tree 618852e6897143587b9fddb1ac0548c4b1deb86f
parent 76e35b3d642e21fd9762c0f7b27ff36ea2c43409
author Patrick Venture <venture@google.com> 1560971165 -0700
committer Patrick Venture <venture@google.com> 1561644314 +0000

designs: firmware_update_via_blobs: Add notion of cleanup blob

Add the notion of a cleanup blob id that is present.  This was invented
as a convenience mechanism for wiping the BMC's update artifacts on
failure.  On memory constrained systems, having a 32MiB file sitting in
the RAM FS is wasteful on failure.  One can simply reboot the BMC to
address this, and therefore this blob is only a convenience.

Deleting the artifacts on failure is not a default behavior because they
are meant to be harmless.  This also allows a developer to use unsigned
images if they want without requiring a different update mechanism.  The
developer would require console access, but with that access could flash
the "invalid" image if they chose.

Signed-off-by: Patrick Venture <venture@google.com>
Change-Id: Ie1bc184d24295ed61fd8be8fd48fb50c205235ac
