[esp32] Do not require verification_key with Secure Boot V2 signing schemes (#17497)

This commit is contained in:
Keith Burzinski
2026-07-14 12:40:45 +12:00
committed by Jesse Hills
parent f38e7f2de2
commit af9a0404d9
3 changed files with 167 additions and 18 deletions
@@ -0,0 +1,11 @@
# Secure Boot V2 schemes carry the public key inside each image's signature
# block, so verifying externally-signed binaries needs no key in the config:
# a bare block enables verification with the default rsa3072 scheme.
esp32:
variant: esp32s3
framework:
type: esp-idf
advanced:
signed_ota_verification:
<<: !include common.yaml