summaryrefslogtreecommitdiff
path: root/configs/lx2160aqds_tfa_SECURE_BOOT_defconfig
diff options
context:
space:
mode:
authorPeter Robinson <pbrobinson@gmail.com>2023-06-14 15:41:10 +0100
committerTom Rini <trini@konsulko.com>2023-07-14 15:21:07 -0400
commit10de1257079905ac383e7abf346a04221cafa620 (patch)
treed0e91747b9a90ad67b4aca23b864a58ba41402d3 /configs/lx2160aqds_tfa_SECURE_BOOT_defconfig
parent9e70676cf5281f0e37736ea42b59ef2e02907051 (diff)
downloadu-boot-10de1257079905ac383e7abf346a04221cafa620.tar.gz
u-boot-10de1257079905ac383e7abf346a04221cafa620.tar.bz2
u-boot-10de1257079905ac383e7abf346a04221cafa620.zip
disable NFS support by default
While NFS is widely used in data centres, and private networks it's quite a nuanced usecase for device firmware. A lot of devices already disable it. Various network protocols should really be opt in, not opt out, because they add extra size and are potential attack vectors from a security PoV. In the NFS case it doesn't really make sense for a lot of devices like tables, SBCs etc. It's also something we don't really want for SystemReady-IR due to security concerns. Signed-off-by: Peter Robinson <pbrobinson@gmail.com> Reviewed-by: Tom Rini <trini@konsulko.com> Reviewed-by: Ilias Apalodimas <ilias.apalodimas@linaro.org>
Diffstat (limited to 'configs/lx2160aqds_tfa_SECURE_BOOT_defconfig')
0 files changed, 0 insertions, 0 deletions