blob: ec56dc2f0ff2f50b3ba3b99ac5d6e2c3a3923851 [file] [log] [blame]
David Vincze03368b82020-04-01 12:53:53 +02001# Copyright (c) 2017-2020 Linaro Limited
David Vinczec3084132020-02-18 14:50:47 +01002# Copyright (c) 2020 Arm Limited
Andrzej Puzdrowski64ad0922017-09-22 11:33:41 +02003#
4# SPDX-License-Identifier: Apache-2.0
5#
6
Marti Bolivar0e091c92018-04-12 11:23:16 -04007mainmenu "MCUboot configuration"
Andrzej Puzdrowski64ad0922017-09-22 11:33:41 +02008
Marti Bolivar0e091c92018-04-12 11:23:16 -04009comment "MCUboot-specific configuration options"
Andrzej Puzdrowski64ad0922017-09-22 11:33:41 +020010
Emanuele Di Santo865777d2018-11-08 11:28:15 +010011# Hidden option to mark a project as MCUboot
12config MCUBOOT
13 default y
14 bool
Rajavardhan Gundi07ba28f2018-12-10 15:44:48 +053015 select MPU_ALLOW_FLASH_WRITE if ARM_MPU
Marcin Niestrojc6be76a2020-03-22 14:39:35 +010016 select USE_DT_CODE_PARTITION if HAS_FLASH_LOAD_OFFSET
Emanuele Di Santo865777d2018-11-08 11:28:15 +010017
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040018config BOOT_USE_MBEDTLS
19 bool
20 # Hidden option
21 default n
22 help
23 Use mbedTLS for crypto primitives.
24
25config BOOT_USE_TINYCRYPT
26 bool
27 # Hidden option
28 default n
Sebastian Bøe913a3852019-01-22 13:53:12 +010029 # When building for ECDSA, we use our own copy of mbedTLS, so the
30 # Zephyr one must not be enabled or the MBEDTLS_CONFIG_FILE macros
31 # will collide.
32 depends on ! MBEDTLS
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040033 help
34 Use TinyCrypt for crypto primitives.
35
Sigvart Hovlandebd05032019-03-21 10:47:32 +010036config BOOT_USE_CC310
37 bool
38 # Hidden option
39 default n
40 # When building for ECDSA, we use our own copy of mbedTLS, so the
41 # Zephyr one must not be enabled or the MBEDTLS_CONFIG_FILE macros
42 # will collide.
43 depends on ! MBEDTLS
44 help
45 Use cc310 for crypto primitives.
46
47config BOOT_USE_NRF_CC310_BL
48 bool
49 default n
50
51config NRFXLIB_CRYPTO
52 bool
53 default n
54
55config NRF_CC310_BL
56 bool
57 default n
58
Andrzej Puzdrowski97543282018-04-12 15:16:56 +020059menu "MCUBoot settings"
60
Andrzej Puzdrowskifdff3e12020-09-15 08:23:25 +020061config SINGLE_APPLICATION_SLOT
62 bool "Single slot bootloader"
Dominik Ermel4dc3f442020-05-26 08:45:14 +000063 default n
64 help
65 Single image area is used for application which means that
66 uploading a new application overwrites the one that previously
67 occupied the area.
68
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040069choice
70 prompt "Signature type"
Håkon Øye Amundsenee7282d2020-09-28 09:48:29 +000071 default BOOT_SIGNATURE_TYPE_ECDSA_P256 if HAS_HW_NRF_CC310
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040072 default BOOT_SIGNATURE_TYPE_RSA
73
Arvin Farahmandfb5ec182020-05-05 11:44:12 -040074config BOOT_SIGNATURE_TYPE_NONE
75 bool "No signature; use only hash check"
76 select BOOT_USE_TINYCRYPT
77
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040078config BOOT_SIGNATURE_TYPE_RSA
79 bool "RSA signatures"
80 select BOOT_USE_MBEDTLS
Marti Bolivara4818a52018-04-12 13:02:38 -040081 select MBEDTLS
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040082
Fabio Utzig105b59a2019-05-13 15:08:12 -070083if BOOT_SIGNATURE_TYPE_RSA
84config BOOT_SIGNATURE_TYPE_RSA_LEN
85 int "RSA signature length"
86 range 2048 3072
87 default 2048
88endif
89
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040090config BOOT_SIGNATURE_TYPE_ECDSA_P256
91 bool "Elliptic curve digital signatures with curve P-256"
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -040092
Sigvart Hovlandebd05032019-03-21 10:47:32 +010093if BOOT_SIGNATURE_TYPE_ECDSA_P256
94choice
95 prompt "Ecdsa implementation"
Håkon Øye Amundsenee7282d2020-09-28 09:48:29 +000096 default BOOT_ECDSA_CC310 if HAS_HW_NRF_CC310
Fabio Utzig34e93a52020-02-03 09:59:53 -030097 default BOOT_ECDSA_TINYCRYPT
Håkon Øye Amundsenee7282d2020-09-28 09:48:29 +000098
Fabio Utzig34e93a52020-02-03 09:59:53 -030099config BOOT_ECDSA_TINYCRYPT
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100100 bool "Use tinycrypt"
101 select BOOT_USE_TINYCRYPT
Håkon Øye Amundsenee7282d2020-09-28 09:48:29 +0000102
103config BOOT_ECDSA_CC310
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100104 bool "Use CC310"
Håkon Øye Amundsenee7282d2020-09-28 09:48:29 +0000105 depends on HAS_HW_NRF_CC310
106 select BOOT_USE_NRF_CC310_BL
107 select NRF_CC310_BL
108 select NRFXLIB_CRYPTO
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100109 select BOOT_USE_CC310
Håkon Øye Amundsenee7282d2020-09-28 09:48:29 +0000110endchoice # Ecdsa implementation
Sigvart Hovlandebd05032019-03-21 10:47:32 +0100111endif
Fabio Utzig34e93a52020-02-03 09:59:53 -0300112
113config BOOT_SIGNATURE_TYPE_ED25519
114 bool "Edwards curve digital signatures using ed25519"
115
116if BOOT_SIGNATURE_TYPE_ED25519
117choice
118 prompt "Ecdsa implementation"
119 default BOOT_ED25519_TINYCRYPT
120config BOOT_ED25519_TINYCRYPT
121 bool "Use tinycrypt"
122 select BOOT_USE_TINYCRYPT
123config BOOT_ED25519_MBEDTLS
124 bool "Use mbedTLS"
125 select BOOT_USE_MBEDTLS
126 select MBEDTLS
127endchoice
128endif
129
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400130endchoice
131
Fabio Utzigc690c762018-04-26 10:51:09 -0300132config BOOT_SIGNATURE_KEY_FILE
133 string "PEM key file"
Håkon Øye Amundsen705c6c22020-09-28 09:45:40 +0000134 default "root-ec-p256.pem" if BOOT_SIGNATURE_TYPE_ECDSA_P256
135 default "root-ed25519.pem" if BOOT_SIGNATURE_TYPE_ED25519
136 default "root-rsa-3072.pem" if BOOT_SIGNATURE_TYPE_RSA && BOOT_SIGNATURE_TYPE_RSA_LEN=3072
137 default "root-rsa-2048.pem" if BOOT_SIGNATURE_TYPE_RSA && BOOT_SIGNATURE_TYPE_RSA_LEN=2048
Fabio Utzigc690c762018-04-26 10:51:09 -0300138 default ""
139 help
Marek Pietabdcfc852020-08-04 02:22:55 -0700140 You can use either absolute or relative path.
141 In case relative path is used, the build system assumes that it starts
142 from the directory where the MCUBoot KConfig configuration file is
143 located. If the key file is not there, the build system uses relative
144 path that starts from the MCUBoot repository root directory.
Fabio Utzigc690c762018-04-26 10:51:09 -0300145 The key file will be parsed by imgtool's getpub command and a .c source
146 with the public key information will be written in a format expected by
147 MCUboot.
148
Andrzej Puzdrowski9a605b62020-03-16 13:34:30 +0100149config MCUBOOT_CLEANUP_ARM_CORE
150 bool "Perform core cleanup before chain-load the application"
151 depends on CPU_CORTEX_M
152 default y
153
Marti Bolivara4818a52018-04-12 13:02:38 -0400154config MBEDTLS_CFG_FILE
155 default "mcuboot-mbedtls-cfg.h"
156
David Vincze03368b82020-04-01 12:53:53 +0200157config BOOT_HW_KEY
158 bool "Use HW key for image verification"
159 default n
160 help
161 Use HW key for image verification, otherwise the public key is embedded
162 in MCUBoot. If enabled the public key is appended to the signed image
163 and requires the hash of the public key to be provisioned to the device
164 beforehand.
165
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400166config BOOT_VALIDATE_SLOT0
David Vincze2d736ad2019-02-18 11:50:22 +0100167 bool "Validate image in the primary slot on every boot"
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400168 default y
169 help
David Vincze2d736ad2019-02-18 11:50:22 +0100170 If y, the bootloader attempts to validate the signature of the
171 primary slot every boot. This adds the signature check time to
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400172 every boot, but can mitigate against some changes that are
173 able to modify the flash image itself.
174
Andrzej Puzdrowskifdff3e12020-09-15 08:23:25 +0200175if !SINGLE_APPLICATION_SLOT
David Vincze5a6e1812020-06-29 13:34:42 +0200176choice
177 prompt "Image upgrade modes"
178 default BOOT_SWAP_USING_MOVE if SOC_FAMILY_NRF
179 default BOOT_SWAP_USING_SCRATCH
180
181config BOOT_SWAP_USING_SCRATCH
182 bool "Swap mode that run with the scratch partition"
183 help
184 This is the most conservative swap mode but it can work even on
185 devices with heterogeneous flash page layout.
186
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400187config BOOT_UPGRADE_ONLY
188 bool "Overwrite image updates instead of swapping"
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400189 help
David Vincze2d736ad2019-02-18 11:50:22 +0100190 If y, overwrite the primary slot with the upgrade image instead
191 of swapping them. This prevents the fallback recovery, but
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400192 uses a much simpler code path.
193
Fabio Utzigc58842e2019-11-28 10:30:01 -0300194config BOOT_SWAP_USING_MOVE
Fabio Utzigdd2b6802020-01-06 09:10:45 -0300195 bool "Swap mode that can run without a scratch partition"
Fabio Utzigc58842e2019-11-28 10:30:01 -0300196 help
197 If y, the swap upgrade is done in two steps, where first every
198 sector of the primary slot is moved up one sector, then for
199 each sector X in the secondary slot, it is moved to index X in
200 the primary slot, then the sector at X+1 in the primary is
201 moved to index X in the secondary.
202 This allows a swap upgrade without using a scratch partition,
203 but is currently limited to all sectors in both slots being of
204 the same size.
David Vincze5a6e1812020-06-29 13:34:42 +0200205
206config BOOT_DIRECT_XIP
207 bool "Run the latest image directly from its slot"
208 help
209 If y, mcuboot selects the newest valid image based on the image version
210 numbers, thereafter the selected image can run directly from its slot
211 without having to move/copy it into the primary slot. For this reason the
212 images must be linked to be executed from the given image slot. Using this
213 mode results in a simpler code path and smaller code size.
214
215endchoice
Dominik Ermel4dc3f442020-05-26 08:45:14 +0000216endif
Fabio Utzigc58842e2019-11-28 10:30:01 -0300217
Andrzej Puzdrowskifdff3e12020-09-15 08:23:25 +0200218if !SINGLE_APPLICATION_SLOT
Fabio Utzigd0533ed2018-12-19 07:56:33 -0200219config BOOT_BOOTSTRAP
Sam Bristowd0ca0ff2019-10-30 20:51:35 +1300220 bool "Bootstrap erased the primary slot from the secondary slot"
Fabio Utzigd0533ed2018-12-19 07:56:33 -0200221 default n
222 help
223 If y, enables bootstraping support. Bootstrapping allows an erased
David Vincze2d736ad2019-02-18 11:50:22 +0100224 primary slot to be initialized from a valid image in the secondary slot.
Fabio Utzigd0533ed2018-12-19 07:56:33 -0200225 If unsure, leave at the default value.
226
Fabio Utzigca8ead22019-12-20 07:06:04 -0300227config BOOT_SWAP_SAVE_ENCTLV
228 bool "Save encrypted key TLVs instead of plaintext keys in swap metadata"
229 default n
230 help
231 If y, instead of saving the encrypted image keys in plaintext in the
232 swap resume metadata, save the encrypted image TLVs. This should be used
233 when there is no security mechanism protecting the data in the primary
234 slot from being dumped. If n is selected (default), the keys are written
235 after being decrypted from the image TLVs and could be read by an
236 attacker who has access to the flash contents of the primary slot (eg
237 JTAG/SWD or primary slot in external flash).
238 If unsure, leave at the default value.
239
Fabio Utzig5fe874c2018-08-31 07:41:50 -0300240config BOOT_ENCRYPT_RSA
Fabio Utzig42cc29a2019-11-05 07:54:41 -0300241 bool "Support for encrypted upgrade images using RSA"
Fabio Utzig5fe874c2018-08-31 07:41:50 -0300242 default n
243 help
David Vincze2d736ad2019-02-18 11:50:22 +0100244 If y, images in the secondary slot can be encrypted and are decrypted
245 on the fly when upgrading to the primary slot, as well as encrypted
Fabio Utzig42cc29a2019-11-05 07:54:41 -0300246 back when swapping from the primary slot to the secondary slot. The
247 encryption mechanism used in this case is RSA-OAEP (2048 bits).
248
249config BOOT_ENCRYPT_EC256
250 bool "Support for encrypted upgrade images using ECIES-P256"
251 default n
252 help
253 If y, images in the secondary slot can be encrypted and are decrypted
254 on the fly when upgrading to the primary slot, as well as encrypted
255 back when swapping from the primary slot to the secondary slot. The
256 encryption mechanism used in this case is ECIES using primitives
257 described under "ECIES-P256 encryption" in docs/encrypted_images.md.
Fabio Utzig5fe874c2018-08-31 07:41:50 -0300258
Fabio Utzigb6f014c2020-04-02 13:25:01 -0300259config BOOT_ENCRYPT_X25519
260 bool "Support for encrypted upgrade images using ECIES-X25519"
261 default n
262 help
263 If y, images in the secondary slot can be encrypted and are decrypted
264 on the fly when upgrading to the primary slot, as well as encrypted
265 back when swapping from the primary slot to the secondary slot. The
266 encryption mechanism used in this case is ECIES using primitives
267 described under "ECIES-X25519 encryption" in docs/encrypted_images.md.
Dominik Ermel4dc3f442020-05-26 08:45:14 +0000268endif
Fabio Utzigb6f014c2020-04-02 13:25:01 -0300269
Marti Bolivar0e091c92018-04-12 11:23:16 -0400270config BOOT_MAX_IMG_SECTORS
271 int "Maximum number of sectors per image slot"
272 default 128
273 help
274 This option controls the maximum number of sectors that each of
275 the two image areas can contain. Smaller values reduce MCUboot's
276 memory usage; larger values allow it to support larger images.
277 If unsure, leave at the default value.
278
Emanuele Di Santo205c8c62018-07-20 11:42:31 +0200279config BOOT_ERASE_PROGRESSIVELY
280 bool "Erase flash progressively when receiving new firmware"
281 default y if SOC_NRF52840
282 help
283 If enabled, flash is erased as necessary when receiving new firmware,
284 instead of erasing the whole image slot at once. This is necessary
285 on some hardware that has long erase times, to prevent long wait
286 times at the beginning of the DFU process.
287
David Vincze1cf11b52020-03-24 07:51:09 +0100288config MEASURED_BOOT
289 bool "Store the boot state/measurements in shared memory"
290 default n
291 help
292 If enabled, the bootloader will store certain boot measurements such as
293 the hash of the firmware image in a shared memory area. This data can
294 be used later by runtime services (e.g. by a device attestation service).
295
296config BOOT_SHARE_DATA
297 bool "Save application specific data in shared memory area"
298 default n
299
Tamas Banfce87332020-07-10 12:40:11 +0100300choice
301 prompt "Fault injection hardening profile"
302 default BOOT_FIH_PROFILE_OFF
303
304config BOOT_FIH_PROFILE_OFF
305 bool "No hardening against hardware level fault injection"
306 help
307 No hardening in SW against hardware level fault injection: power or
308 clock glitching, etc.
309
310config BOOT_FIH_PROFILE_LOW
311 bool "Moderate level hardening against hardware level fault injection"
312 help
313 Moderate level hardening: Long global fail loop to avoid break out,
314 control flow integrity check to discover discrepancy in expected code
315 flow.
316
317config BOOT_FIH_PROFILE_MEDIUM
318 bool "Medium level hardening against hardware level fault injection"
319 help
320 Medium level hardening: Long global fail loop to avoid break out,
321 control flow integrity check to discover discrepancy in expected code
322 flow, double variables to discover register or memory corruption.
323
324config BOOT_FIH_PROFILE_HIGH
325 bool "Maximum level hardening against hardware level fault injection"
326 select MBEDTLS
327 help
328 Maximum level hardening: Long global fail loop to avoid break out,
329 control flow integrity check to discover discrepancy in expected code
330 flow, double variables to discover register or memory corruption, random
331 delays to make code execution less predictable. Random delays requires an
332 entropy source.
333
334endchoice
335
Rajavardhan Gundi51c9d702019-02-20 14:08:52 +0530336config BOOT_WAIT_FOR_USB_DFU
337 bool "Wait for a prescribed duration to see if USB DFU is invoked"
338 default n
339 select USB
340 select USB_DFU_CLASS
341 select IMG_MANAGER
342 help
343 If y, MCUboot waits for a prescribed duration of time to allow
344 for USB DFU to be invoked. Please note DFU always updates the
345 slot1 image.
346
Marti Bolivarbc2fa4e2018-04-12 12:18:32 -0400347config ZEPHYR_TRY_MASS_ERASE
348 bool "Try to mass erase flash when flashing MCUboot image"
349 default y
350 help
351 If y, attempt to configure the Zephyr build system's "flash"
352 target to mass-erase the flash device before flashing the
353 MCUboot image. This ensures the scratch and other partitions
354 are in a consistent state.
355
356 This is not available for all targets.
357
David Brownf6d14c22019-12-10 15:36:36 -0700358config BOOT_USE_BENCH
359 bool "Enable benchmark code"
360 default n
361 help
362 If y, adds support for simple benchmarking that can record
363 time intervals between two calls. The time printed depends
364 on the particular Zephyr target, and is generally ticks of a
365 specific board-specific timer.
366
Michael Scott74ceae52019-02-01 14:01:09 -0800367module = MCUBOOT
Piotr Mienkowski15aa6ef2019-04-08 22:48:15 +0200368module-str = MCUBoot bootloader
Michael Scott74ceae52019-02-01 14:01:09 -0800369source "subsys/logging/Kconfig.template.log_config"
Michael Scott74ceae52019-02-01 14:01:09 -0800370
Andrzej Puzdrowskiaf148532020-02-25 12:51:26 +0100371config MCUBOOT_LOG_THREAD_STACK_SIZE
372 int "Stack size for the MCUBoot log processing thread"
373 depends on LOG && !LOG_IMMEDIATE
374 default 2048 if COVERAGE_GCOV
375 default 1024 if NO_OPTIMIZATIONS
376 default 1024 if XTENSA
377 default 4096 if (X86 && X86_64)
378 default 4096 if ARM64
379 default 768
380 help
381 Set the internal stack size for MCUBoot log processing thread.
382
Marti Bolivar0e091c92018-04-12 11:23:16 -0400383menuconfig MCUBOOT_SERIAL
384 bool "MCUboot serial recovery"
385 default n
386 select REBOOT
Emanuele Di Santo30a92652019-01-16 14:01:08 +0100387 select GPIO
Marti Bolivar0e091c92018-04-12 11:23:16 -0400388 select SERIAL
Emanuele Di Santo30a92652019-01-16 14:01:08 +0100389 select UART_INTERRUPT_DRIVEN
Marti Bolivar0e091c92018-04-12 11:23:16 -0400390 select BASE64
391 select TINYCBOR
392 help
393 If y, enables a serial-port based update mode. This allows
394 MCUboot itself to load update images into flash over a UART.
395 If unsure, leave at the default value.
396
397if MCUBOOT_SERIAL
398
Emanuele Di Santoc4bf7802018-07-20 11:39:57 +0200399choice
400 prompt "Serial device"
Andrzej Puzdrowskif4a9a9d2020-04-24 12:31:51 +0200401 default BOOT_SERIAL_UART if !BOARD_NRF52840DONGLE_NRF52840
402 default BOOT_SERIAL_CDC_ACM if BOARD_NRF52840DONGLE_NRF52840
Emanuele Di Santoc4bf7802018-07-20 11:39:57 +0200403
404config BOOT_SERIAL_UART
405 bool "UART"
406 # SERIAL and UART_INTERRUPT_DRIVEN already selected
407
408config BOOT_SERIAL_CDC_ACM
409 bool "CDC ACM"
410 select USB
411 select USB_DEVICE_STACK
412 select USB_CDC_ACM
413
414endchoice
415
Marti Bolivar0e091c92018-04-12 11:23:16 -0400416config BOOT_MAX_LINE_INPUT_LEN
417 int "Maximum command line length"
418 default 512
419 help
420 Maximum length of commands transported over the serial port.
421
422config BOOT_SERIAL_DETECT_PORT
423 string "GPIO device to trigger serial recovery mode"
424 default GPIO_0 if SOC_FAMILY_NRF
425 help
426 Zephyr GPIO device which contains the pin used to trigger
427 serial recovery mode.
428
429config BOOT_SERIAL_DETECT_PIN
430 int "Pin to trigger serial recovery mode"
Andrzej Puzdrowskif4a9a9d2020-04-24 12:31:51 +0200431 default 6 if BOARD_NRF9160DK_NRF9160
Andrzej Puzdrowskifefdea22020-03-27 09:41:14 +0100432 default 11 if BOARD_NRF52840DK_NRF52840
Andrzej Puzdrowskif4a9a9d2020-04-24 12:31:51 +0200433 default 13 if BOARD_NRF52DK_NRF52832
Håkon Øye Amundsen6fc25952020-01-02 15:15:42 +0000434 default 23 if BOARD_NRF5340_DK_NRF5340_CPUAPP || BOARD_NRF5340_DK_NRF5340_CPUAPPNS
Marti Bolivar0e091c92018-04-12 11:23:16 -0400435 help
436 Pin on the serial detect port which triggers serial recovery mode.
437
438config BOOT_SERIAL_DETECT_PIN_VAL
439 int "Serial detect pin trigger value"
440 default 0
441 range 0 1
442 help
443 Logic value of the detect pin which triggers serial recovery
444 mode.
445
Andrzej Puzdrowskif0004802019-10-01 14:13:35 +0200446# Workaround for not being able to have commas in macro arguments
447DT_CHOSEN_Z_CONSOLE := zephyr,console
448
449config RECOVERY_UART_DEV_NAME
450 string "UART Device Name for Recovery UART"
451 default "$(dt_chosen_label,$(DT_CHOSEN_Z_CONSOLE))" if HAS_DTS
452 default "UART_0"
453 depends on BOOT_SERIAL_UART
454 help
455 This option specifies the name of UART device to be used for
456 serial recovery.
457
Marti Bolivar0e091c92018-04-12 11:23:16 -0400458endif # MCUBOOT_SERIAL
Andrzej Puzdrowski64ad0922017-09-22 11:33:41 +0200459
Rafał Kuźniad854bb62020-06-17 15:06:47 +0200460config BOOT_INTR_VEC_RELOC
461 bool "Relocate the interrupt vector to the application"
462 default n
463 depends on SW_VECTOR_RELAY || CPU_CORTEX_M_HAS_VTOR
464 help
465 Relocate the interrupt vector to the application before it is started.
466 Select this option if application requires vector relocation,
467 but it doesn't relocate vector in its reset handler.
468
Andrzej Puzdrowski16b6d152020-06-01 14:16:54 +0200469config UPDATEABLE_IMAGE_NUMBER
470 int "Number of updateable images"
471 default 1
Andrzej Puzdrowskifdff3e12020-09-15 08:23:25 +0200472 range 1 1 if SINGLE_APPLICATION_SLOT
Andrzej Puzdrowski16b6d152020-06-01 14:16:54 +0200473 help
474 Enables support of multi image update.
475
476choice
477 prompt "Downgrade prevention"
478 optional
479
480config MCUBOOT_DOWNGRADE_PREVENTION
481 bool "SW based downgrade prevention"
482 depends on BOOT_UPGRADE_ONLY
483 help
484 Prevent downgrades by enforcing incrementing version numbers.
485 When this option is set, any upgrade must have greater major version
486 or greater minor version with equal major version. This mechanism
487 only protects against some attacks against version downgrades (for
488 example, a JTAG could be used to write an older version).
489
490config MCUBOOT_HW_DOWNGRADE_PREVENTION
491 bool "HW based downgrade prevention"
492 help
493 Prevent undesirable/malicious software downgrades. When this option is
494 set, any upgrade must have greater or equal security counter value.
495 Because of the acceptance of equal values it allows for software
496 downgrade to some extent.
497
498endchoice
499
Andrzej Puzdrowski97543282018-04-12 15:16:56 +0200500endmenu
501
Carles Cufi84ede582018-01-29 15:12:00 +0100502config MCUBOOT_DEVICE_SETTINGS
503 # Hidden selector for device-specific settings
504 bool
505 default y
506 # CPU options
507 select MCUBOOT_DEVICE_CPU_CORTEX_M0 if CPU_CORTEX_M0
Carles Cufi67c792e2018-01-29 15:14:31 +0100508 # Enable flash page layout if available
509 select FLASH_PAGE_LAYOUT if FLASH_HAS_PAGE_LAYOUT
Andrzej Puzdrowskib788c712018-04-12 12:42:49 +0200510 # Enable flash_map module as flash I/O back-end
511 select FLASH_MAP
Carles Cufi84ede582018-01-29 15:12:00 +0100512
513config MCUBOOT_DEVICE_CPU_CORTEX_M0
514 # Hidden selector for Cortex-M0 settings
515 bool
516 default n
517 select SW_VECTOR_RELAY if !CPU_CORTEX_M0_HAS_VECTOR_TABLE_REMAP
518
Marti Bolivar0e091c92018-04-12 11:23:16 -0400519comment "Zephyr configuration options"
Andrzej Puzdrowski64ad0922017-09-22 11:33:41 +0200520
Marti Bolivarf84cc4b2019-08-20 16:06:56 -0700521# Disabling MULTITHREADING provides a code size advantage, but
522# it requires peripheral drivers (particularly a flash driver)
523# that works properly with the option enabled.
524#
525# If you know for sure that your hardware will work, you can default
526# it to n here. Otherwise, having it on by default makes the most
527# hardware work.
528config MULTITHREADING
Andrzej Puzdrowski9a4946c2020-02-20 12:39:12 +0100529 default y if BOOT_SERIAL_CDC_ACM #usb driver requires MULTITHREADING
Marti Bolivarf84cc4b2019-08-20 16:06:56 -0700530 default n if SOC_FAMILY_NRF
531 default y
532
Andrzej Puzdrowski9a4946c2020-02-20 12:39:12 +0100533config LOG_IMMEDIATE
534 default n if MULTITHREADING
Andrzej Puzdrowski3f092bd2020-02-17 13:25:32 +0100535 default y
536
537config LOG_PROCESS_THREAD
538 default n # mcuboot has its own log processing thread
539
540# override USB device name
541config USB_DEVICE_PRODUCT
542 default "MCUBOOT"
Andrzej Puzdrowski9a4946c2020-02-20 12:39:12 +0100543
Robert Lubos1b19d2a2020-01-31 14:05:35 +0100544source "Kconfig.zephyr"