Bootloaders: use upstream ATF + use HTTPS only

Edited by Ghost User

Merge request reports

Loading