From: Eddie James <eajames@linux.ibm.com>
To: u-boot@lists.denx.de
Cc: ilias.apalodimas@linaro.org, sjg@chromium.org,
xypron.glpk@gmx.de, eajames@linux.ibm.com
Subject: [PATCH v2 0/5] tpm: Support boot measurements
Date: Mon, 9 Jan 2023 15:55:20 -0600 [thread overview]
Message-ID: <20230109215525.79046-1-eajames@linux.ibm.com> (raw)
This series adds support for measuring the boot images more generically
than the existing EFI support. Several EFI functions have been moved to
the TPM layer. The series includes optional measurement from the bootm
command.
A new test case has been added for the bootm measurement to test the new
path, and the sandbox TPM2 driver has been updated to support this use
case.
Changes since v1:
- Refactor TPM layer functions to allow EFI system to use them, and
remove duplicate EFI functions.
- Add test case
- Drop #ifdefs for bootm
- Add devicetree measurement config option
- Update sandbox TPM driver
Eddie James (5):
tpm: Fix spelling for tpmu_ha union
tpm: Support boot measurements
bootm: Support boot measurement
tpm: sandbox: Update for needed TPM2 capabilities
test: Add sandbox TPM boot measurement
arch/sandbox/dts/test.dts | 12 +
boot/Kconfig | 23 ++
boot/bootm.c | 64 +++
cmd/bootm.c | 2 +
configs/sandbox_defconfig | 1 +
drivers/tpm/tpm2_tis_sandbox.c | 100 +++--
include/bootm.h | 2 +
include/efi_tcg2.h | 44 --
include/image.h | 1 +
include/test/suites.h | 1 +
include/tpm-v2.h | 215 +++++++++-
lib/efi_loader/efi_tcg2.c | 362 +----------------
lib/tpm-v2.c | 708 +++++++++++++++++++++++++++++++++
test/boot/Makefile | 1 +
test/boot/measurement.c | 66 +++
test/cmd_ut.c | 2 +
16 files changed, 1187 insertions(+), 417 deletions(-)
create mode 100644 test/boot/measurement.c
--
2.31.1
next reply other threads:[~2023-01-09 21:57 UTC|newest]
Thread overview: 18+ messages / expand[flat|nested] mbox.gz Atom feed top
2023-01-09 21:55 Eddie James [this message]
2023-01-09 21:55 ` [PATCH v2 1/5] tpm: Fix spelling for tpmu_ha union Eddie James
2023-01-09 21:55 ` [PATCH v2 2/5] tpm: Support boot measurements Eddie James
2023-01-09 21:55 ` [PATCH v2 3/5] bootm: Support boot measurement Eddie James
2023-01-09 21:55 ` [PATCH v2 4/5] tpm: sandbox: Update for needed TPM2 capabilities Eddie James
2023-01-11 0:15 ` Simon Glass
2023-01-09 21:55 ` [PATCH v2 5/5] test: Add sandbox TPM boot measurement Eddie James
2023-01-09 23:13 ` Heinrich Schuchardt
2023-01-09 23:26 ` Heinrich Schuchardt
2023-01-10 16:38 ` Eddie James
2023-01-10 22:02 ` Heinrich Schuchardt
2023-01-10 22:11 ` Eddie James
2023-01-10 22:32 ` Heinrich Schuchardt
2023-01-10 22:37 ` Heinrich Schuchardt
2023-01-11 14:14 ` Eddie James
2023-01-09 23:35 ` [PATCH v2 0/5] tpm: Support boot measurements Heinrich Schuchardt
2023-01-10 21:42 ` Eddie James
2023-01-10 22:08 ` Heinrich Schuchardt
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20230109215525.79046-1-eajames@linux.ibm.com \
--to=eajames@linux.ibm.com \
--cc=ilias.apalodimas@linaro.org \
--cc=sjg@chromium.org \
--cc=u-boot@lists.denx.de \
--cc=xypron.glpk@gmx.de \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox