parent
6c57ce1586
commit
c3ad859ea0
|
@ -240,13 +240,16 @@ Intel/x86
|
||||||
|
|
||||||
Neutered ME required on these targets:
|
Neutered ME required on these targets:
|
||||||
|
|
||||||
`dell9020mt_nri_12mb`, `dell9020sff_nri_12mb`, `e5420_6mb`, `e5520_6mb`, `e5530_12mb`, `e6220_10mb`, `e6230_12mb`, `e6320_10mb`, `e6330_12mb`, `e6420_10mb`, `e6430_12mb`, `e6520_10mb`, `e6530_12mb`, `hp2170p_16mb`, `hp2560p_8mb`, `hp2570p_16mb`, `hp8200sff_4mb`, `hp8200sff_8mb`, `hp820g2_12mb`, `hp8300cmt_16mb`, `hp8300usdt_16mb`, `hp8460pintel_8mb`, `hp8470pintel_16mb`, `hp8560w_8mb`, `hp9470m_16mb`, `t1650_12mb`, `t420_8mb`, `t420s_8mb`, `t430_12mb`, `t440plibremrc_12mb`, `t520_8mb`, `t530_12mb`, `w530_12mb`, `w541_12mb`, `x220_8mb`, `x230_12mb`, `x230_16mb`, `x230t_12mb`, `x230t_16mb`
|
`dell9020mt_nri_12mb`, `dell9020sff_nri_12mb`, `e5420_6mb`, `e5520_6mb`, `e5530_12mb`, `e6220_10mb`, `e6230_12mb`, `e6320_10mb`, `e6330_12mb`, `e6420_10mb`, `e6430_12mb`, `e6520_10mb`, `e6530_12mb`, `hp2170p_16mb`, `hp2560p_8mb`, `hp2570p_16mb`, `hp8200sff_4mb`, `hp8200sff_8mb`, `hp820g2_12mb`, `hp8300cmt_16mb`, `hp8300usdt_16mb`, `hp8460pintel_8mb`, `hp8470pintel_16mb`, `hp8560w_8mb`, `hp9470m_16mb`, `t1650_12mb`, `t420_8mb`, `t420s_8mb`, `t430_12mb`, `t440plibremrc_12mb`, `t520_8mb`, `t530_12mb`, `w530_12mb`, `w541_12mb`, `x220_8mb`, `x230_12mb`, `x230_16mb`, `x230t_12mb`, `x230t_16mb`, `dell3050micro_fsp_16mb`, `dell3050micro_vfsp_16mb`, `t480_fsp_16mb`, `t480_vfsp_16mb`, `t480s_fsp_16mb`, `t480s_vfsp_16mb`
|
||||||
|
|
||||||
As stated, Libreboot provides this in a state where the ME is no longer a
|
As stated, Libreboot provides this in a state where the ME is no longer a
|
||||||
threat to security. It initialises itself, but then does nothing, so it's
|
threat to security. It initialises itself, but then does nothing, so it's
|
||||||
disabled. This is done using `me_cleaner`. See:
|
disabled. This is done using `me_cleaner`. See:
|
||||||
<https://github.com/corna/me_cleaner/wiki/How-does-it-work%3F>
|
<https://github.com/corna/me_cleaner/wiki/How-does-it-work%3F>
|
||||||
|
|
||||||
|
On MEv11-based platforms, such as the ThinkPad T480 and Dell OptiPlex 3050 Micro,
|
||||||
|
we also use [deguard](docs/install/deguard.md) to disable the Intel Boot Guard.
|
||||||
|
|
||||||
### KBC1126 EC firmware (HP laptops):
|
### KBC1126 EC firmware (HP laptops):
|
||||||
|
|
||||||
This applies to the following targets: `hp2170p_16mb`, `hp2560p_8mb`,
|
This applies to the following targets: `hp2170p_16mb`, `hp2560p_8mb`,
|
||||||
|
@ -261,6 +264,14 @@ it during the build process. Libreboot 20230423 onwards does scrub EC firmware
|
||||||
and provide functionality in a special script, to insert them with `cbfstool`
|
and provide functionality in a special script, to insert them with `cbfstool`
|
||||||
at the correct offset as defined by coreboot config for each board.
|
at the correct offset as defined by coreboot config for each board.
|
||||||
|
|
||||||
|
### Intel FSP
|
||||||
|
|
||||||
|
Provides romstage and raminit, used by coreboot on some boards. In Libreboot,
|
||||||
|
we use it for the following build targets:
|
||||||
|
|
||||||
|
`t480_fsp_16mb`, `t480_vfsp_16mb`, `t480s_fsp_16mb`, `t480s_vfsp_16mb`,
|
||||||
|
`dell3050micro_fsp_16mb`, `dell3050micro_vfsp_16mb`
|
||||||
|
|
||||||
### SMSC SCH5545 Environmental Control
|
### SMSC SCH5545 Environmental Control
|
||||||
|
|
||||||
This is a tiny firmware required for fan control, on Dell Precision T1650.
|
This is a tiny firmware required for fan control, on Dell Precision T1650.
|
||||||
|
|
|
@ -331,13 +331,16 @@ Intel/x86
|
||||||
|
|
||||||
Нейтралізований ME потрібен на цих цілях:
|
Нейтралізований ME потрібен на цих цілях:
|
||||||
|
|
||||||
`dell9020mt_nri_12mb`, `dell9020sff_nri_12mb`, `e5420_6mb`, `e5520_6mb`, `e5530_12mb`, `e6220_10mb`, `e6230_12mb`, `e6320_10mb`, `e6330_12mb`, `e6420_10mb`, `e6430_12mb`, `e6520_10mb`, `e6530_12mb`, `hp2170p_16mb`, `hp2560p_8mb`, `hp2570p_16mb`, `hp8200sff_4mb`, `hp8200sff_8mb`, `hp820g2_12mb`, `hp8300cmt_16mb`, `hp8300usdt_16mb`, `hp8460pintel_8mb`, `hp8470pintel_16mb`, `hp8560w_8mb`, `hp9470m_16mb`, `t1650_12mb`, `t420_8mb`, `t420s_8mb`, `t430_12mb`, `t440plibremrc_12mb`, `t520_8mb`, `t530_12mb`, `w530_12mb`, `w541_12mb`, `x220_8mb`, `x230_12mb`, `x230_16mb`, `x230t_12mb`, `x230t_16mb`
|
`dell9020mt_nri_12mb`, `dell9020sff_nri_12mb`, `e5420_6mb`, `e5520_6mb`, `e5530_12mb`, `e6220_10mb`, `e6230_12mb`, `e6320_10mb`, `e6330_12mb`, `e6420_10mb`, `e6430_12mb`, `e6520_10mb`, `e6530_12mb`, `hp2170p_16mb`, `hp2560p_8mb`, `hp2570p_16mb`, `hp8200sff_4mb`, `hp8200sff_8mb`, `hp820g2_12mb`, `hp8300cmt_16mb`, `hp8300usdt_16mb`, `hp8460pintel_8mb`, `hp8470pintel_16mb`, `hp8560w_8mb`, `hp9470m_16mb`, `t1650_12mb`, `t420_8mb`, `t420s_8mb`, `t430_12mb`, `t440plibremrc_12mb`, `t520_8mb`, `t530_12mb`, `w530_12mb`, `w541_12mb`, `x220_8mb`, `x230_12mb`, `x230_16mb`, `x230t_12mb`, `x230t_16mb`, `dell3050micro_fsp`, `dell3050micro_vfsp_16mb`, `t480_fsp_16mb`, `t480_vfsp_16mb`, `t480s_fsp_16mb`, `t480s_vfsp_16mb`
|
||||||
|
|
||||||
Як заявлено, Libreboot надає це в стані, де ME більше не є
|
Як заявлено, Libreboot надає це в стані, де ME більше не є
|
||||||
загрозою для безпеки. Він ініціалізує себе, але потім нічого не робить, тому його
|
загрозою для безпеки. Він ініціалізує себе, але потім нічого не робить, тому його
|
||||||
вимкнено. Це зроблено використовуючи `me_cleaner`. Дивіться:
|
вимкнено. Це зроблено використовуючи `me_cleaner`. Дивіться:
|
||||||
<https://github.com/corna/me_cleaner/wiki/How-does-it-work%3F>
|
<https://github.com/corna/me_cleaner/wiki/How-does-it-work%3F>
|
||||||
|
|
||||||
|
On MEv11-based platforms, such as the ThinkPad T480 and Dell OptiPlex 3050 Micro,
|
||||||
|
we also use [deguard](docs/install/deguard.md) to disable the Intel Boot Guard.
|
||||||
|
|
||||||
### KBC1126 EC firmware (HP laptops):
|
### KBC1126 EC firmware (HP laptops):
|
||||||
|
|
||||||
This applies to the following targets: `hp2170p_16mb`, `hp2560p_8mb`,
|
This applies to the following targets: `hp2170p_16mb`, `hp2560p_8mb`,
|
||||||
|
@ -352,6 +355,14 @@ it during the build process. Libreboot 20230423 onwards does scrub EC firmware
|
||||||
and provide functionality in a special script, to insert them with `cbfstool`
|
and provide functionality in a special script, to insert them with `cbfstool`
|
||||||
at the correct offset as defined by coreboot config for each board.
|
at the correct offset as defined by coreboot config for each board.
|
||||||
|
|
||||||
|
### Intel FSP
|
||||||
|
|
||||||
|
Provides romstage and raminit, used by coreboot on some boards. In Libreboot,
|
||||||
|
we use it for the following build targets:
|
||||||
|
|
||||||
|
`t480_fsp_16mb`, `t480_vfsp_16mb`, `t480s_fsp_16mb`, `t480s_vfsp_16mb`,
|
||||||
|
`dell3050micro_fsp_16mb`, `dell3050micro_vfsp_16mb`
|
||||||
|
|
||||||
### SMSC SCH5545 Environmental Control
|
### SMSC SCH5545 Environmental Control
|
||||||
|
|
||||||
This is a tiny firmware required for fan control, on Dell Precision T1650.
|
This is a tiny firmware required for fan control, on Dell Precision T1650.
|
||||||
|
|
Loading…
Reference in New Issue