iPXE
shimmgmt.c
Go to the documentation of this file.
1 /*
2  * Copyright (C) 2023 Michael Brown <mbrown@fensystems.co.uk>.
3  *
4  * This program is free software; you can redistribute it and/or
5  * modify it under the terms of the GNU General Public License as
6  * published by the Free Software Foundation; either version 2 of the
7  * License, or any later version.
8  *
9  * This program is distributed in the hope that it will be useful, but
10  * WITHOUT ANY WARRANTY; without even the implied warranty of
11  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
12  * General Public License for more details.
13  *
14  * You should have received a copy of the GNU General Public License
15  * along with this program; if not, write to the Free Software
16  * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
17  * 02110-1301, USA.
18  *
19  * You can also choose to distribute this program under the terms of
20  * the Unmodified Binary Distribution Licence (as given in the file
21  * COPYING.UBDL), provided that you have satisfied its requirements.
22  */
23 
24 FILE_LICENCE ( GPL2_OR_LATER_OR_UBDL );
25 FILE_SECBOOT ( PERMITTED );
26 
27 #include <ipxe/efi/efi.h>
28 #include <ipxe/efi/efi_shim.h>
29 #include <usr/shimmgmt.h>
30 
31 /** @file
32  *
33  * EFI shim management
34  *
35  */
36 
37 /**
38  * Set shim image
39  *
40  * @v image Shim image, or NULL to clear shim
41  * @v require_loader Require use of a third party loader
42  * @v allow_pxe Allow use of PXE base code
43  * @v allow_sbat Allow SBAT variable access
44  * @ret rc Return status code
45  */
46 int shim ( struct image *image, int require_loader, int allow_pxe,
47  int allow_sbat ) {
48 
49  /* Record (or clear) shim image */
50  image_tag ( image, &efi_shim );
51 
52  /* Avoid including image in constructed initrd */
53  if ( image )
54  image_hide ( image );
55 
56  /* Record configuration */
57  efi_shim_require_loader = require_loader;
58  efi_shim_allow_pxe = allow_pxe;
59  efi_shim_allow_sbat = allow_sbat;
60 
61  return 0;
62 }
int efi_shim_allow_sbat
Allow SBAT variable access.
Definition: efi_shim.c:107
EFI shim management.
FILE_LICENCE(GPL2_OR_LATER_OR_UBDL)
An executable image.
Definition: image.h:24
FILE_SECBOOT(PERMITTED)
int efi_shim_require_loader
Require use of a third party loader binary.
Definition: efi_shim.c:69
UEFI shim special handling.
int efi_shim_allow_pxe
Allow use of PXE base code protocol.
Definition: efi_shim.c:87
EFI API.
static struct image * image_tag(struct image *image, struct image_tag *tag)
Tag image.
Definition: image.h:297
int shim(struct image *image, int require_loader, int allow_pxe, int allow_sbat)
Set shim image.
Definition: shimmgmt.c:46
static void image_hide(struct image *image)
Mark image as hidden.
Definition: image.h:286