INTEL_CHIPSET_LOCKDOWN upstreamed in #coreboot https://t.co/ra484ZaNdR Thanks @coreboot_org community!
— Hardened-GNU/Linux (@hardenedlinux) August 31, 2017
Coreboot now locks down Intel HW with this fix https://t.co/8rHARupuru Ref: https://t.co/4ZcMMaqTjO (slides 42-43) & https://t.co/pG8nUjRdQQ pic.twitter.com/OPnw6MCvca
— Yuriy Bulygin (@c7zero) September 2, 2017
Should make sure MSR_LT_LOCK_MEMORY[0] is set (coreboot/src/soc/intel/skylake/include/soc/msr.h). Will add a module checking it in @CHIPSEC
— Yuriy Bulygin (@c7zero) September 2, 2017
