From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received-SPF: Pass (sender SPF authorized) identity=mailfrom; client-ip=134.134.136.65; helo=mga03.intel.com; envelope-from=qin.long@intel.com; receiver=edk2-devel@lists.01.org Received: from mga03.intel.com (mga03.intel.com [134.134.136.65]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ml01.01.org (Postfix) with ESMTPS id 1BA4221F3C1B1 for ; Tue, 10 Oct 2017 09:50:44 -0700 (PDT) Received: from orsmga004.jf.intel.com ([10.7.209.38]) by orsmga103.jf.intel.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 10 Oct 2017 09:54:12 -0700 X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.43,359,1503385200"; d="scan'208,217";a="137128277" Received: from fmsmsx106.amr.corp.intel.com ([10.18.124.204]) by orsmga004.jf.intel.com with ESMTP; 10 Oct 2017 09:54:12 -0700 Received: from fmsmsx152.amr.corp.intel.com (10.18.125.5) by FMSMSX106.amr.corp.intel.com (10.18.124.204) with Microsoft SMTP Server (TLS) id 14.3.319.2; Tue, 10 Oct 2017 09:54:11 -0700 Received: from shsmsx152.ccr.corp.intel.com (10.239.6.52) by FMSMSX152.amr.corp.intel.com (10.18.125.5) with Microsoft SMTP Server (TLS) id 14.3.319.2; Tue, 10 Oct 2017 09:53:32 -0700 Received: from shsmsx103.ccr.corp.intel.com ([169.254.4.213]) by SHSMSX152.ccr.corp.intel.com ([169.254.6.93]) with mapi id 14.03.0319.002; Wed, 11 Oct 2017 00:53:30 +0800 From: "Long, Qin" To: "Yao, Jiewen" , Laszlo Ersek CC: Brijesh Singh , "edk2-devel@lists.01.org" , "Justen, Jordan L" , Tom Lendacky , "Zhang, Chao B" Thread-Topic: [edk2] [PATCH v2 1/2] SecurityPkg: make PcdOptionRomImageVerificationPolicy dynamic Thread-Index: AQHTQbrsBrFot2cML0+x91flTQpzG6LcktQAgAC5+MA= Date: Tue, 10 Oct 2017 16:53:30 +0000 Message-ID: References: <20171005201642.122619-1-brijesh.singh@amd.com> <74D8A39837DF1E4DA445A8C0B3885C503A9D7CF9@shsmsx102.ccr.corp.intel.com> In-Reply-To: <74D8A39837DF1E4DA445A8C0B3885C503A9D7CF9@shsmsx102.ccr.corp.intel.com> Accept-Language: zh-CN, en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: dlp-product: dlpe-windows dlp-version: 11.0.0.116 dlp-reaction: no-action x-originating-ip: [10.239.127.40] MIME-Version: 1.0 X-Content-Filtered-By: Mailman/MimeDel 2.1.22 Subject: Re: [PATCH v2 1/2] SecurityPkg: make PcdOptionRomImageVerificationPolicy dynamic X-BeenThere: edk2-devel@lists.01.org X-Mailman-Version: 2.1.22 Precedence: list List-Id: EDK II Development List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 10 Oct 2017 16:50:45 -0000 Content-Language: en-US Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 VGhlIHBhdGNoIGxvb2tzIGdvb2QgdG8gbWUuDQoNClJldmlld2VkLWJ5OiBMb25nIFFpbiA8cWlu LmxvbmdAaW50ZWwuY29tPg0KDQoNCkJlc3QgUmVnYXJkcyAmIFRoYW5rcywNCkxPTkcsIFFpbg0K DQpGcm9tOiBZYW8sIEppZXdlbg0KU2VudDogVHVlc2RheSwgT2N0b2JlciAxMCwgMjAxNyA5OjQ3 IFBNDQpUbzogTGFzemxvIEVyc2VrIDxsZXJzZWtAcmVkaGF0LmNvbT47IExvbmcsIFFpbiA8cWlu LmxvbmdAaW50ZWwuY29tPg0KQ2M6IEJyaWplc2ggU2luZ2ggPGJyaWplc2guc2luZ2hAYW1kLmNv bT47IGVkazItZGV2ZWxAbGlzdHMuMDEub3JnOyBKdXN0ZW4sIEpvcmRhbiBMIDxqb3JkYW4ubC5q dXN0ZW5AaW50ZWwuY29tPjsgVG9tIExlbmRhY2t5IDx0aG9tYXMubGVuZGFja3lAYW1kLmNvbT47 IFpoYW5nLCBDaGFvIEIgPGNoYW8uYi56aGFuZ0BpbnRlbC5jb20+DQpTdWJqZWN0OiBSRTogW2Vk azJdIFtQQVRDSCB2MiAxLzJdIFNlY3VyaXR5UGtnOiBtYWtlIFBjZE9wdGlvblJvbUltYWdlVmVy aWZpY2F0aW9uUG9saWN5IGR5bmFtaWMNCg0KSSBhbSBPSyBvbiB0aGlzIHBhdGNoLg0KDQpSZXZp ZXdlZC1ieTogSmlld2VuLnlhb0BpbnRlbC5jb208bWFpbHRvOkppZXdlbi55YW9AaW50ZWwuY29t Pg0KDQpCVFc6IERvIHlvdSBhbHNvIG5lZWQgdXBkYXRlIFBjZFJlbW92YWJsZU1lZGlhSW1hZ2VW ZXJpZmljYXRpb25Qb2xpY3kgYW5kIFBjZEZpeGVkTWVkaWFJbWFnZVZlcmlmaWNhdGlvblBvbGlj eT8NCg0KDQpUaGFuayB5b3UNCllhbyBKaWV3ZW4NCg0KDQpGcm9tOiBMYXN6bG8gRXJzZWsgW21h aWx0bzpsZXJzZWtAcmVkaGF0LmNvbV0NClNlbnQ6IFR1ZXNkYXksIE9jdG9iZXIgMTAsIDIwMTcg NzoyOCBQTQ0KVG86IExvbmcsIFFpbiA8cWluLmxvbmdAaW50ZWwuY29tPG1haWx0bzpxaW4ubG9u Z0BpbnRlbC5jb20+PjsgWWFvLCBKaWV3ZW4gPGppZXdlbi55YW9AaW50ZWwuY29tPG1haWx0bzpq aWV3ZW4ueWFvQGludGVsLmNvbT4+DQpDYzogQnJpamVzaCBTaW5naCA8YnJpamVzaC5zaW5naEBh bWQuY29tPG1haWx0bzpicmlqZXNoLnNpbmdoQGFtZC5jb20+PjsgZWRrMi1kZXZlbEBsaXN0cy4w MS5vcmc8bWFpbHRvOmVkazItZGV2ZWxAbGlzdHMuMDEub3JnPjsgSnVzdGVuLCBKb3JkYW4gTCA8 am9yZGFuLmwuanVzdGVuQGludGVsLmNvbTxtYWlsdG86am9yZGFuLmwuanVzdGVuQGludGVsLmNv bT4+OyBUb20gTGVuZGFja3kgPHRob21hcy5sZW5kYWNreUBhbWQuY29tPG1haWx0bzp0aG9tYXMu bGVuZGFja3lAYW1kLmNvbT4+OyBaaGFuZywgQ2hhbyBCIDxjaGFvLmIuemhhbmdAaW50ZWwuY29t PG1haWx0bzpjaGFvLmIuemhhbmdAaW50ZWwuY29tPj4NClN1YmplY3Q6IFJlOiBbZWRrMl0gW1BB VENIIHYyIDEvMl0gU2VjdXJpdHlQa2c6IG1ha2UgUGNkT3B0aW9uUm9tSW1hZ2VWZXJpZmljYXRp b25Qb2xpY3kgZHluYW1pYw0KDQpKaWV3ZW4sIFFpbiwNCg0KY2FuIHlvdSBndXlzIHBlcmhhcHMg aGVscCB3aXRoIHJldmlld2luZyB0aGlzIHBhdGNoPyAoVGhlIHNlY29uZCBwYXRjaA0KaW4gdGhl IHNlcmllcyBpcyBmb3IgT3ZtZlBrZywgYW5kIGl0IGRlcGVuZHMgb24gdGhpcyBvbmUuKQ0KDQpU aGFua3MhDQpMYXN6bG8NCg0KT24gMTAvMDUvMTcgMjI6MTYsIEJyaWplc2ggU2luZ2ggd3JvdGU6 DQo+IEJ5IGRlZmF1bHQgdGhlIGltYWdlIHZlcmlmaWNhdGlvbiBwb2xpY3kgZm9yIG9wdGlvbiBS T00gaW1hZ2VzIGlzIDB4NA0KPiAoREVOWV9FWEVDVVRFX09OX1NFQ1VSSVRZX1ZJT0xBVElPTikg YnV0IHRoZSBmb2xsb3dpbmcgT3ZtZlBrZyBjb21taXQ6DQo+DQo+IDFmZWE5ZGRiNGUzZiBPdm1m UGtnOiBleGVjdXRlIG9wdGlvbiBST00gaW1hZ2VzIHJlZ2FyZGxlc3Mgb2YgU2VjdXJlIEJvb3QN Cj4NCj4gc2V0IGl0IHRvIDB4MCAoQUxXQVlTX0VYRUNVVEUpLiBUaGlzIGlzIGZpbmUgYmVjYXVz ZSB0eXBpY2FsbHkgb3B0aW9uDQo+IFJPTXMgY29tZXMgZnJvbSBob3N0LXNpZGUgYW5kIG1vc3Qg b2YgdGhlIHRpbWUgY2xvdWQgcHJvdmlkZXIgKGkuZQ0KPiBoeXBlcnZpc29yKSBoYXZlIGZ1bGwg YWNjZXNzIG92ZXIgYSBndWVzdCBhbnl3YXkuIEJ1dCB3aGVuIHNlY3VyZSBib290DQo+IGlzIGVu YWJsZWQsIHdlIHdvdWxkIGxpa2UgdG8gZGVueSB0aGUgZXhlY3V0aW9uIG9mIG9wdGlvbiBST00g d2hlbg0KPiBTRVYgaXMgYWN0aXZlLiBIYXZpbmcgZHluYW1pYyBQY2Qgd2lsbCBnaXZlIHVzIGZs ZXhpYmlsaXR5IHRvIHNldCB0aGUNCj4gc2VjdXJpdHkgcG9saWN5IGF0IHRoZSBydW50aW1lLg0K Pg0KPiBGaXhlczogaHR0cHM6Ly9idWd6aWxsYS50aWFub2NvcmUub3JnL3Nob3dfYnVnLmNnaT9p ZD03MjgNCj4gQ2M6IENoYW8gWmhhbmcgPGNoYW8uYi56aGFuZ0BpbnRlbC5jb208bWFpbHRvOmNo YW8uYi56aGFuZ0BpbnRlbC5jb20+Pg0KPiBDYzogSm9yZGFuIEp1c3RlbiA8am9yZGFuLmwuanVz dGVuQGludGVsLmNvbTxtYWlsdG86am9yZGFuLmwuanVzdGVuQGludGVsLmNvbT4+DQo+IENjOiBM YXN6bG8gRXJzZWsgPGxlcnNla0ByZWRoYXQuY29tPG1haWx0bzpsZXJzZWtAcmVkaGF0LmNvbT4+ DQo+IENjOiBUb20gTGVuZGFja3kgPHRob21hcy5sZW5kYWNreUBhbWQuY29tPG1haWx0bzp0aG9t YXMubGVuZGFja3lAYW1kLmNvbT4+DQo+IENvbnRyaWJ1dGVkLXVuZGVyOiBUaWFub0NvcmUgQ29u dHJpYnV0aW9uIEFncmVlbWVudCAxLjENCj4gU2lnbmVkLW9mZi1ieTogQnJpamVzaCBTaW5naCA8 YnJpamVzaC5zaW5naEBhbWQuY29tPG1haWx0bzpicmlqZXNoLnNpbmdoQGFtZC5jb20+Pg0KPiAt LS0NCj4NCj4gQ2hhbmdlcyBzaW5jZSB2MToNCj4gICogQWRkIENvbnRyaWJ1dGVkLXVuZGVyIHRh Zw0KPg0KPiAgU2VjdXJpdHlQa2cvU2VjdXJpdHlQa2cuZGVjIHwgMjQgKysrKysrKysrKy0tLS0t LS0tLS0NCj4gIDEgZmlsZSBjaGFuZ2VkLCAxMiBpbnNlcnRpb25zKCspLCAxMiBkZWxldGlvbnMo LSkNCj4NCj4gZGlmZiAtLWdpdCBhL1NlY3VyaXR5UGtnL1NlY3VyaXR5UGtnLmRlYyBiL1NlY3Vy aXR5UGtnL1NlY3VyaXR5UGtnLmRlYw0KPiBpbmRleCAwMWJmZjAxZWQ1MGEuLjRlMzJkMTcyZDdk OSAxMDA2NDQNCj4gLS0tIGEvU2VjdXJpdHlQa2cvU2VjdXJpdHlQa2cuZGVjDQo+ICsrKyBiL1Nl Y3VyaXR5UGtnL1NlY3VyaXR5UGtnLmRlYw0KPiBAQCAtMjMwLDE4ICsyMzAsNiBAQCBbUHBpc10N Cj4gICMNCj4NCj4gIFtQY2RzRml4ZWRBdEJ1aWxkLCBQY2RzUGF0Y2hhYmxlSW5Nb2R1bGVdDQo+ IC0gICMjIEltYWdlIHZlcmlmaWNhdGlvbiBwb2xpY3kgZm9yIE9wdGlvblJvbS4gT25seSBmb2xs b3dpbmcgdmFsdWVzIGFyZSB2YWxpZDo8QlI+PEJSPg0KPiAtICAjICBOT1RFOiBEbyBOT1QgdXNl IDB4NSBhbmQgMHgyIHNpbmNlIGl0IHZpb2xhdGVzIHRoZSBVRUZJIHNwZWNpZmljYXRpb24gYW5k IGhhcyBiZWVuIHJlbW92ZWQuPEJSPg0KPiAtICAjICAweDAwMDAwMDAwICAgICAgQWx3YXlzIHRy dXN0IHRoZSBpbWFnZS48QlI+DQo+IC0gICMgIDB4MDAwMDAwMDEgICAgICBOZXZlciB0cnVzdCB0 aGUgaW1hZ2UuPEJSPg0KPiAtICAjICAweDAwMDAwMDAyICAgICAgQWxsb3cgZXhlY3V0aW9uIHdo ZW4gdGhlcmUgaXMgc2VjdXJpdHkgdmlvbGF0aW9uLjxCUj4NCj4gLSAgIyAgMHgwMDAwMDAwMyAg ICAgIERlZmVyIGV4ZWN1dGlvbiB3aGVuIHRoZXJlIGlzIHNlY3VyaXR5IHZpb2xhdGlvbi48QlI+ DQo+IC0gICMgIDB4MDAwMDAwMDQgICAgICBEZW55IGV4ZWN1dGlvbiB3aGVuIHRoZXJlIGlzIHNl Y3VyaXR5IHZpb2xhdGlvbi48QlI+DQo+IC0gICMgIDB4MDAwMDAwMDUgICAgICBRdWVyeSB1c2Vy IHdoZW4gdGhlcmUgaXMgc2VjdXJpdHkgdmlvbGF0aW9uLjxCUj4NCj4gLSAgIyBAUHJvbXB0IFNl dCBwb2xpY3kgZm9yIHRoZSBpbWFnZSBmcm9tIE9wdGlvblJvbS4NCj4gLSAgIyBAVmFsaWRSYW5n ZSAweDgwMDAwMDAxIHwgMHgwMDAwMDAwMCAtIDB4MDAwMDAwMDUNCj4gLSAgZ0VmaVNlY3VyaXR5 UGtnVG9rZW5TcGFjZUd1aWQuUGNkT3B0aW9uUm9tSW1hZ2VWZXJpZmljYXRpb25Qb2xpY3l8MHgw NHxVSU5UMzJ8MHgwMDAwMDAwMQ0KPiAtDQo+ICAgICMjIEltYWdlIHZlcmlmaWNhdGlvbiBwb2xp Y3kgZm9yIHJlbW92YWJsZSBtZWRpYSB3aGljaCBpbmNsdWRlcyBDRC1ST00sIEZsb3BweSwgVVNC IGFuZCBuZXR3b3JrLg0KPiAgICAjICBPbmx5IGZvbGxvd2luZyB2YWx1ZXMgYXJlIHZhbGlkOjxC Uj48QlI+DQo+ICAgICMgIE5PVEU6IERvIE5PVCB1c2UgMHg1IGFuZCAweDIgc2luY2UgaXQgdmlv bGF0ZXMgdGhlIFVFRkkgc3BlY2lmaWNhdGlvbiBhbmQgaGFzIGJlZW4gcmVtb3ZlZC48QlI+DQo+ IEBAIC0zMDQsNiArMjkyLDE4IEBAIFtQY2RzRml4ZWRBdEJ1aWxkLCBQY2RzUGF0Y2hhYmxlSW5N b2R1bGVdDQo+ICAgIGdFZmlTZWN1cml0eVBrZ1Rva2VuU3BhY2VHdWlkLlBjZFN0YXR1c0NvZGVT dWJDbGFzc1RwbURldmljZXwweDAxMEQwMDAwfFVJTlQzMnwweDAwMDAwMDA3DQo+DQo+ICBbUGNk c0ZpeGVkQXRCdWlsZCwgUGNkc1BhdGNoYWJsZUluTW9kdWxlLCBQY2RzRHluYW1pYywgUGNkc0R5 bmFtaWNFeF0NCj4gKyAgIyMgSW1hZ2UgdmVyaWZpY2F0aW9uIHBvbGljeSBmb3IgT3B0aW9uUm9t LiBPbmx5IGZvbGxvd2luZyB2YWx1ZXMgYXJlIHZhbGlkOjxCUj48QlI+DQo+ICsgICMgIE5PVEU6 IERvIE5PVCB1c2UgMHg1IGFuZCAweDIgc2luY2UgaXQgdmlvbGF0ZXMgdGhlIFVFRkkgc3BlY2lm aWNhdGlvbiBhbmQgaGFzIGJlZW4gcmVtb3ZlZC48QlI+DQo+ICsgICMgIDB4MDAwMDAwMDAgICAg ICBBbHdheXMgdHJ1c3QgdGhlIGltYWdlLjxCUj4NCj4gKyAgIyAgMHgwMDAwMDAwMSAgICAgIE5l dmVyIHRydXN0IHRoZSBpbWFnZS48QlI+DQo+ICsgICMgIDB4MDAwMDAwMDIgICAgICBBbGxvdyBl eGVjdXRpb24gd2hlbiB0aGVyZSBpcyBzZWN1cml0eSB2aW9sYXRpb24uPEJSPg0KPiArICAjICAw eDAwMDAwMDAzICAgICAgRGVmZXIgZXhlY3V0aW9uIHdoZW4gdGhlcmUgaXMgc2VjdXJpdHkgdmlv bGF0aW9uLjxCUj4NCj4gKyAgIyAgMHgwMDAwMDAwNCAgICAgIERlbnkgZXhlY3V0aW9uIHdoZW4g dGhlcmUgaXMgc2VjdXJpdHkgdmlvbGF0aW9uLjxCUj4NCj4gKyAgIyAgMHgwMDAwMDAwNSAgICAg IFF1ZXJ5IHVzZXIgd2hlbiB0aGVyZSBpcyBzZWN1cml0eSB2aW9sYXRpb24uPEJSPg0KPiArICAj IEBQcm9tcHQgU2V0IHBvbGljeSBmb3IgdGhlIGltYWdlIGZyb20gT3B0aW9uUm9tLg0KPiArICAj IEBWYWxpZFJhbmdlIDB4ODAwMDAwMDEgfCAweDAwMDAwMDAwIC0gMHgwMDAwMDAwNQ0KPiArICBn RWZpU2VjdXJpdHlQa2dUb2tlblNwYWNlR3VpZC5QY2RPcHRpb25Sb21JbWFnZVZlcmlmaWNhdGlv blBvbGljeXwweDA0fFVJTlQzMnwweDAwMDAwMDAxDQo+ICsNCj4gICAgIyMgSW5kaWNhdGVzIHRo ZSBwcmVzZW5jZSBvciBhYnNlbmNlIG9mIHRoZSBwbGF0Zm9ybSBvcGVyYXRvciBkdXJpbmcgZmly bXdhcmUgYm9vdGluZy4NCj4gICAgIyAgSWYgcGxhdGZvcm0gb3BlcmF0b3IgaXMgbm90IHBoeXNp Y2FsIHByZXNlbmNlIGR1cmluZyBib290LiBUUE0gd2lsbCBiZSBsb2NrZWQgYW5kIHRoZSBUUE0g Y29tbWFuZHMNCj4gICAgIyAgdGhhdCByZXF1aXJlZCBvcGVyYXRvciBwaHlzaWNhbCBwcmVzZW5j ZSBjYW4gbm90IHJ1bi48QlI+PEJSPg0KPg0K