diff --git a/tools/rimage/keys/Makefile.am b/tools/rimage/keys/Makefile.am deleted file mode 100644 index 06fe30713..000000000 --- a/tools/rimage/keys/Makefile.am +++ /dev/null @@ -1,9 +0,0 @@ -install-data-local: - @$(NORMAL_INSTALL) - $(mkinstalldirs) $(PEM_KEY_PREFIX); - $(INSTALL_DATA) otc_private_key.pem $(PEM_KEY_PREFIX) - $(INSTALL_DATA) otc_public_key.pem $(PEM_KEY_PREFIX) - -EXTRA_DIST = \ - otc_private_key.pem \ - otc_public_key.pem \ No newline at end of file diff --git a/tools/rimage/keys/README b/tools/rimage/keys/README deleted file mode 100644 index 3ece70cad..000000000 --- a/tools/rimage/keys/README +++ /dev/null @@ -1,34 +0,0 @@ -About -===== - -Firmware binary signing is for audio DSP is mandatory on Intel products from -Skylake onwards. i.e. no code signing on Baytrail, Cherrytrail, Braswell, -Haswell and Broadwell but mandatory on Skylake, Kabylake, Apollolake and -Cannonlake. - -rimage can now sign firmware binaries for Apollolake and Cannonlake targets. -This is done automatically as part of the "make bin" part of the build. - - -Key Pairs -========= - -The key included here is the Intel OTC (Opensource Technology Center) community -development key. It can be freely used by anyone and is intended for reference -board makers and firmware developers. - -** This key is NOT intended for locking down firmware on end user production -devices since the "private" key has been published here. A new key pair must -be genrated for securing firmware ! ** - -RSA Private and Public keys are generated as follows :- - -openssl genpkey -algorithm RSA -out private_key.pem -pkeyopt rsa_keygen_bits:2048 -openssl rsa -pubout -in private_key.pem -out public_key.pem - -The public key needs to be programmed into the OEM Key manifest (cavsManifest0) -within the BIOS in order to verify code signed with the private key. -Intel supplies tools to board makers to stitch the public key into the BIOS. - -The private key is used by rimage to sign the SOF binary. It should be kept -secret and secure for production signing. \ No newline at end of file diff --git a/tools/rimage/keys/otc_private_key.pem b/tools/rimage/keys/otc_private_key.pem deleted file mode 100644 index 03ad74926..000000000 --- a/tools/rimage/keys/otc_private_key.pem +++ /dev/null @@ -1,28 +0,0 @@ ------BEGIN PRIVATE KEY----- -MIIEvQIBADANBgkqhkiG9w0BAQEFAASCBKcwggSjAgEAAoIBAQC5Q68ZJyiWWrXb -TSjlj4I/UmgusmIfv5+MCtinahekLPasIvoBhmEAr/TBizlfhj2/VN4FKNsqy7HR -QGn+iLhqnVrzpEVug4EQIpkFxTnycKMQPSDvpIqq8VL9pUCvKokSMub0oTCwoxjJ -V81wJy+NE2AnamjtnuJEXqim9U5CGjsnVNSktv/YPbso/LYFjH658Fz5QGgWfbgi -BPNFwMvemSFOIXw2J2B91ayP9ZJeI2tLyEP9EMeQqU3Gd8T5LfHIUmibpPFe1JDM -s4HmIEs7Iay03EfwjEWLVd0P/fxv9I9YNTZAi+7o8IyrTNRHDsH55efW7V58GwfS -66po4QCFAgMBAAECggEBALf7IlktTR47iRv2/WUz5hnyQWoWVmHHD6+oWc2wCzhM -Os9pkLOQ+qYPF1ZZZ6mYi5uFsVKYZ0aRsM3oVRqkNdgS2m7YtObyC2q1oRdc7JX6 -C8Wlnx69XcQzEcK4qIsMB8Gd8UQBC3RvE79nxanaEFveYP/jqb5IqdVR19SuCYCU -EZurwwAnYeLg0VSSdVQHSGVMlHkDwhgVAvp5NryPXhml51pT0gzUwnvJOsUcrc0m -tqUa2yu7/Qju1/JtFL98RgW4x3mSo4TZO3B/d664pWPOxL72zCt7bD9s06ILZmga -z1oMLMwTaNaeYIBaRvjmssKOqLXmDvfc415V82SwMYUCgYEA2p2At6acrD8Xx5GO -GeCeUbZzm0Ke9zql1W+Diq89UroFX/i9XO9Mb/ZfwouC+5n3iLjyCG7jIaIwYAyV -2qim9sINeieepM54HqYz0235nX5CqLHPDobYLn5tsbNYvXYBWiyjRppG+cnprMBk -O6vLNXNc4sRemgbcmwT3sEYLLo8CgYEA2PInWZx0JoEXriEgefv/IZeyCjpaS9uH -OOaPVAJTJPaaZhazA4ANV2bzrQAigiXbOgzPkXyldy7T7d/gHfVYnHbyhGwMEa6u -WMnj5qFXPI0hYOOrJbqXofbfGkKC996eoQybnvE0WdIwscySIki1zAenE/5nVdCJ -HLwK9xXMKasCgYA/ZxSQrsqbjgTYhVdgG+vuqOqoac7uxtyXpSrSSvaPCpJKfjp1 -PJW/lwW4x3tqewH2biUL2xUWiRJcmOnRK76YrDj6Z4k0JQljYjJ/rFKLobW1dTQm -82a5PUOVGP2wnQvRWkbUUCQrh6q0xmuLfsyFqPqUbf090KWkc/Fd90KA8wKBgG6C -q9jSAbi7ebyR02FQJJ6QD3l2UBjkMvWhPNGmfYQOuofWeEoIKMOlBevSbcGuVwYz -EGkj/YXArOQ3borUN9c8ID2kbGF1ggpojVcmSLHnkmEwmDYX3rX6c5uE1gI9vMB9 -E6jbZbd7gqKPesFMGI9eNpXQugLUv4OLpmpHCEERAoGAMF5P9jSe3JirlZ7WaH7A -I1I23L3oZfkmrcxP7B860k1ZLHDtx/MtWLkb609fq1Q2lqRuvdoaur1kW+Rv9IHS -Db8cznu9jIz3OzmJ735lHDpomylzt0+nxL5rrUnoTyMsDK0kIWs03JhPYc0+S2Ip -lkkvYQHB1eUUCxMnTgzWRr4= ------END PRIVATE KEY----- diff --git a/tools/rimage/keys/otc_public_key.pem b/tools/rimage/keys/otc_public_key.pem deleted file mode 100644 index b8662bda0..000000000 --- a/tools/rimage/keys/otc_public_key.pem +++ /dev/null @@ -1,9 +0,0 @@ ------BEGIN PUBLIC KEY----- -MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuUOvGScollq1200o5Y+C -P1JoLrJiH7+fjArYp2oXpCz2rCL6AYZhAK/0wYs5X4Y9v1TeBSjbKsux0UBp/oi4 -ap1a86RFboOBECKZBcU58nCjED0g76SKqvFS/aVAryqJEjLm9KEwsKMYyVfNcCcv -jRNgJ2po7Z7iRF6opvVOQho7J1TUpLb/2D27KPy2BYx+ufBc+UBoFn24IgTzRcDL -3pkhTiF8NidgfdWsj/WSXiNrS8hD/RDHkKlNxnfE+S3xyFJom6TxXtSQzLOB5iBL -OyGstNxH8IxFi1XdD/38b/SPWDU2QIvu6PCMq0zURw7B+eXn1u1efBsH0uuqaOEA -hQIDAQAB ------END PUBLIC KEY-----