[edk2-devel] [tianocore-docs EDK_II_Secure_Coding_Guide PATCH] Add Appendix: Threat Mode for EDK II.

Laszlo Ersek lersek at redhat.com
Wed Aug 7 17:46:06 UTC 2019


(+ Laurie)

On 08/05/19 09:47, Yao, Jiewen wrote:
> This patch adds "Threat model for EDK II" as the appendix section
> 
> of "EDK II secure coding guide" document.
> 
> 
> The threat model discussed here is a general guide and serves as the baseline of
> 
> the EDK II firmware. For each specific feature in EDK II firmware, there might be
> 
> additional feature-based threat models in addition to the general threat model.
> 
> 
> The full gitbook can be also avaiable at
> 
> https://github.com/jyao1/EDK_II_Secure_Coding_Guide/tree/Threat_model.
> 
> 
> Cc: Vincent Zimmer <vincent.zimmer at intel.com>
> Signed-off-by: Jiewen Yao <jiewen.yao at intel.com>
> 
> Reviewed-by: Vincent Zimmer <vincent.zimmer at intel.com>
> 
> 
> ---
>  SUMMARY.md                                    |  6 ++
>  appendix_threat_model_for_edk_ii/README.md    | 70 +++++++++++++++++++
>  .../asset_boot_flow.md                        | 63 +++++++++++++++++
>  .../asset_build_tool.md                       | 39 +++++++++++
>  .../asset_flash_content.md                    | 59 ++++++++++++++++
>  .../asset_management_mode.md                  | 58 +++++++++++++++
>  .../asset_s3_resume.md                        | 61 ++++++++++++++++
>  7 files changed, 356 insertions(+)
>  create mode 100644 appendix_threat_model_for_edk_ii/README.md
>  create mode 100644 appendix_threat_model_for_edk_ii/asset_boot_flow.md
>  create mode 100644 appendix_threat_model_for_edk_ii/asset_build_tool.md
>  create mode 100644 appendix_threat_model_for_edk_ii/asset_flash_content.md
>  create mode 100644 appendix_threat_model_for_edk_ii/asset_management_mode.md
>  create mode 100644 appendix_threat_model_for_edk_ii/asset_s3_resume.md

It looks like we have at least two kinds of documents under
<https://github.com/tianocore-docs/>, namely:
- specs (for edk2)
- guides

I know of the article at
<https://github.com/tianocore/tianocore.github.io/wiki/EDK-II-Specifications>,
which presents the specs very nicely.

Do we have a similar wiki article about the guides too?

(If I use the article search box to the right, and enter "guide",
nothing relevant comes up.)

Thanks!
Laszlo

-=-=-=-=-=-=-=-=-=-=-=-
Groups.io Links: You receive all messages sent to this group.

View/Reply Online (#45031): https://edk2.groups.io/g/devel/message/45031
Mute This Topic: https://groups.io/mt/32723406/1813853
Group Owner: devel+owner at edk2.groups.io
Unsubscribe: https://edk2.groups.io/g/devel/unsub  [edk2-devel-archive at redhat.com]
-=-=-=-=-=-=-=-=-=-=-=-




More information about the edk2-devel-archive mailing list