xen-devel.lists.xenproject.org archive mirror
 help / color / mirror / Atom feed
* Questions about the usage of the vTPM implemented in Xen 4.3
@ 2014-02-05 16:52 Jordi Cucurull Juan
  2014-02-10 14:27 ` Ian Campbell
  2014-02-10 19:40 ` Daniel De Graaf
  0 siblings, 2 replies; 12+ messages in thread
From: Jordi Cucurull Juan @ 2014-02-05 16:52 UTC (permalink / raw)
  To: xen-devel

Dear all,

I have recently configured a Xen 4.3 server with the vTPM enabled and a
guest virtual machine that takes advantage of it. After playing a bit
with it, I have a few questions:

1.According to the documentation, to shutdown the vTPM stubdom it is
only needed to normally shutdown the guest VM. Theoretically, the vTPM
stubdom automatically shuts down after this. Nevertheless, if I shutdown
the guest the vTPM stubdom continues active and, moreover, I can start
the machine again and the values of the vTPM are the last ones there
were in the previous instance of the guest. Is this normal?

2.In the documentation it is recommended to avoid accessing the physical
TPM from Dom0 at the same time than the vTPM Manager stubdom.
Nevertheless, I currently have the IMA and the Trousers enabled in Dom0
without any apparent issue. Why is not recommended directly accessing
the physical TPM of Dom0?

3.If it is not recommended to directly accessing the physical TPM in
Dom0, which is the advisable way to check the integrity of this domain?
With solutions such as TBOOT and IntelTXT?

Best regards,
Jordi.

^ permalink raw reply	[flat|nested] 12+ messages in thread

end of thread, other threads:[~2014-02-13  9:54 UTC | newest]

Thread overview: 12+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2014-02-05 16:52 Questions about the usage of the vTPM implemented in Xen 4.3 Jordi Cucurull Juan
2014-02-10 14:27 ` Ian Campbell
2014-02-10 17:23   ` Jordi Cucurull Juan
2014-02-10 19:40 ` Daniel De Graaf
2014-02-11  9:37   ` Ian Campbell
2014-02-11 15:25     ` [PATCH] docs/vtpm: fix auto-shutdown reference Daniel De Graaf
2014-02-12 17:22       ` Ian Campbell
2014-02-13  9:54         ` Ian Campbell
2014-02-11 10:01   ` Questions about the usage of the vTPM implemented in Xen 4.3 Jordi Cucurull Juan
2014-02-11 15:26     ` Daniel De Graaf
2014-02-12  9:38       ` Jordi Cucurull Juan
2014-02-12 19:07         ` Daniel De Graaf

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).