get:
Show a patch.

patch:
Update a patch.

put:
Update a patch.

GET /api/1.2/patches/2224275/?format=api
HTTP 200 OK
Allow: GET, PUT, PATCH, HEAD, OPTIONS
Content-Type: application/json
Vary: Accept

{
    "id": 2224275,
    "url": "http://patchwork.ozlabs.org/api/1.2/patches/2224275/?format=api",
    "web_url": "http://patchwork.ozlabs.org/project/uboot/patch/20260417083050.499955-4-yan.wang@softathome.com/",
    "project": {
        "id": 18,
        "url": "http://patchwork.ozlabs.org/api/1.2/projects/18/?format=api",
        "name": "U-Boot",
        "link_name": "uboot",
        "list_id": "u-boot.lists.denx.de",
        "list_email": "u-boot@lists.denx.de",
        "web_url": null,
        "scm_url": null,
        "webscm_url": null,
        "list_archive_url": "",
        "list_archive_url_format": "",
        "commit_url_format": ""
    },
    "msgid": "<20260417083050.499955-4-yan.wang@softathome.com>",
    "list_archive_url": null,
    "date": "2026-04-17T08:30:50",
    "name": "[v7,3/3] tools: binman: Test signing an encrypted FIT with a preload header",
    "commit_ref": null,
    "pull_url": null,
    "state": "new",
    "archived": false,
    "hash": "b5431ff3ddfbdb9251d43a3f9ab5b08e919aeede",
    "submitter": {
        "id": 90652,
        "url": "http://patchwork.ozlabs.org/api/1.2/people/90652/?format=api",
        "name": "Yan WANG",
        "email": "yan.wang@softathome.com"
    },
    "delegate": null,
    "mbox": "http://patchwork.ozlabs.org/project/uboot/patch/20260417083050.499955-4-yan.wang@softathome.com/mbox/",
    "series": [
        {
            "id": 500273,
            "url": "http://patchwork.ozlabs.org/api/1.2/series/500273/?format=api",
            "web_url": "http://patchwork.ozlabs.org/project/uboot/list/?series=500273",
            "date": "2026-04-17T08:30:47",
            "name": "binman: Fix preload signing with encrypted FIT",
            "version": 7,
            "mbox": "http://patchwork.ozlabs.org/series/500273/mbox/"
        }
    ],
    "comments": "http://patchwork.ozlabs.org/api/patches/2224275/comments/",
    "check": "pending",
    "checks": "http://patchwork.ozlabs.org/api/patches/2224275/checks/",
    "tags": {},
    "related": [],
    "headers": {
        "Return-Path": "<u-boot-bounces@lists.denx.de>",
        "X-Original-To": "incoming@patchwork.ozlabs.org",
        "Delivered-To": "patchwork-incoming@legolas.ozlabs.org",
        "Authentication-Results": [
            "legolas.ozlabs.org;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=softathome1.onmicrosoft.com header.i=@softathome1.onmicrosoft.com\n header.a=rsa-sha256 header.s=selector1-softathome1-onmicrosoft-com\n header.b=lnyBc/zY;\n\tdkim-atps=neutral",
            "legolas.ozlabs.org;\n spf=pass (sender SPF authorized) smtp.mailfrom=lists.denx.de\n (client-ip=85.214.62.61; helo=phobos.denx.de;\n envelope-from=u-boot-bounces@lists.denx.de; receiver=patchwork.ozlabs.org)",
            "phobos.denx.de;\n dmarc=none (p=none dis=none) header.from=softathome.com",
            "phobos.denx.de;\n spf=pass smtp.mailfrom=u-boot-bounces@lists.denx.de",
            "phobos.denx.de;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=softathome1.onmicrosoft.com header.i=@softathome1.onmicrosoft.com\n header.b=\"lnyBc/zY\";\n\tdkim-atps=neutral",
            "phobos.denx.de; dmarc=none (p=none dis=none)\n header.from=softathome.com",
            "phobos.denx.de;\n spf=pass smtp.mailfrom=yan.wang@softathome.com"
        ],
        "Received": [
            "from phobos.denx.de (phobos.denx.de [85.214.62.61])\n\t(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)\n\t key-exchange x25519)\n\t(No client certificate requested)\n\tby legolas.ozlabs.org (Postfix) with ESMTPS id 4fxp5G5trnz1yD3\n\tfor <incoming@patchwork.ozlabs.org>; Fri, 17 Apr 2026 18:31:46 +1000 (AEST)",
            "from h2850616.stratoserver.net (localhost [IPv6:::1])\n\tby phobos.denx.de (Postfix) with ESMTP id DB97D8428C;\n\tFri, 17 Apr 2026 10:31:29 +0200 (CEST)",
            "by phobos.denx.de (Postfix, from userid 109)\n id C950F83FC0; Fri, 17 Apr 2026 10:31:25 +0200 (CEST)",
            "from PAUP264CU001.outbound.protection.outlook.com\n (mail-francecentralazlp170110002.outbound.protection.outlook.com\n [IPv6:2a01:111:f403:c20a::2])\n (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits))\n (No client certificate requested)\n by phobos.denx.de (Postfix) with ESMTPS id 8CA5F8423F\n for <u-boot@lists.denx.de>; Fri, 17 Apr 2026 10:31:22 +0200 (CEST)",
            "from PA7P264CA0269.FRAP264.PROD.OUTLOOK.COM (2603:10a6:102:375::19)\n by PASP264MB5787.FRAP264.PROD.OUTLOOK.COM (2603:10a6:102:49c::11)\n with Microsoft SMTP Server (version=TLS1_2,\n cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9745.38; Fri, 17 Apr\n 2026 08:31:17 +0000",
            "from PA1PEPF000CC3FB.FRAP264.PROD.OUTLOOK.COM\n (2603:10a6:102:375:cafe::36) by PA7P264CA0269.outlook.office365.com\n (2603:10a6:102:375::19) with Microsoft SMTP Server (version=TLS1_3,\n cipher=TLS_AES_256_GCM_SHA384) id 15.20.9769.52 via Frontend Transport; Fri,\n 17 Apr 2026 08:31:17 +0000",
            "from proxy.softathome.com (149.6.166.170) by\n PA1PEPF000CC3FB.mail.protection.outlook.com (10.167.242.6) with Microsoft\n SMTP Server (version=TLS1_3, cipher=TLS_AES_256_GCM_SHA384) id 15.20.9769.17\n via Frontend Transport; Fri, 17 Apr 2026 08:31:17 +0000",
            "from sah1lpt719.softathome.com (unknown [192.168.72.213])\n by proxy.softathome.com (Postfix) with ESMTPSA id A9B011FFF1;\n Fri, 17 Apr 2026 10:31:17 +0200 (CEST)"
        ],
        "X-Spam-Checker-Version": "SpamAssassin 3.4.2 (2018-09-13) on phobos.denx.de",
        "X-Spam-Level": "",
        "X-Spam-Status": "No, score=-1.9 required=5.0 tests=BAYES_00,DKIM_SIGNED,\n DKIM_VALID,RCVD_IN_DNSWL_BLOCKED,SPF_HELO_PASS,SPF_PASS autolearn=ham\n autolearn_force=no version=3.4.2",
        "ARC-Seal": "i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none;\n b=B4FtSd+4rGezsn4yBMY0eI84LCf0D5ByyAbTwu48VphCIb0P+HJrAK3IISlgDvIJvHoVC8RuPn0Oa2qQtuZNMxrb+2RdLEVNBNMbM6XD0q4xoeZJ+ANCo9uPceEsBXoixIYmf5i6uwO3P5wS7rAEPMGJ1tbmmKpJKXQXCHmD0kpwvl46uXwu8e+jxwJNSnSbHIfo1uc+zsSMOnbBXqpFq7cNJ+dO/1X29ajQtZ4WK0tnCOYNyIE8RW1edw4Qt72OYeUXW9C0uTck2orZ7L7AABy/3SQF3duXuBUHgOzkr0xxmpbYullTm5YaW28f81Y2kVhTIvNNWl7f0RiP3XxtUA==",
        "ARC-Message-Signature": "i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;\n s=arcselector10001;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1;\n bh=o4kFXQ8mHAccY2wtC/sbuwvyhnlyIPaMYbDDl7xnrNg=;\n b=lghRo22NZmh4JeA9OUw7iq9IrPtcMe271f4v5MW/R9la12hmqarQMWPVmtkwzOdnMCZYhqbfIgSzHUQhDk3nmfiOl/+doTUXzvUmo2AnPiciP+pfzwqQIJfDSH7rQxJjsaS5pqIgLjFcfG3FLa/VaGVxfzrumulW4JRB6E1i3c4H+vvnhtAbg1ZNccZlwc0aZ9NZH88tq8r0nMwDvXVaUQrodcb9ik7qnYaYyWrTvX6OXrRwoTz2XIDz4bVcBxNsb69XLjuK1yrJFFBc7Os8lt39ChIkJOeK1V9yOPYK4r6W2oxzhs88ke/hXl0pOUnIoekh59VBvLkfL7jYY5v/Zw==",
        "ARC-Authentication-Results": "i=1; mx.microsoft.com 1; spf=pass (sender ip is\n 149.6.166.170) smtp.rcpttodomain=chromium.org smtp.mailfrom=softathome.com;\n dmarc=bestguesspass action=none header.from=softathome.com; dkim=none\n (message not signed); arc=none (0)",
        "DKIM-Signature": "v=1; a=rsa-sha256; c=relaxed/relaxed;\n d=softathome1.onmicrosoft.com; s=selector1-softathome1-onmicrosoft-com;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;\n bh=o4kFXQ8mHAccY2wtC/sbuwvyhnlyIPaMYbDDl7xnrNg=;\n b=lnyBc/zYjlzYT75gZGUMEZDo0k0URflDDdNXAiAqy8GVV+pYzhfo2VSWzS8GdGRCUepsdAS13WXViRv0D5c1RiCr9Us3+2TDjMq/BjoyTdxDLJjL8oxVrskzvf281Igr+w5BXASm4TJLy+gxlY8LmMWkU6JAYRkg9h7/VxWAMvu5ak5Zx9TJUohZPM3btCQOORONGTdtLZ8tHJwhvozNtcPjEEBap8I37KE6hmK4in5EeSVzF3Ahaji8sJDTMr9xf31IMi3rLVdGHN7Do+XAUBnf+da/0RGXtw48xVP7w54Zrb+tmx+FYavBp8PEArRwMg9yDVpTS0NDs1hlSfvjIw==",
        "X-MS-Exchange-Authentication-Results": "spf=pass (sender IP is 149.6.166.170)\n smtp.mailfrom=softathome.com; dkim=none (message not signed)\n header.d=none;dmarc=bestguesspass action=none header.from=softathome.com;",
        "Received-SPF": "Pass (protection.outlook.com: domain of softathome.com\n designates 149.6.166.170 as permitted sender)\n receiver=protection.outlook.com; client-ip=149.6.166.170;\n helo=proxy.softathome.com; pr=C",
        "From": "Yan WANG <yan.wang@softathome.com>",
        "To": "trini@konsulko.com,\n\tsjg@chromium.org,\n\talpernebiyasak@gmail.com",
        "Cc": "paul.henrys_ext@softathome.com,\n\tu-boot@lists.denx.de",
        "Subject": "[PATCH v7 3/3] tools: binman: Test signing an encrypted FIT with a\n preload header",
        "Date": "Fri, 17 Apr 2026 10:30:50 +0200",
        "Message-Id": "<20260417083050.499955-4-yan.wang@softathome.com>",
        "X-Mailer": "git-send-email 2.25.1",
        "In-Reply-To": "<20260417083050.499955-1-yan.wang@softathome.com>",
        "References": "<20260414131558.538656-3-yan.wang@softathome.com>\n <20260417083050.499955-1-yan.wang@softathome.com>",
        "MIME-Version": "1.0",
        "Content-Transfer-Encoding": "8bit",
        "X-EOPAttributedMessage": "0",
        "X-MS-PublicTrafficType": "Email",
        "X-MS-TrafficTypeDiagnostic": "PA1PEPF000CC3FB:EE_|PASP264MB5787:EE_",
        "Content-Type": "text/plain",
        "X-MS-Office365-Filtering-Correlation-Id": "ec781d61-415e-4f23-98b3-08de9c5bb23b",
        "X-MS-Exchange-SenderADCheck": "1",
        "X-MS-Exchange-AntiSpam-Relay": "0",
        "X-Microsoft-Antispam": "BCL:0;\n ARA:13230040|1800799024|36860700016|376014|82310400026|17002099007|56012099003|22082099003|18002099003;",
        "X-Microsoft-Antispam-Message-Info": "\n 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",
        "X-Forefront-Antispam-Report": "CIP:149.6.166.170; CTRY:FR; LANG:en; SCL:1; SRV:;\n IPV:CAL; SFV:NSPM; H:proxy.softathome.com; PTR:InfoDomainNonexistent;\n CAT:NONE;\n SFS:(13230040)(1800799024)(36860700016)(376014)(82310400026)(17002099007)(56012099003)(22082099003)(18002099003);\n DIR:OUT; SFP:1101;",
        "X-MS-Exchange-AntiSpam-MessageData-ChunkCount": "1",
        "X-MS-Exchange-AntiSpam-MessageData-0": "\n px7uSDdEdCIby9U1xtOgLcZ6c78ZXAr0Zsb6ODvMh4t4khZu6+UyCmpIFRIy8tuKQLzpH4T/pxC0TgGhSNJuar5XsrnA8yhOJX+IB8be9SGPV3YEMtOt0BnOcdvYTgXrO7uFG2dBdpE6yHsFq2dyvcy3nbI0XzcDO3QphSebZf4iDTt6u4ZCgk4EVYk0g0QyhdB63IwEheAYFJ5dRZK9Kb+omegGkTJg08C+kIhmtD/SQh2RDLe+Tm5VnKl+mp/DySp1ZhRM/gX4hQZu10/RF/SEFZBXprJrla3qR4LS5MnT7NuwDznWMpy+Sd3FLep2mWGxAJ6nwwi8VQP1hc0QC8QTtgnRtW61w5JpdkzjfTJ9mhrc8hzLI+khjYfz7SOGglS7xdC2s3Vzwo/lxI6BP8F1uwC8ldmvyJDmzKu333Iu1fu47aFhweci34v4TwPg",
        "X-OriginatorOrg": "softathome.com",
        "X-MS-Exchange-CrossTenant-OriginalArrivalTime": "17 Apr 2026 08:31:17.8656 (UTC)",
        "X-MS-Exchange-CrossTenant-Network-Message-Id": "\n ec781d61-415e-4f23-98b3-08de9c5bb23b",
        "X-MS-Exchange-CrossTenant-Id": "aa10e044-e405-4c10-8353-36b4d0cce511",
        "X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp": "\n TenantId=aa10e044-e405-4c10-8353-36b4d0cce511; Ip=[149.6.166.170];\n Helo=[proxy.softathome.com]",
        "X-MS-Exchange-CrossTenant-AuthSource": "PA1PEPF000CC3FB.FRAP264.PROD.OUTLOOK.COM",
        "X-MS-Exchange-CrossTenant-AuthAs": "Anonymous",
        "X-MS-Exchange-CrossTenant-FromEntityHeader": "HybridOnPrem",
        "X-MS-Exchange-Transport-CrossTenantHeadersStamped": "PASP264MB5787",
        "X-BeenThere": "u-boot@lists.denx.de",
        "X-Mailman-Version": "2.1.39",
        "Precedence": "list",
        "List-Id": "U-Boot discussion <u-boot.lists.denx.de>",
        "List-Unsubscribe": "<https://lists.denx.de/options/u-boot>,\n <mailto:u-boot-request@lists.denx.de?subject=unsubscribe>",
        "List-Archive": "<https://lists.denx.de/pipermail/u-boot/>",
        "List-Post": "<mailto:u-boot@lists.denx.de>",
        "List-Help": "<mailto:u-boot-request@lists.denx.de?subject=help>",
        "List-Subscribe": "<https://lists.denx.de/listinfo/u-boot>,\n <mailto:u-boot-request@lists.denx.de?subject=subscribe>",
        "Errors-To": "u-boot-bounces@lists.denx.de",
        "Sender": "\"U-Boot\" <u-boot-bounces@lists.denx.de>",
        "X-Virus-Scanned": "clamav-milter 0.103.8 at phobos.denx.de",
        "X-Virus-Status": "Clean"
    },
    "content": "From: Paul HENRYS <paul.henrys_ext@softathome.com>\n\nAdd a test to verify the preload header correctly signs an encrypted\nFIT. This test exercises the case where encryption uses random IVs that\nwould change between mkimage calls.\n\nSigned-off-by: Paul HENRYS <paul.henrys_ext@softathome.com>\n---\n\nChanges in v7:\n- No changes\n\n tools/binman/ftest.py                         | 21 +++++++\n .../test/security/pre_load_fit_encrypted.dts  | 63 +++++++++++++++++++\n 2 files changed, 84 insertions(+)\n create mode 100644 tools/binman/test/security/pre_load_fit_encrypted.dts",
    "diff": "diff --git a/tools/binman/ftest.py b/tools/binman/ftest.py\nindex ca5149ee654..da8325f820a 100644\n--- a/tools/binman/ftest.py\n+++ b/tools/binman/ftest.py\n@@ -5895,6 +5895,27 @@ fdt         fdtmap                Extract the devicetree blob from the fdtmap\n             data = self._DoReadFileDtb('security/pre_load_invalid_key.dts',\n                                        entry_args=entry_args)\n \n+    def testPreLoadEncryptedFit(self):\n+        \"\"\"Test an encrypted FIT image with a pre-load header\"\"\"\n+        entry_args = {\n+            'pre-load-key-path': os.path.join(self._binman_dir, 'test'),\n+        }\n+        data = tools.read_file(self.TestFile(\"fit/aes256.bin\"))\n+        self._MakeInputFile(\"keys/aes256.bin\", data)\n+\n+        keys_subdir = os.path.join(self._indir, \"keys\")\n+        data = self._DoReadFileDtb(\n+            'security/pre_load_fit_encrypted.dts', entry_args=entry_args,\n+            extra_indirs=[keys_subdir])[0]\n+\n+        image_fname = tools.get_output_filename('image.bin')\n+        is_signed = self._CheckPreload(image_fname, self.TestFile(\"dev.key\"))\n+\n+        self.assertEqual(PRE_LOAD_MAGIC, data[:len(PRE_LOAD_MAGIC)])\n+        self.assertEqual(PRE_LOAD_VERSION, data[4:4 + len(PRE_LOAD_VERSION)])\n+        self.assertEqual(PRE_LOAD_HDR_SIZE, data[8:8 + len(PRE_LOAD_HDR_SIZE)])\n+        self.assertEqual(is_signed, True)\n+\n     def _CheckSafeUniqueNames(self, *images):\n         \"\"\"Check all entries of given images for unsafe unique names\"\"\"\n         for image in images:\ndiff --git a/tools/binman/test/security/pre_load_fit_encrypted.dts b/tools/binman/test/security/pre_load_fit_encrypted.dts\nnew file mode 100644\nindex 00000000000..f5e9bf9426c\n--- /dev/null\n+++ b/tools/binman/test/security/pre_load_fit_encrypted.dts\n@@ -0,0 +1,63 @@\n+// SPDX-License-Identifier: GPL-2.0+\n+\n+/dts-v1/;\n+\n+/ {\n+\t#address-cells = <1>;\n+\t#size-cells = <1>;\n+\n+\tbinman {\n+\t\tpre-load {\n+\t\t\tcontent = <&image>;\n+\t\t\talgo-name = \"sha256,rsa2048\";\n+\t\t\tkey-name = \"dev.key\";\n+\t\t\theader-size = <4096>;\n+\t\t\tversion = <0x11223344>;\n+\t\t};\n+\n+\t\timage: fit {\n+\t\t\tfit,encrypt;\n+\t\t\tdescription = \"Test a FIT with encrypted data and signed with a preload\";\n+\t\t\t#address-cells = <1>;\n+\n+\t\t\timages {\n+\t\t\t\tu-boot {\n+\t\t\t\t\tdescription = \"U-Boot\";\n+\t\t\t\t\ttype = \"firmware\";\n+\t\t\t\t\tarch = \"arm64\";\n+\t\t\t\t\tos = \"U-Boot\";\n+\t\t\t\t\tcompression = \"none\";\n+\t\t\t\t\tload = <00000000>;\n+\t\t\t\t\tentry = <00000000>;\n+\t\t\t\t\tcipher {\n+\t\t\t\t\t\talgo = \"aes256\";\n+\t\t\t\t\t\tkey-name-hint = \"aes256\";\n+\t\t\t\t\t};\n+\t\t\t\t\tu-boot-nodtb {\n+\t\t\t\t\t};\n+\t\t\t\t};\n+\t\t\t\tfdt-1 {\n+\t\t\t\t\tdescription = \"Flattened Device Tree blob\";\n+\t\t\t\t\ttype = \"flat_dt\";\n+\t\t\t\t\tarch = \"arm64\";\n+\t\t\t\t\tcompression = \"none\";\n+\t\t\t\t\tcipher {\n+\t\t\t\t\t\talgo = \"aes256\";\n+\t\t\t\t\t\tkey-name-hint = \"aes256\";\n+\t\t\t\t\t};\n+\t\t\t\t\tu-boot-dtb {\n+\t\t\t\t\t};\n+\t\t\t\t};\n+\t\t\t};\n+\n+\t\t\tconfigurations {\n+\t\t\t\tdefault = \"conf-1\";\n+\t\t\t\tconf-1 {\n+\t\t\t\t\tdescription = \"Boot U-Boot with FDT blob\";\n+\t\t\t\t\tfirmware = \"u-boot\";\n+\t\t\t\t\tfdt = \"fdt-1\";\n+\t\t\t\t};\n+\t\t\t};\n+\t\t};\n+\t};\n+};\n",
    "prefixes": [
        "v7",
        "3/3"
    ]
}