{"id":2233069,"url":"http://patchwork.ozlabs.org/api/1.2/patches/2233069/?format=json","web_url":"http://patchwork.ozlabs.org/project/uboot/patch/20260505-b4-qcom-tooling-improvements-v6-4-a5fb673f4af6@linaro.org/","project":{"id":18,"url":"http://patchwork.ozlabs.org/api/1.2/projects/18/?format=json","name":"U-Boot","link_name":"uboot","list_id":"u-boot.lists.denx.de","list_email":"u-boot@lists.denx.de","web_url":null,"scm_url":null,"webscm_url":null,"list_archive_url":"","list_archive_url_format":"","commit_url_format":""},"msgid":"<20260505-b4-qcom-tooling-improvements-v6-4-a5fb673f4af6@linaro.org>","list_archive_url":null,"date":"2026-05-05T15:48:44","name":"[v6,4/6] doc: board/qualcomm: update docs for new u-boot.mbn target","commit_ref":null,"pull_url":null,"state":"new","archived":false,"hash":"dd3b97c73b7b7347850b8498b0f4aaaa2afd0269","submitter":{"id":90679,"url":"http://patchwork.ozlabs.org/api/1.2/people/90679/?format=json","name":"Casey Connolly","email":"casey.connolly@linaro.org"},"delegate":{"id":151538,"url":"http://patchwork.ozlabs.org/api/1.2/users/151538/?format=json","username":"kcxt","first_name":"Casey","last_name":"Connolly","email":"casey.connolly@linaro.org"},"mbox":"http://patchwork.ozlabs.org/project/uboot/patch/20260505-b4-qcom-tooling-improvements-v6-4-a5fb673f4af6@linaro.org/mbox/","series":[{"id":502858,"url":"http://patchwork.ozlabs.org/api/1.2/series/502858/?format=json","web_url":"http://patchwork.ozlabs.org/project/uboot/list/?series=502858","date":"2026-05-05T15:48:40","name":"Qualcomm: teach the build system to emit signed ELF images","version":6,"mbox":"http://patchwork.ozlabs.org/series/502858/mbox/"}],"comments":"http://patchwork.ozlabs.org/api/patches/2233069/comments/","check":"pending","checks":"http://patchwork.ozlabs.org/api/patches/2233069/checks/","tags":{},"related":[],"headers":{"Return-Path":"<u-boot-bounces@lists.denx.de>","X-Original-To":"incoming@patchwork.ozlabs.org","Delivered-To":"patchwork-incoming@legolas.ozlabs.org","Authentication-Results":["legolas.ozlabs.org;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=linaro.org header.i=@linaro.org header.a=rsa-sha256\n header.s=google header.b=SQgnRpN3;\n\tdkim-atps=neutral","legolas.ozlabs.org;\n spf=pass (sender SPF authorized) smtp.mailfrom=lists.denx.de\n (client-ip=85.214.62.61; helo=phobos.denx.de;\n envelope-from=u-boot-bounces@lists.denx.de; receiver=patchwork.ozlabs.org)","phobos.denx.de;\n dmarc=pass (p=none dis=none) header.from=linaro.org","phobos.denx.de;\n spf=pass smtp.mailfrom=u-boot-bounces@lists.denx.de","phobos.denx.de;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=linaro.org header.i=@linaro.org header.b=\"SQgnRpN3\";\n\tdkim-atps=neutral","phobos.denx.de;\n dmarc=pass (p=none dis=none) header.from=linaro.org","phobos.denx.de;\n spf=pass smtp.mailfrom=casey.connolly@linaro.org"],"Received":["from phobos.denx.de (phobos.denx.de [85.214.62.61])\n\t(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)\n\t key-exchange x25519)\n\t(No client certificate requested)\n\tby legolas.ozlabs.org (Postfix) with ESMTPS id 4g92y15Ygqz1yJx\n\tfor <incoming@patchwork.ozlabs.org>; Wed, 06 May 2026 01:49:29 +1000 (AEST)","from h2850616.stratoserver.net (localhost [IPv6:::1])\n\tby phobos.denx.de (Postfix) with ESMTP id C6EC1848CE;\n\tTue,  5 May 2026 17:48:58 +0200 (CEST)","by phobos.denx.de (Postfix, from userid 109)\n id 48E8F84994; Tue,  5 May 2026 17:48:57 +0200 (CEST)","from mail-wm1-x32c.google.com (mail-wm1-x32c.google.com\n [IPv6:2a00:1450:4864:20::32c])\n (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits))\n (No client certificate requested)\n by phobos.denx.de (Postfix) with ESMTPS id D1C4084951\n for <u-boot@lists.denx.de>; Tue,  5 May 2026 17:48:54 +0200 (CEST)","by mail-wm1-x32c.google.com with SMTP id\n 5b1f17b1804b1-48a563e4ef7so52485615e9.0\n for <u-boot@lists.denx.de>; Tue, 05 May 2026 08:48:54 -0700 (PDT)","from lion.localdomain (p4fc3dd86.dip0.t-ipconnect.de.\n [79.195.221.134]) by smtp.gmail.com with ESMTPSA id\n 5b1f17b1804b1-48d182ee923sm20305955e9.27.2026.05.05.08.48.52\n (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256);\n Tue, 05 May 2026 08:48:52 -0700 (PDT)"],"X-Spam-Checker-Version":"SpamAssassin 3.4.2 (2018-09-13) on phobos.denx.de","X-Spam-Level":"","X-Spam-Status":"No, score=-2.1 required=5.0 tests=BAYES_00,DKIM_SIGNED,\n DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,RCVD_IN_DNSWL_BLOCKED,\n SPF_HELO_NONE,SPF_PASS autolearn=ham autolearn_force=no version=3.4.2","DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed;\n d=linaro.org; s=google; t=1777996134; x=1778600934; darn=lists.denx.de;\n h=cc:to:in-reply-to:references:message-id:content-transfer-encoding\n :mime-version:subject:date:from:from:to:cc:subject:date:message-id\n :reply-to; bh=lzWadQb21A++i7EkdA5OrftUFXP1i94lh/s73J01ZkM=;\n b=SQgnRpN3u8T5UTDGAVY6hovqyH3xDmceOTfNbPqkzveEjiEqQMM2kvqH74cWSwr3gA\n DHbvMT+6xoJHD8dVfxanvdnHFrImPYBXMifbl1qx8muZtf3gOXAhf4sfhTnWY/dSP8d9\n uhaqANEpCoU0m9pwpqJ+vL7STv8LunQcOya5o/9CnU06GIGNX/98i4c/pkhEMtoYP5He\n ryQWqAW0QdMyjm+bFa+mnkmNbXsPY1AN3YqkzFZ35ZW3caMX/pzXZAVU8DwdusYsqCCx\n WXEFAWApu/kpmTeM7odJCIm8VIaUN/SgQVEiq4RxaLbi3ppU5aS8pgpzuv7kkQa6mGgt\n tBbg==","X-Google-DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed;\n d=1e100.net; s=20251104; t=1777996134; x=1778600934;\n h=cc:to:in-reply-to:references:message-id:content-transfer-encoding\n :mime-version:subject:date:from:x-gm-gg:x-gm-message-state:from:to\n :cc:subject:date:message-id:reply-to;\n bh=lzWadQb21A++i7EkdA5OrftUFXP1i94lh/s73J01ZkM=;\n b=YkQ8Mi3PG6uaLJOCAEmo2Ty/Jq0zQr2Smaj6JoSNi8WgrsA+uF3hgdzHsx+HkDm0A5\n B31hc47MODhEA1Ao5Y8r5+sqPhO3cGzcce1ASVP5hDDL3gtAdZuQ7YRIVQoTTnwDCiNM\n hpUhZdf48BKrLVn+9BTB+fAQq8pD4V1mXDvfgQTc/F78z3XSuDxhLKmwzpBnRX830JQd\n l3P82fcwM9WYLsDvSQaoA7/7TQQXE7cn6ZPOoQbs1sLNoLqKelMY5yXnv7jFtJVdLjfJ\n yS8dVd1KKPLk3Zcoasjo8xb2+dtGnQg2rb082USjx50msXYHuYgH3Nfs9bWCwLBQA+W2\n yNRw==","X-Gm-Message-State":"AOJu0YweW9ZBaLIGNQ0k8C79rg2fvudtY4ry7D/3uY69IfVjEA0x7rG2\n 0xeEQ+DoaACgDK2h2r3lFja5L4Ykae+S/Vwss/EK+qY4ymZLru/4Lqh1z8AAv9OZbP8=","X-Gm-Gg":"AeBDietrX4rWe/I6S0AzHc9zU+PGjC6vhEGvPiAinf1Q5gNyA4E5yFlvrg6gnjsY7qP\n i7FxFhkP6e8DniwFgtRfN4eY7zQG7b0yZnkecLsXeGmfbFagtrpQ6d4vY3uiIhyBtCiUeUXSEw3\n ggwMudZKJaZ7zt7GkkJbkCaBeZsvKoEsmbZ+xk/B9aJN3zKUypVKHSSdD+H4Ye4cHsXMegEtX4a\n JdXHrsuES22i4h7Wk1Q7TrAMfsbdccSmTX01LSDWDxxcNp9o8QJAS5y3MCYTd5QucNR6uhUtEPq\n 5rj6oujLXEGWT3iCtv4QMa7G5DGnjtQXa2DcRIPSKNgdfBgx1s2WUg+jn5KRpkMKm518yvizLjW\n Q5klVztXcAoW7RE9EkOCey6lRM75NN3AC9YZHOIssS1Shtdh3MMUnD4B8ozYhg+qWZ39tuxIHL9\n Y+n+v5rkn6denSZPNOwW1iOrPlaeVPQY2H+VC6UWdpAveMABnXQRd56Kt0dl1GKNzhGRBq62gb/\n gzG5qo=","X-Received":"by 2002:a05:600c:8907:b0:48a:75b9:b0bc with SMTP id\n 5b1f17b1804b1-48d18cfe207mr45809955e9.29.1777996134193;\n Tue, 05 May 2026 08:48:54 -0700 (PDT)","From":"Casey Connolly <casey.connolly@linaro.org>","Date":"Tue, 05 May 2026 17:48:44 +0200","Subject":"[PATCH v6 4/6] doc: board/qualcomm: update docs for new u-boot.mbn\n target","MIME-Version":"1.0","Content-Type":"text/plain; charset=\"utf-8\"","Content-Transfer-Encoding":"7bit","Message-Id":"\n <20260505-b4-qcom-tooling-improvements-v6-4-a5fb673f4af6@linaro.org>","References":"\n <20260505-b4-qcom-tooling-improvements-v6-0-a5fb673f4af6@linaro.org>","In-Reply-To":"\n <20260505-b4-qcom-tooling-improvements-v6-0-a5fb673f4af6@linaro.org>","To":"u-boot@lists.denx.de, Sumit Garg <sumit.garg@kernel.org>,\n u-boot-qcom@groups.io","Cc":"Tom Rini <trini@konsulko.com>,\n Casey Connolly <casey.connolly@linaro.org>,\n Neil Armstrong <neil.armstrong@linaro.org>,\n Balaji Selvanathan <balaji.selvanathan@oss.qualcomm.com>,\n Varadarajan Narayanan <quic_varada@quicinc.com>,\n Quentin Schulz <quentin.schulz@cherry.de>,\n Heinrich Schuchardt <xypron.glpk@gmx.de>,\n Marek Vasut <marek.vasut+renesas@mailbox.org>, Peng Fan <peng.fan@nxp.com>,\n Jaehoon Chung <jh80.chung@samsung.com>,\n Aswin Murugan <aswin.murugan@oss.qualcomm.com>,\n Ilias Apalodimas <ilias.apalodimas@linaro.org>,\n Michal Simek <michal.simek@amd.com>, David Lechner <dlechner@baylibre.com>","X-Mailer":"b4 0.16-dev","X-Developer-Signature":"v=1; a=openpgp-sha256; l=7490;\n i=casey.connolly@linaro.org; h=from:subject:message-id;\n bh=FkuB4/AyXxwek3gq8MkKF4q+Zmv9ETHEGEa+/MeHAgM=;\n b=owGbwMvMwCFYaeA6f6eBkTjjabUkhsxfgrEiHJZx+2bd8eD3939/69jZLlHRQ7MFz87/2nGqc\n cmJ3r0/OkpZGAQ5GGTFFFnETyyzbFp72V5j+4ILMHNYmUCGMHBxCsBEYmQZGbZ812PecHyGlti5\n 21d67j9552ZheUEwYN6SNcYTbGepb7vDyLCjlTNsKf9kaSmtp9Mdl7caXdCuffT3gJRB3j/FHX5\n xe4IA","X-Developer-Key":"i=casey.connolly@linaro.org; a=openpgp;\n fpr=83B24DA7FE145076BC38BB250CD904EB673A7C47","X-BeenThere":"u-boot@lists.denx.de","X-Mailman-Version":"2.1.39","Precedence":"list","List-Id":"U-Boot discussion <u-boot.lists.denx.de>","List-Unsubscribe":"<https://lists.denx.de/options/u-boot>,\n <mailto:u-boot-request@lists.denx.de?subject=unsubscribe>","List-Archive":"<https://lists.denx.de/pipermail/u-boot/>","List-Post":"<mailto:u-boot@lists.denx.de>","List-Help":"<mailto:u-boot-request@lists.denx.de?subject=help>","List-Subscribe":"<https://lists.denx.de/listinfo/u-boot>,\n <mailto:u-boot-request@lists.denx.de?subject=subscribe>","Errors-To":"u-boot-bounces@lists.denx.de","Sender":"\"U-Boot\" <u-boot-bounces@lists.denx.de>","X-Virus-Scanned":"clamav-milter 0.103.8 at phobos.denx.de","X-Virus-Status":"Clean"},"content":"Update the build docs to describe building the u-boot.mbn target\nexplicitly for some boards. Additionally add a new \"signing\" page to\ndescribe the purpose of mkmbn and the MBN format.\n\nSigned-off-by: Casey Connolly <casey.connolly@linaro.org>\n---\n doc/board/qualcomm/dragonwing.rst | 14 ++++----------\n doc/board/qualcomm/index.rst      |  1 +\n doc/board/qualcomm/rb3gen2.rst    | 30 ++++++++++++++----------------\n doc/board/qualcomm/rdp.rst        |  5 +++--\n doc/board/qualcomm/signing.rst    | 29 +++++++++++++++++++++++++++++\n 5 files changed, 51 insertions(+), 28 deletions(-)","diff":"diff --git a/doc/board/qualcomm/dragonwing.rst b/doc/board/qualcomm/dragonwing.rst\nindex d48994153095..028ec340d155 100644\n--- a/doc/board/qualcomm/dragonwing.rst\n+++ b/doc/board/qualcomm/dragonwing.rst\n@@ -19,20 +19,15 @@ Installation\n First, setup ``CROSS_COMPILE`` for aarch64. Then, build U-Boot for ``QCS615``, ``QCS8300`` or ``QCS9100``::\n \n   $ export CROSS_COMPILE=<aarch64 toolchain prefix>\n   $ make qcom_qcs8300_defconfig\n-  $ make -j8 u-boot.mbn\n+  $ make -j8\n \n Although the board does not have secure boot set up by default,\n-the firmware still expects firmware ELF images to be \"signed\". The signature\n-does not provide any security in this case, but it provides the firmware with\n-some required metadata.\n+the firmware still expects firmware ELF images to be \"signed\" in the MBN format.\n+This is handled automatically with mkmbn (see :doc:`signing` for more details).\n \n-To \"sign\" ``u-boot.elf`` you can use e.g. `qtestsign`_::\n-\n-  $ qtestsign -v6 aboot -o u-boot.mbn u-boot.elf\n-\n-Then flash the resulting ``u-boot.mbn`` to the ``uefi_a`` partition\n+Just flash the resulting ``u-boot.mbn`` to the ``uefi_a`` partition\n on your device with ``fastboot flash uefi_a u-boot.mbn``.\n \n U-Boot should be running after a reboot (``fastboot reboot``).\n \n@@ -43,7 +38,6 @@ A tool like bkerler's `edl`_ can be used for flashing with the firehose loader (\n the firehose loader can be obtained from `dragonwing IQ9 bootbinaries`.) ::\n \n $ edl.py --loader /path/to/prog_firehose_ddr.elf w uefi_a u-boot.mbn\n \n-.. _qtestsign: https://github.com/msm8916-mainline/qtestsign\n .. _edl: https://github.com/bkerler/edl\n .. _dragonwing IQ9 bootbinaries: https://artifacts.codelinaro.org/ui/native/qli-ci/flashable-binaries/qimpsdk/qcs9075-rb8-core-kit\ndiff --git a/doc/board/qualcomm/index.rst b/doc/board/qualcomm/index.rst\nindex 3238a68e859b..b7637b3c0439 100644\n--- a/doc/board/qualcomm/index.rst\n+++ b/doc/board/qualcomm/index.rst\n@@ -13,4 +13,5 @@ Qualcomm\n    rb3gen2\n    iq8\n    phones\n    rdp\n+   signing\ndiff --git a/doc/board/qualcomm/rb3gen2.rst b/doc/board/qualcomm/rb3gen2.rst\nindex 518d01c4c3a3..329baa8d1f3a 100644\n--- a/doc/board/qualcomm/rb3gen2.rst\n+++ b/doc/board/qualcomm/rb3gen2.rst\n@@ -17,34 +17,32 @@ Installation\n First, setup ``CROSS_COMPILE`` for aarch64. Then, build U-Boot for ``qcm6490``::\n \n   $ export CROSS_COMPILE=<aarch64 toolchain prefix>\n   $ make qcm6490_defconfig\n-  $ make -j8\n+  $ make -j8 DEVICE_TREE=qcom/qcs6490-rb3gen2\n \n-This will build ``u-boot.elf`` in the configured output directory.\n+This will build ``u-boot.mbn`` in the configured output directory.\n \n-Although the RB3 Gen 2 does not have secure boot set up by default,\n-the firmware still expects firmware ELF images to be \"signed\". The signature\n-does not provide any security in this case, but it provides the firmware with\n-some required metadata.\n-\n-To \"sign\" ``u-boot.elf`` you can use e.g. `qtestsign`_::\n-\n-  $ qtestsign -v6 aboot -o u-boot.mbn u-boot.elf\n+Although the board does not have secure boot set up by default,\n+the firmware still expects firmware ELF images to be \"signed\" in the MBN format.\n+This is handled automatically with mkmbn (see :doc:`signing` for more details).\n \n Then install the resulting ``u-boot.mbn`` to the ``uefi_a`` partition\n on your device with ``fastboot flash uefi_a u-boot.mbn``.\n \n U-Boot should be running after a reboot (``fastboot reboot``).\n \n-Note that fastboot is not yet supported in U-Boot on this board, as a result,\n-to flash back the original firmware, or new versoins of the U-Boot, EDL mode\n-must be used. This can be accessed by pressing the EDL mode button as described\n-in the Qualcomm Linux documentation. A tool like bkerler's `edl`_ can be used\n-for flashing with the firehose loader binary appropriate for the board.\n+Note that fastboot is not yet supported in U-Boot on this board, as a result, to flash\n+back the original firmware, or new versoins of the U-Boot, EDL mode must be used. This\n+can be accessed by holding the EDL button while powering on as described in the\n+Qualcomm Linux documentation.\n+\n+A tool like bkerler's `edl`_ can be used for flashing with the firehose loader from the `RB3 Gen 2 bootbinaries`. ::\n+\n+  $ edl.py --loader /path/to/prog_firehose_ddr.elf w uefi_a u-boot.mbn\n \n-.. _qtestsign: https://github.com/msm8916-mainline/qtestsign\n .. _edl: https://github.com/bkerler/edl\n+.. _RB3 Gen 2 bootbinaries: https://artifacts.codelinaro.org/artifactory/qli-ci/software/chip/qualcomm_linux-spf-1-0/qualcomm-linux-spf-1-0_test_device_public/r1.0_00039.2/QCM6490.LE.1.0/common/build/ufs/bin/QCM6490_bootbinaries.zip\n \n Usage\n -----\n \ndiff --git a/doc/board/qualcomm/rdp.rst b/doc/board/qualcomm/rdp.rst\nindex 99cf8eba57ce..4e63fe624b8a 100644\n--- a/doc/board/qualcomm/rdp.rst\n+++ b/doc/board/qualcomm/rdp.rst\n@@ -16,11 +16,12 @@ Installation\n First, setup ``CROSS_COMPILE`` for aarch64. Then, build U-Boot for ``IPQ9574``::\n \n   $ export CROSS_COMPILE=<aarch64 toolchain prefix>\n   $ make qcom_ipq9574_mmc_defconfig\n-  $ make -j8\n+  $ make -j8 u-boot.mbn\n \n-This will build ``u-boot.elf`` in the configured output directory.\n+This will build the signed ``u-boot.mbn`` in the configured output directory. More information\n+about image signing can be found in :doc:`signing`.\n \n The firmware expects the ELF images to be in MBN format. The `elftombn.py` tool\n can be used to convert the ELF images to MBN format.\n \ndiff --git a/doc/board/qualcomm/signing.rst b/doc/board/qualcomm/signing.rst\nnew file mode 100644\nindex 000000000000..317cd57cefee\n--- /dev/null\n+++ b/doc/board/qualcomm/signing.rst\n@@ -0,0 +1,29 @@\n+.. SPDX-License-Identifier: GPL-2.0+\n+.. sectionauthor:: Casey Connolly <casey.connolly@linaro.org>\n+\n+Qualcomm Image Signing\n+======================\n+\n+On some boards like the RB3 Gen 2 where U-Boot runs as the first stage bootloader,\n+it must be in a Qualcomm specific signed ELF format called ``mbn``.\n+\n+For most boards this is handled automatically with the ``mkmbn`` tool in the U-Boot\n+build system. If you're bringing up a new platform which will run U-Boot as the first\n+stage bootloader, you may need to add your board and platform compatible string and\n+the load address used by your board to the ``boards`` table in ``tools/qcom/mkmbn/mkmbn.py``.\n+\n+For example:\n+\n+.. code-block:: python\n+\n+\tboards: dict[bytes, int] = {\n+\t\t# Exact matches for boards, these are preferred\n+\t\t# Don't forget the null terminator!\n+\t\tb\"qcom,qcs6490-rb3gen2\\0\": MbnData(0x9FC00000, 6, SwId.aboot),\n+\t...\n+\t}\n+\n+\n+When you run make to build the ``u-boot.mbn`` target, ``mkmbn`` will inspect the DTB in your\n+U-Boot image and try to match the compatible to the table, then it will build an ELF image and\n+hash/sign it per the MBN spec.\n","prefixes":["v6","4/6"]}