@@ -240,7 +240,7 @@ CONFIG_EC_STARLABS_BATTERY_MODEL="Unknown"
240
240
CONFIG_EC_STARLABS_BATTERY_TYPE="LION"
241
241
CONFIG_EC_STARLABS_BATTERY_OEM="Unknown"
242
242
CONFIG_TPM_MEASURED_BOOT=y
243
- CONFIG_LINUX_COMMAND_LINE=""
243
+ CONFIG_LINUX_COMMAND_LINE="quiet loglevel=2 "
244
244
CONFIG_BOARD_ROMSIZE_KB_16384=y
245
245
# CONFIG_COREBOOT_ROMSIZE_KB_256 is not set
246
246
# CONFIG_COREBOOT_ROMSIZE_KB_512 is not set
@@ -432,6 +432,7 @@ CONFIG_SOC_INTEL_COMMON_BLOCK_XHCI_ELOG=y
432
432
CONFIG_SOC_INTEL_COMMON_PCH_CLIENT=y
433
433
CONFIG_SOC_INTEL_COMMON_PCH_BASE=y
434
434
CONFIG_SOC_INTEL_COMMON_PCH_LOCKDOWN=y
435
+ CONFIG_SOC_INTEL_COMMON_SPI_LOCKDOWN_SMM=y
435
436
CONFIG_PCH_SPECIFIC_BASE_OPTIONS=y
436
437
CONFIG_PCH_SPECIFIC_DISCRETE_OPTIONS=y
437
438
CONFIG_PCH_SPECIFIC_CLIENT_OPTIONS=y
@@ -489,8 +490,10 @@ CONFIG_CPU_MICROCODE_CBFS_DEFAULT_BINS=y
489
490
CONFIG_PCIEXP_HOTPLUG=y
490
491
CONFIG_INTEL_DESCRIPTOR_MODE_REQUIRED=y
491
492
CONFIG_SOUTHBRIDGE_INTEL_COMMON_SMBUS=y
493
+ CONFIG_HAVE_INTEL_CHIPSET_LOCKDOWN=y
492
494
CONFIG_INTEL_DESCRIPTOR_MODE_CAPABLE=y
493
495
# CONFIG_VALIDATE_INTEL_DESCRIPTOR is not set
496
+ # CONFIG_INTEL_CHIPSET_LOCKDOWN is not set
494
497
CONFIG_FIXED_RCBA_MMIO_BASE=0xfed1c000
495
498
CONFIG_RCBA_LENGTH=0x4000
496
499
@@ -626,6 +629,7 @@ CONFIG_MRC_SETTINGS_PROTECT=y
626
629
CONFIG_SPI_FLASH=y
627
630
CONFIG_BOOT_DEVICE_SPI_FLASH_RW_NOMMAP=y
628
631
CONFIG_BOOT_DEVICE_SPI_FLASH_RW_NOMMAP_EARLY=y
632
+ CONFIG_SPI_FLASH_SMM=y
629
633
# CONFIG_SPI_FLASH_NO_FAST_READ is not set
630
634
CONFIG_TPM_INIT_RAMSTAGE=y
631
635
# CONFIG_TPM_PPI is not set
@@ -732,9 +736,11 @@ CONFIG_PLATFORM_HAS_DRAM_CLEAR=y
732
736
# CONFIG_INTEL_TXT is not set
733
737
# CONFIG_STM is not set
734
738
# CONFIG_INTEL_CBNT_SUPPORT is not set
735
- CONFIG_BOOTMEDIA_LOCK_NONE=y
736
- # CONFIG_BOOTMEDIA_LOCK_CONTROLLER is not set
739
+ # CONFIG_BOOTMEDIA_LOCK_NONE is not set
740
+ CONFIG_BOOTMEDIA_LOCK_CONTROLLER=y
737
741
# CONFIG_BOOTMEDIA_LOCK_CHIP is not set
742
+ CONFIG_BOOTMEDIA_LOCK_WHOLE_RO=y
743
+ # CONFIG_BOOTMEDIA_LOCK_WHOLE_NO_ACCESS is not set
738
744
# CONFIG_BOOTMEDIA_SMM_BWP is not set
739
745
# end of Security
740
746
@@ -867,7 +873,7 @@ CONFIG_COMPRESS_SECONDARY_PAYLOAD=y
867
873
# CONFIG_DISPLAY_FSP_CALLS_AND_STATUS is not set
868
874
# CONFIG_DISPLAY_FSP_HEADER is not set
869
875
# CONFIG_VERIFY_HOBS is not set
870
- # CONFIG_DISPLAY_FSP_VERSION_INFO is not set
876
+ CONFIG_DISPLAY_FSP_VERSION_INFO=y
871
877
CONFIG_HAVE_GPIO_SNAPSHOT_VERIFY_SUPPORT=y
872
878
# CONFIG_CHECK_GPIO_CONFIG_CHANGES is not set
873
879
0 commit comments