbus++: use non-deprecated namespaces
Change-Id: I8dd8fdf59e3ac10af3a405ebc5a509075cabd786
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Patrick Williams (8):
exception: add string r-value constructor
message: read: simplify SFIANE templates
sdbus++: simplify enum typename usage
async: add context_ref class for CRTP patterns
async: client: use CRTP to eliminate excess context refs
async: context: add implicit conversion to bus_t
sdbus++: async: server: add generator stub
sdbus++: client: remove deprecated namespace
Change-Id: I9799a049ba5edb8dbc92b502b33111f088514a43
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Michael Shen (1):
Fix typo `DBusInteracesMap` -> `DBusInterfacesMap`
Ravi Teja (1):
Avoid setting SNI hostname for IP addresses
Tony Lee (1):
Fix empty response when do the clearLog
Xinnan Xie (1):
kvm_websocket: Fix crash on dangling reference
Change-Id: Ibce11491d6f90acd30c6e6742d8349a7451035dc
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|
|
Patrick Williams (1):
regenerate-meson: re-run with latest from sdbusplus
Change-Id: I529b60067fe5cd0a63cd1ded0e219de5d310142c
Signed-off-by: Andrew Geissler <openbmcbump-github@yahoo.com>
|