aboutsummaryrefslogtreecommitdiff
path: root/src/config/defaults
diff options
context:
space:
mode:
authorMichael Brown <mcb30@ipxe.org>2023-02-20 14:08:49 +0000
committerMichael Brown <mcb30@ipxe.org>2023-02-20 14:53:10 +0000
commit471599dc7721d454b6658062c901b52038a78be2 (patch)
tree4829951380f8701b5909a9192e2e0678fe37a36d /src/config/defaults
parent7d71cf318a2a6fedde7aaf9303b1cdec0cf51660 (diff)
downloadipxe-471599dc7721d454b6658062c901b52038a78be2.zip
ipxe-471599dc7721d454b6658062c901b52038a78be2.tar.gz
ipxe-471599dc7721d454b6658062c901b52038a78be2.tar.bz2
[efi] Split out EFI_RNG_PROTOCOL as a separate entropy source
Commit 7ca801d ("[efi] Use the EFI_RNG_PROTOCOL as an entropy source if available") added EFI_RNG_PROTOCOL as an alternative entropy source via an ad-hoc mechanism specific to efi_entropy.c. Split out EFI_RNG_PROTOCOL to a separate entropy source, and allow the entropy core to handle the selection of RDRAND, EFI_RNG_PROTOCOL, or timer ticks as the active source. The fault detection logic added in commit a87537d ("[efi] Detect and disable seriously broken EFI_RNG_PROTOCOL implementations") may be removed completely, since the failure will already be detected by the generic ANS X9.82-mandated repetition count test and will now be handled gracefully by the entropy core. Signed-off-by: Michael Brown <mcb30@ipxe.org>
Diffstat (limited to 'src/config/defaults')
-rw-r--r--src/config/defaults/efi.h3
1 files changed, 2 insertions, 1 deletions
diff --git a/src/config/defaults/efi.h b/src/config/defaults/efi.h
index 16c5616..8e53b9a 100644
--- a/src/config/defaults/efi.h
+++ b/src/config/defaults/efi.h
@@ -19,7 +19,8 @@ FILE_LICENCE ( GPL2_OR_LATER_OR_UBDL );
#define SMBIOS_EFI
#define SANBOOT_EFI
#define BOFM_EFI
-#define ENTROPY_EFI
+#define ENTROPY_EFITICK
+#define ENTROPY_EFIRNG
#define TIME_EFI
#define REBOOT_EFI
#define ACPI_EFI