summaryrefslogtreecommitdiff
path: root/trusty/coverage/coverage_test.cpp
diff options
context:
space:
mode:
authorDanny Lin <danny@kdrag0n.dev>2020-10-07 00:24:54 -0700
committeralk3pInjection <webmaster@raspii.tech>2022-01-26 23:10:42 +0800
commitadbb1c10dd503804988344c1905df3c23973cf0d (patch)
treed328d4a1d2c9395ca91a55e6103df8a22991398b /trusty/coverage/coverage_test.cpp
parent375d7503efe8553bf21384d48be54d6e946f8514 (diff)
init: Report valid verified boot for SafetyNet checkssugisawa
Google's SafetyNet attestation includes checks for the integrity of the verified boot chain, as reported by some ro.boot.* properties normally passed by the bootloader. Unconditionally reporting successful, valid values helps pass SafetyNet checks, as long as other system state is intact. However, the real prop values must be retained in recovery/fastbootd in order for fastbootd to allow/deny flashing correctly based on the bootloader lock state. This is accomplished by checking androidboot keys in the kernel cmdline and bootconfig (necessary on Pixel 6), and not spoofing anything if the boot isn't a normal full-blown Android boot. Change-Id: I66d23fd91d82906b00d5eb020668f01ae83ec31f
Diffstat (limited to 'trusty/coverage/coverage_test.cpp')
0 files changed, 0 insertions, 0 deletions