Sethule inkundla yeseva yesimanje yokuqala esekelwe ku-CoreBoot

Onjiniyela abavela ku-9elements ported I-CoreBoot ye-motherboard yeseva ye-Supermicro I-X11SSH-TF. Izinguquko sezivele kuhlanganisiwe ku-CoreBoot codebase eyinhloko futhi izoba yingxenye yokukhishwa okukhulu okulandelayo. I-Supermicro X11SSH-TF iyibhodi yokuqala yeseva yesimanje ene-Intel Xeon processor engasetshenziswa ne-CoreBoot. Ibhodi lisekela ama-Xeon processors (E3-1200V6 Kabylake-S noma i-E3-1200V5 Skylake-S) futhi lingahlonywa kufika ku-64 GB we-RAM (4 x UDIMM DDR4 2400MHz).

Umsebenzi uqediwe ngokuhlanganyela nomhlinzeki we-VPN u-Mullvad njengengxenye yephrojekthi Ukubonakala Kwesistimu, okuhloswe ngayo ukuqinisa ukuvikeleka kwengqalasizinda yeseva nokususa izingxenye zobunikazi isimo wazo esingakwazi ukulawulwa. I-CoreBoot iyi-analogue yamahhala ye-firmware yokuphathelene futhi iyatholakala ukuze iqinisekiswe ngokugcwele futhi ihlolwe. I-CoreBoot isetshenziswa njengesisekelo se-firmware sokuqalisa ihadiwe kanye nokuxhumanisa ibhuthi. Kubandakanya ukuqaliswa kwe-chip yehluzo, i-PCIe, i-SATA, i-USB, i-RS232. Ngesikhathi esifanayo, i-CoreBoot ihlanganisa izingxenye kanambambili i-FSP 2.0 (Intel Firmware Support Package) kanye ne-firmware kanambambili ye-Intel ME subsystem, edingekayo ukuze kuqaliswe futhi kuqalwe i-CPU ne-chipset.

Ukuze uqalise isistimu yokusebenza kunconywa ukuyisebenzisa I-SeaBios noma I-LinuxBoot (Ukuqaliswa kwe-UEFI kusekelwe I-Tianocore okungakasekelwa ngenxa yokungahambisani nohlelo olungaphansi lwezithombe ze-Aspeed NGI, olusebenza ngemodi yombhalo kuphela). Ngaphezu kokwengeza ukusekelwa kwebhodi ku-CoreBoot, abahlanganyeli bephrojekthi baphinde basebenzise ukusekelwa kwamamojula we-TPM (Trusted Platform Module) 1.2/2.0 asekelwe ku-Intel ME futhi balungiselela umshayeli wesilawuli se-ASPEED 2400 SuperI/O, esenza imisebenzi ye-BMC (Baseboard Isilawuli Sokuphatha).

Ukuze uthole isilawuli kude sebhodi, isixhumi esibonakalayo se-IPMI esinikezwe isilawuli se-BMC AST2400 siyasekelwa, kodwa ukuze usebenzise i-IPMI, i-firmware yasekuqaleni kufanele ifakwe kusilawuli se-BMC. Umsebenzi wokulanda oqinisekisiwe nawo usuqalisiwe. Kosizo i-superiotool Ukusekelwa kwe-AST2400 kungeziwe, futhi i-inteltool ukwesekwa kwe-Intel Xeon E3-1200. I-Intel SGX (Izandiso Zonogada Besofthiwe) ayikasekelwa ngenxa yezinkinga zokuzinza.

Source: opennet.ru

Engeza amazwana