Software > Firmware

Validate installed firmware (eg. against officially signed firmware)

(1/1)

FlyingBlackbird:
How could I check the integrity of the installed (flashed) firmware of a Blackbird (or Talos) eg. against the officially downloadable firmware files (which are cryptographically signed)?

https://wiki.raptorcs.com/wiki/Blackbird/Firmware

MPC7500:
You can verify the firmware with Flashrom and a Bus Pirate. But there should be an easier solution. But sadly, that's all I can say.

FlyingBlackbird:

--- Quote from: MPC7500 on February 12, 2020, 08:14:33 am ---You can verify the firmware with Flashrom and a Bus Pirate.

--- End quote ---

I have a CH341A device which is supported by the flashrom Linux program but I could not yet find instructions which parts of the memory are relevant for calculating the checksums and
also want to avoid removing the flash chips from the socket just to read them (perhaps this it not required since the flash update is possible from within OpenBMC but if OpenBMC is
compromised it could manipulate the reported checksum too).

Navigation

[0] Message Index

Go to full version