Re: [PATCH] Maintainers.txt: Add reviewers for security features.

Dong, Eric

Hi Laszlo,


Thanks for your comments. I will split it in my next version patches.




From: <> On Behalf Of Laszlo Ersek
Sent: Tuesday, June 2, 2020 9:42 PM
To: Dong, Eric <eric.dong@...>;
Cc: Wu, Hao A <hao.a.wu@...>; Yao, Jiewen <jiewen.yao@...>; Wang, Jian J <>; Zhang, Chao B <chao.b.zhang@...>; Ni, Ray <>; De, Debkumar <>; Han, Harry <harry.han@...>; West, Catharine <catharine.west@...>; Zhang, Qi1 <qi1.zhang@...>; Kumar, Rahul1 <rahul1.kumar@...>; Xu, Min M <min.m.xu@...>
Subject: Re: [edk2-devel] [PATCH] Maintainers.txt: Add reviewers for security features.


Hi Eric,

On 06/01/20 10:07, Eric Dong wrote:
> Add reviewers to review security related changes.
> Impacted below modules:

> MdeModulePkg: Pei Core
> F: MdeModulePkg/Core/Pei/

> SecurityPkg: Tcg related modules
> F: SecurityPkg/Tcg/

> SecurityPkg: Secure boot related modules
> F: SecurityPkg/Library/DxeImageVerificationLib/
> F: SecurityPkg/VariableAuthenticated/SecureBootConfigDxe/
> F: SecurityPkg/Library/AuthVariableLib/

> UefiCpuPkg: Sec related modules
> F: UefiCpuPkg/SecCore/
> F: UefiCpuPkg/ResetVector/

> Signed-off-by: Eric Dong <eric.dong@...>
> Cc: Hao A Wu <hao.a.wu@...>
> Cc: Jiewen Yao <jiewen.yao@...>
> Cc: Jian J Wang <>
> Cc: Chao Zhang <chao.b.zhang@...>
> Cc: Ray Ni <>
> Cc: Laszlo Ersek <lersek@...>
> Cc: Debkumar De <>
> Cc: Harry Han <harry.han@...>
> Cc: Catharine West <catharine.west@...>
> Cc: Qi Zhang <qi1.zhang@...>
> Cc: Rahul Kumar <rahul1.kumar@...>
> Cc: Min Xu <min.m.xu@...>
> ---
>  Maintainers.txt | 28 +++++++++++++++++++++++++++-
>  1 file changed, 27 insertions(+), 1 deletion(-)

This patch should be split in at least 3 parts (one per package). Maybe
even 4 parts (if we want to keep the TCG vs. Secure Boot section update

There are two reasons for this:

(1) Better review granularity.

For a (random!) example, Debkumar De is not added under SecurityPkg,
therefore Debkumar should not be forced to look at the SecurityPkg
hunks. But now that's a problem, because the patch contains everything.

(2) Such patches are actually code. They influence how
"BaseTools/Scripts/  works.

For example, when you introduce "MdeModulePkg: Pei Core" as a separate
subsystem, I have to verify that you also remove it from under
"MdeModulePkg: Core services (PEI, DXE and Runtime) modules".

In addition, I review that Dandan and Liming *remain* reviewers for the
PEI Core (because they are listed under "MdeModulePkg: Core services
(PEI, DXE and Runtime) modules" as well), and that Debkumar, Harry and
Catharine are *new* reviewers. I also have to check that the resultant
reviewer list, for the new "MdeModulePkg: Pei Core" subsystem does not
overlap with the general MdeModulePkg owners (Jian, Hao).

So that's all good, but it's complex enough that I really don't want to
handle *multiple packages* in this regard in a single patch. The same
procedure has to be done for SecurityPkg and UefiCpuPkg as well (on the
reviewer side), and having them all in a single patch makes the review
needlessly difficult.

So split this up please.


> diff --git a/Maintainers.txt b/Maintainers.txt
> index 76f336b7dc..4f316cfc60 100644
> --- a/Maintainers.txt
> +++ b/Maintainers.txt
> @@ -258,6 +258,14 @@ F: MdeModulePkg/Universal/Console/
>  R: Zhichao Gao <zhichao.gao@...>
>  R: Ray Ni <>
> +MdeModulePkg: Pei Core
> +F: MdeModulePkg/Core/Pei/
> +R: Dandan Bi <>
> +R: Liming Gao <liming.gao@...>
> +R: Debkumar De <>
> +R: Harry Han <harry.han@...>
> +R: Catharine West <catharine.west@...>
> +
>  MdeModulePkg: Core services (PEI, DXE and Runtime) modules
>  F: MdeModulePkg/*Mem*/
>  F: MdeModulePkg/*SectionExtract*/
> @@ -265,7 +273,6 @@ F: MdeModulePkg/*StatusCode*/
>  F: MdeModulePkg/Application/DumpDynPcd/
>  F: MdeModulePkg/Core/Dxe/
>  F: MdeModulePkg/Core/DxeIplPeim/
> -F: MdeModulePkg/Core/Pei/
>  F: MdeModulePkg/Core/RuntimeDxe/
>  F: MdeModulePkg/Include/*Mem*.h
>  F: MdeModulePkg/Include/*Pcd*.h
> @@ -463,6 +470,17 @@ M: Jiewen Yao <jiewen.yao@...>
>  M: Jian J Wang <>
>  R: Chao Zhang <chao.b.zhang@...>
> +SecurityPkg: Tcg related modules
> +F: SecurityPkg/Tcg/
> +R: Qi Zhang <qi1.zhang@...>
> +R: Rahul Kumar <rahul1.kumar@...>
> +
> +SecurityPkg: Secure boot related modules
> +F: SecurityPkg/Library/DxeImageVerificationLib/
> +F: SecurityPkg/VariableAuthenticated/SecureBootConfigDxe/
> +F: SecurityPkg/Library/AuthVariableLib/
> +R: Min Xu <min.m.xu@...>
> +
>  ShellPkg
>  F: ShellPkg/
>  W:
> @@ -486,6 +504,14 @@ W:
>  M: Eric Dong <eric.dong@...>
>  M: Ray Ni <>
>  R: Laszlo Ersek <lersek@...>
> +R: Rahul Kumar <rahul1.kumar@...>
> +
> +UefiCpuPkg: Sec related modules
> +F: UefiCpuPkg/SecCore/
> +F: UefiCpuPkg/ResetVector/
> +R: Debkumar De <>
> +R: Harry Han <harry.han@...>
> +R: Catharine West <catharine.west@...>
>  UefiPayloadPkg
>  F: UefiPayloadPkg/

Join to automatically receive all group messages.