diff --git a/BoardConfigCommon.mk b/BoardConfigCommon.mk index 3385091..7bdef02 100644 --- a/BoardConfigCommon.mk +++ b/BoardConfigCommon.mk @@ -128,3 +128,13 @@ VENDOR_SECURITY_PATCH := 2021-07-01 # Sepolicy include device/qcom/sepolicy_vndr/SEPolicy.mk + +# Verified Boot +BOARD_AVB_ENABLE := true +BOARD_AVB_MAKE_VBMETA_IMAGE_ARGS += --set_hashtree_disabled_flag +BOARD_AVB_MAKE_VBMETA_IMAGE_ARGS += --flags 2 +BOARD_AVB_VBMETA_SYSTEM := system system_ext product +BOARD_AVB_VBMETA_SYSTEM_KEY_PATH := external/avb/test/data/testkey_rsa2048.pem +BOARD_AVB_VBMETA_SYSTEM_ALGORITHM := SHA256_RSA2048 +BOARD_AVB_VBMETA_SYSTEM_ROLLBACK_INDEX := $(PLATFORM_SECURITY_PATCH_TIMESTAMP) +BOARD_AVB_VBMETA_SYSTEM_ROLLBACK_INDEX_LOCATION := 1