Skip to content

v1.8.2

Compare
Choose a tag to compare
@stepansnigirev stepansnigirev released this 08 Nov 19:42
· 30 commits to master since this release

Release notes

  • Deterministic build is actually deterministic now

Upgrade process

Copy specter_upgrade_v1.8.2.bin to the SD card and insert it into the device. The bootloader will check the signatures of the upgrade file and update the firmware.

Flashing on empty board

If your discovery board is empty or you have a very old firmware (below 1.4.0) - connect your board over miniUSB with power jumper set to STLK and copy-paste initial_firmware_v1.8.2.bin file to the mounted drive.

If you have problems flashing initial firmware consider using stlink-tools. A command to flash firmware:

st-flash write path/to/initial_firmware.bin 0x8000000

If you want to use self-signed bootloader and firmware check out the instructions in the bootloader repo

sha256.signed.txt file contains sha256 hashes of the firmware binary files and signed with @stepansnigirev's GPG key.
You can get the public key here: https://stepansnigirev.com/ss-specter-release.asc.
It is also available on keys.openpgp.org.
Fingerprint of the key is 6F16 E354 F833 93D6 E52E C25F 36ED 357A B24B 915F, short id: 36ed357ab24b915f

Reproducible build

You can build binaries identical to the ones in this release yourself. Follow this instruction, when the build is almost complete the script will output a message for signing and ask you for the signatures.

Verify that upgrade message is:

1.8.2-1r9dhwryz8mz94t735xh8vfqay80lgnt8g64zfl7apcsufxx74assqwkyc8

Add first signature:

HyLs4YiMmlBqjvh6QadJFGFiOcpKUFKOxmOM59gPyiXDWEotIMTd7LIOijOTyoSNVfvVFoaAHbbyhb1Ri3GJRJU=

Add second signature:

HwEm9mx/cnxO74vyTbzZwcsZufUynA/4AKbgSKEVr7IPdEfPZ+tUYP4S5D6o8lokT8Yzfs9jpNVuG95PvHbyOdg=

Then hit enter and check that sha256.txt has the same hashes as in sha256.signed.txt file.