·
17 commits
to main
since this release
Immutable
release. Only release title and notes can be modified.
This is a combined runtime and FMC release.
Caliptra Firmware 2.1.2 Release Notes
Release notes for changes introduced since Firmware 2.1.1.
Features
- Authorization, Attestation & DPE:
- Add owner authorization manifest support (#3824)
- Record subsystem mode in ROM
DeviceStatusmeasurements (#3930) - Anchor MCU runtime and SoC manifest measurements in Caliptra-managed DPE contexts and harden DPE index handling across hitless updates (#4070)
- Report tagged DPE context SVN through
DPE_GET_TAGGED_TCI(#4083) - Expose manifest SVN state through
FW_INFO(#4082) - Allow PL1 callers to use
AUTHORIZE_AND_STASHwithSKIP_STASH(#4077)
- Runtime, Drivers & Firmware Images:
- FPGA, Hardware Model & Emulator:
- Auto-generate FPGA OTP fuse aliases from caliptra-mcu-sw fuse definitions (#3909)
- Add an OpenOCD JTAG
load_imagecommand (#3937) - Add feature gates for multiple hardware revisions (#3935)
- Generate a stable FPGA MAC address from the boot SD serial number (#3979)
- Support downloading prebuilt Caliptra artifacts in the builder (#3999)
- Add
ProvisioningStageto subsystem initialization parameters (#4007) - Support running the emulator with 2.0 and 2.1 firmware (#4012)
- Remove CFI from the hardware model dependency tree (#4039)
- Add the
SpareI3cControlStsregister (#4086) - Add a boot sequence for an external I3C host (#4091)
- Build, Test & Documentation:
Fixes
- Subsystem, FPGA & Emulator:
- Fix FPGA MCU smoke tests for the latest caliptra-mcu-sw ROM (#3900)
- Remove the OTP status offset fallback (#3921)
- Correct the emulator MCU SRAM size (#3976)
- Fix a subsystem-mode smoke test assertion (#4006)
- Fix latching of SoC IFC interrupt lines and expose CPU halt state (#4020)
- Restore
caliptra-builderas a development dependency of the hardware model (#4035)
- Authorization, Runtime & Security:
- CI & Test Compatibility:
- Correct MCU commit checks for workflow dispatch and caliptra-mcu-sw smoke tests (#3914, #3918, #3920)
- Make ML-DSA the default for firmware verification tests (#3955)
- Fix nightly subsystem-mode TCB info and PCR0 derivation expectations (#4065)
- Support older ROMs in nightly DICE and PCR0 derivation tests (#4112)
- Documentation & Maintenance:
Full Changelog: fw-2.1.1...fw-2.1.2