From 1d3b52dd4549cd78fe0dffb2476471cec6c3bb62 Mon Sep 17 00:00:00 2001
From: Daniel Micay Locking the bootloader is important as it enables full verified boot. It also
prevents using fastboot to flash, format or erase partitions. Verified boot will
- detect modifications to any of the OS partitions (vbmeta, boot/dtbo, product, system,
- vendor) and it will prevent reading any modified / corrupted data. If changes are
- detected, error correction data is used to attempt to obtain the original data at
- which point it's verified again which makes verified boot robust to non-malicious
- corruption.
In the bootloader interface, set it to locked: