firmware anti-rollback is actively used since Pixel 6
This commit is contained in:
parent
02ad1d7518
commit
03be1b8687
@ -556,9 +556,9 @@ curl -O https://releases.grapheneos.org/<var>DEVICE_NAME</var>-install-<var>VERS
|
||||
OS, it can be detected with these features.</p>
|
||||
|
||||
<p>Verified boot verifies the entirety of the firmware and OS images on every
|
||||
boot. The public key for the firmware images is burned into fuses in the SoC
|
||||
at the factory. Firmware security updates can also update the rollback index
|
||||
burned into fuses to provide rollback protection.</p>
|
||||
boot. The public key for the firmware images is burned into fuses in the SoC at
|
||||
the factory. Firmware security updates also update the rollback index burned
|
||||
into fuses to provide rollback protection.</p>
|
||||
|
||||
<p>The final firmware boot stage before the OS is responsible for verifying
|
||||
it. For the stock OS, it uses a hard-wired public key. Installing GrapheneOS
|
||||
|
@ -360,9 +360,9 @@
|
||||
OS, it can be detected with these features.</p>
|
||||
|
||||
<p>Verified boot verifies the entirety of the firmware and OS images on every
|
||||
boot. The public key for the firmware images is burned into fuses in the SoC
|
||||
at the factory. Firmware security updates can also update the rollback index
|
||||
burned into fuses to provide rollback protection.</p>
|
||||
boot. The public key for the firmware images is burned into fuses in the SoC at
|
||||
the factory. Firmware security updates also update the rollback index burned
|
||||
into fuses to provide rollback protection.</p>
|
||||
|
||||
<p>The final firmware boot stage before the OS is responsible for verifying
|
||||
it. For the stock OS, it uses a hard-wired public key. Installing GrapheneOS
|
||||
|
Loading…
x
Reference in New Issue
Block a user