Skip to content

DRTM between coreboot and UEFI payload

Open
No due date
Last updated Jul 25, 2025

This milestone will implement support for performing DRTM between coreboot and its payload, in this case edk2. While the implementation of dynamic launch will be in coreboot, the payload must be able to handle unusual state after the hand-off. It also has to carefully manage the access to memory, as well as control when and how other cores are allowed to be started. Finally, the payload binary must contain information that would tell coreboot that it can be started through dynamic launch.

Image

Components marked in green will be added or modified as part of this milestone. The implementation will be done with Dasharo, with coreboot part of the implementation sent to upstream coreboot repository for review. Platforms chosen for initial implementation:

  • PC Engines apu2 (or later one), with TPM 2.0
  • Protectli VP66xx with TPM 2.0
0% complete

List view