From: Tianjia Zhang <tianjia.zhang@linux.alibaba.com>
To: Daniel Kiper <dkiper@net-space.pl>
Cc: grub-devel@gnu.org
Subject: Re: [PATCH] tpm: Add debug information for device protocol and eventlog
Date: Wed, 28 Oct 2020 14:55:52 +0800 [thread overview]
Message-ID: <26f73d12-8a31-8092-534a-8eaf89e540b8@linux.alibaba.com> (raw)
In-Reply-To: <20201027205825.hvporq7q7rkew4jz@tomti.i.net-space.pl>
Thanks for pointing it out, this patch is too careless, very sorry, I
will revise another version.
Best regards,
Tianjia
On 10/28/20 4:58 AM, Daniel Kiper wrote:
> Hi,
>
> First of all, sorry for late reply...
>
> On Wed, Jul 29, 2020 at 09:33:27PM +0800, Tianjia Zhang wrote:
>> Add a number of debug logs to the tpm module. The condition tag
>> for opening debugging is `tpm`. On TPM machines, this will bring
>> great convenience to diagnosis and debugging.
>>
>> Signed-off-by: Tianjia Zhang <tianjia.zhang@linux.alibaba.com>
>> ---
>> grub-core/commands/efi/tpm.c | 21 +++++++++++++++++----
>> 1 file changed, 17 insertions(+), 4 deletions(-)
>>
>> diff --git a/grub-core/commands/efi/tpm.c b/grub-core/commands/efi/tpm.c
>> index b03b6b296..9b2cd43f1 100644
>> --- a/grub-core/commands/efi/tpm.c
>> +++ b/grub-core/commands/efi/tpm.c
>> @@ -56,9 +56,12 @@ grub_tpm1_present (grub_efi_tpm_protocol_t *tpm)
>>
>> if (status != GRUB_EFI_SUCCESS || caps.TPMDeactivatedFlag
>> || !caps.TPMPresentFlag)
>> - return tpm1_present = 0;
>> + tpm1_present = 0;
>>
>> - return tpm1_present = 1;
>> + tpm1_present = 1;
>> +
>> + grub_dprintf ("tpm", "tpm1 %s present\n", tpm1_present ? "" : "NOT");
>> + return (grub_efi_boolean_t) tpm1_present;
>
> This does not work as you expect. tpm1 will be always reported as present.
>
>> }
>>
>> static grub_efi_boolean_t
>> @@ -75,9 +78,12 @@ grub_tpm2_present (grub_efi_tpm2_protocol_t *tpm)
>> status = efi_call_2 (tpm->get_capability, tpm, &caps);
>>
>> if (status != GRUB_EFI_SUCCESS || !caps.TPMPresentFlag)
>> - return tpm2_present = 0;
>> + tpm2_present = 0;
>> +
>> + tpm2_present = 1;
>>
>> - return tpm2_present = 1;
>> + grub_dprintf ("tpm", "tpm2 %s present\n", tpm2_present ? "" : "NOT");
>> + return (grub_efi_boolean_t) tpm2_present;
>> }
>
> Ditto except WRT tpm2.
>
>> static grub_efi_boolean_t
>> @@ -102,6 +108,7 @@ grub_tpm_handle_find (grub_efi_handle_t *tpm_handle,
>> *tpm_handle = handles[0];
>> grub_tpm_version = 1;
>> *protocol_version = 1;
>> + grub_dprintf ("tpm", "TPM handle Found, version: 1\n");
>> return 1;
>> }
>>
>> @@ -113,9 +120,11 @@ grub_tpm_handle_find (grub_efi_handle_t *tpm_handle,
>> *tpm_handle = handles[0];
>> grub_tpm_version = 2;
>> *protocol_version = 2;
>> + grub_dprintf ("tpm", "TPM handle Found, version: 2\n");
>> return 1;
>> }
>>
>> + grub_dprintf ("tpm", "NO TPM handle Found\n");
>> return 0;
>> }
>>
>> @@ -147,6 +156,8 @@ grub_tpm1_log_event (grub_efi_handle_t tpm_handle, unsigned char *buf,
>> event->EventSize = grub_strlen (description) + 1;
>> grub_memcpy (event->Event, description, event->EventSize);
>>
>> + grub_dprintf ("tpm", "tpm1 log_extend_event, pcr = %d, size = %d, %s\n",
>> + pcr, (int)size, description);
>
> Could you use PRIxGRUB_* macro from include/grub/types.h instead of "%d" for size here?
>
>> algorithm = TCG_ALG_SHA;
>> status = efi_call_7 (tpm->log_extend_event, tpm, (grub_addr_t) buf, (grub_uint64_t) size,
>> algorithm, event, &eventnum, &lastevent);
>> @@ -199,6 +210,8 @@ grub_tpm2_log_event (grub_efi_handle_t tpm_handle, unsigned char *buf,
>> sizeof (*event) - sizeof (event->Event) + grub_strlen (description) + 1;
>> grub_memcpy (event->Event, description, grub_strlen (description) + 1);
>>
>> + grub_dprintf ("tpm", "tpm2 log_extend_event, pcr = %d, size = %d, %s\n",
>> + pcr, (int)size, description);
>
> Ditto.
>
> However, I would prefer if you print this only from grub_tpm_measure()
> function without tpm1/tpm2 prefix.
>
> Daniel
>
prev parent reply other threads:[~2020-10-28 6:56 UTC|newest]
Thread overview: 3+ messages / expand[flat|nested] mbox.gz Atom feed top
2020-07-29 13:33 [PATCH] tpm: Add debug information for device protocol and eventlog Tianjia Zhang
2020-10-27 20:58 ` Daniel Kiper
2020-10-28 6:55 ` Tianjia Zhang [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=26f73d12-8a31-8092-534a-8eaf89e540b8@linux.alibaba.com \
--to=tianjia.zhang@linux.alibaba.com \
--cc=dkiper@net-space.pl \
--cc=grub-devel@gnu.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox