mu_tiano_plus/SecurityPkg/SecurityPkg.ci.yaml

161 строка
5.1 KiB
YAML

## @file
# CI configuration for SecurityPkg
#
# Copyright (c) Microsoft Corporation
# Copyright (c) 2020, Intel Corporation. All rights reserved.<BR>
# SPDX-License-Identifier: BSD-2-Clause-Patent
##
{
# MU_CHANGE begin
"PrEval": {
"DscPath": "SecurityPkg.dsc",
},
# MU_CHANGE end
"LicenseCheck": {
"IgnoreFiles": []
},
"EccCheck": {
## Exception sample looks like below:
## "ExceptionList": [
## "<ErrorID>", "<KeyWord>"
## ]
"ExceptionList": [
"8005", "gRT",
"8001", "DxeTpm2MeasureBootLibUnitTestMain",
"8001", "DxeTpmMeasureBootLibUnitTestMain"
],
## Both file path and directory path are accepted.
"IgnoreFiles": [
"Library/TcgStorageCoreLib/TcgStorageUtil.c",
"Library/TcgStorageCoreLib/TcgStorageCore.c",
"Library/Tpm2CommandLib/Tpm2NVStorage.c"
]
},
"CompilerPlugin": {
"DscPath": "SecurityPkg.dsc"
},
## options defined .pytool/Plugin/HostUnitTestCompilerPlugin
"HostUnitTestCompilerPlugin": {
"DscPath": "Test/SecurityPkgHostTest.dsc"
},
"CharEncodingCheck": {
"IgnoreFiles": []
},
"DependencyCheck": {
"AcceptableDependencies": [
"MdePkg/MdePkg.dec",
"MdeModulePkg/MdeModulePkg.dec",
"UnitTestFrameworkPkg/UnitTestFrameworkPkg.dec",
"SecurityPkg/SecurityPkg.dec",
"StandaloneMmPkg/StandaloneMmPkg.dec",
"CryptoPkg/CryptoPkg.dec",
# MU_CHANGE - Measure into PCR7 if Debug is enabled.
"SourceLevelDebugPkg/SourceLevelDebugPkg.dec",
# MU_CHANGE - Only used by FmpAuthenticationLibs that perhaps should move
# to the FmpDevicePkg.
"FmpDevicePkg/FmpDevicePkg.dec"
],
# For host based unit tests
"AcceptableDependencies-HOST_APPLICATION":[],
# For UEFI shell based apps
"AcceptableDependencies-UEFI_APPLICATION":[],
"IgnoreInf": []
},
"DscCompleteCheck": {
"DscPath": "SecurityPkg.dsc",
"IgnoreInf": []
},
## options defined .pytool/Plugin/HostUnitTestDscCompleteCheck
"HostUnitTestDscCompleteCheck": {
"IgnoreInf": [""],
"DscPath": "Test/SecurityPkgHostTest.dsc"
},
"GuidCheck": {
"IgnoreGuidName": [],
"IgnoreGuidValue": ["00000000-0000-0000-0000-000000000000"],
"IgnoreFoldersAndFiles": [],
"IgnoreDuplicates": [
"Tpm2InstanceLibDTpm=gEfiTpmDeviceInstanceTpm20DtpmGuid", # by design
]
},
"LibraryClassCheck": {
"IgnoreHeaderFile": []
},
## options defined ci/Plugin/SpellCheck
"SpellCheck": {
"AuditOnly": True, # Fails test but run in AuditOnly mode to collect log
"ExtendWords": [ # words to extend to the dictionary for this package
"shortformed", # tpm acpi
"autodetect",
"blocksid",
"comid",
"cpinsidpin", #OpalSScV2
"ecdsa", # TPM
"ecschnorr", # TPM
"eisaid", # ACPI
"harddisk",
"hashall",
"hashto",
"kek's",
"lfanew", # PE/COFF
"pcrindex",
"pkglength",
"ppuser",
"preos",
"stclear",
"toctou",
"tpm's",
"tpmcmdbuflength",
"tpmcommlib",
"tpmnvvaluelength",
"wrlocked",
"xored",
"certsn",
"certdb",
"certdbv",
"unownered",
"defaultdb",
"defaultdbx",
"smuid",
"researvedf", # Typo that cannot be easily fixed
"researved",
"revertsp",
"rdlocked",
"ssclite",
"mechanish",
"rquuse",
"rsassa",
"ecdaa",
"cphash",
"nuvia",
"certn",
"rsapss",
"rsaes",
"communciate", #typo that cannot be easily fixed
"rngdxe",
"opalite",
"loongarch",
"loongson"
],
"IgnoreStandardPaths": [], # Standard Plugin defined paths that should be ignore
"AdditionalIncludePaths": [] # Additional paths to spell check (wildcards supported)
},
# MU_CHANGE - Removed conditional logic around openssl crypto so this is no longer necessary
#"Defines": {
# "BLD_*_CONTINUOUS_INTEGRATION": "TRUE",
#},
"DebugMacroCheck": {
"StringSubstitutions": {
# SecurityPkg/IntelTdx/TdTcg2Dxe/TdTcg2Dxe.c
# Reason: Acknowledging use of two format specifiers in string with one argument
# Replace ternary operator in debug string with single specifier
'Index == COLUME_SIZE/2 ? " | %02x" : " %02x"': "%d"
}
}
}