Commit bfde7d0
committed
Implement forward sealing with new tpm2-tools
New tpm2-tools version supports forward sealing, and is implemented here. Conforms to new output format (tpm2_policypcr uses a '=' separator, so convert the ':' used in seal-system). Accounts for systems that may have the extra 'Calling EFI Application from Boot Option' string extended into PCR bank 4.1 parent f02b8fe commit bfde7d0
2 files changed
Lines changed: 54 additions & 24 deletions
File tree
- recipes-openxt
- openxt-measuredlaunch/openxt-measuredlaunch
- xenclient-tpm-scripts/xenclient-tpm-scripts
Lines changed: 36 additions & 9 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
156 | 156 | | |
157 | 157 | | |
158 | 158 | | |
| 159 | + | |
159 | 160 | | |
160 | 161 | | |
161 | 162 | | |
162 | | - | |
| 163 | + | |
| 164 | + | |
| 165 | + | |
| 166 | + | |
| 167 | + | |
| 168 | + | |
| 169 | + | |
163 | 170 | | |
164 | 171 | | |
165 | | - | |
| 172 | + | |
166 | 173 | | |
167 | 174 | | |
168 | 175 | | |
169 | 176 | | |
170 | | - | |
| 177 | + | |
171 | 178 | | |
172 | 179 | | |
173 | 180 | | |
| 181 | + | |
| 182 | + | |
| 183 | + | |
| 184 | + | |
| 185 | + | |
| 186 | + | |
| 187 | + | |
| 188 | + | |
| 189 | + | |
| 190 | + | |
| 191 | + | |
| 192 | + | |
| 193 | + | |
| 194 | + | |
| 195 | + | |
| 196 | + | |
| 197 | + | |
| 198 | + | |
| 199 | + | |
| 200 | + | |
174 | 201 | | |
175 | 202 | | |
176 | 203 | | |
| |||
186 | 213 | | |
187 | 214 | | |
188 | 215 | | |
189 | | - | |
190 | | - | |
| 216 | + | |
| 217 | + | |
191 | 218 | | |
192 | 219 | | |
193 | 220 | | |
| |||
208 | 235 | | |
209 | 236 | | |
210 | 237 | | |
211 | | - | |
| 238 | + | |
212 | 239 | | |
213 | 240 | | |
214 | 241 | | |
| |||
225 | 252 | | |
226 | 253 | | |
227 | 254 | | |
228 | | - | |
229 | | - | |
230 | | - | |
| 255 | + | |
| 256 | + | |
| 257 | + | |
231 | 258 | | |
232 | 259 | | |
233 | 260 | | |
| |||
Lines changed: 18 additions & 15 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
714 | 714 | | |
715 | 715 | | |
716 | 716 | | |
717 | | - | |
| 717 | + | |
718 | 718 | | |
719 | 719 | | |
720 | 720 | | |
| |||
744 | 744 | | |
745 | 745 | | |
746 | 746 | | |
| 747 | + | |
747 | 748 | | |
748 | 749 | | |
749 | 750 | | |
750 | | - | |
| 751 | + | |
751 | 752 | | |
752 | 753 | | |
753 | 754 | | |
| |||
764 | 765 | | |
765 | 766 | | |
766 | 767 | | |
| 768 | + | |
767 | 769 | | |
768 | 770 | | |
769 | | - | |
| 771 | + | |
| 772 | + | |
| 773 | + | |
770 | 774 | | |
771 | | - | |
| 775 | + | |
772 | 776 | | |
773 | 777 | | |
774 | | - | |
| 778 | + | |
775 | 779 | | |
776 | 780 | | |
777 | 781 | | |
778 | 782 | | |
779 | 783 | | |
780 | 784 | | |
781 | | - | |
| 785 | + | |
782 | 786 | | |
783 | 787 | | |
784 | 788 | | |
785 | 789 | | |
786 | | - | |
| 790 | + | |
787 | 791 | | |
788 | 792 | | |
789 | 793 | | |
| |||
879 | 883 | | |
880 | 884 | | |
881 | 885 | | |
| 886 | + | |
| 887 | + | |
882 | 888 | | |
883 | 889 | | |
884 | 890 | | |
885 | 891 | | |
886 | 892 | | |
887 | 893 | | |
888 | | - | |
889 | | - | |
890 | 894 | | |
891 | 895 | | |
892 | 896 | | |
| |||
909 | 913 | | |
910 | 914 | | |
911 | 915 | | |
912 | | - | |
| 916 | + | |
913 | 917 | | |
914 | 918 | | |
915 | 919 | | |
| |||
936 | 940 | | |
937 | 941 | | |
938 | 942 | | |
939 | | - | |
| 943 | + | |
940 | 944 | | |
941 | 945 | | |
942 | 946 | | |
| |||
974 | 978 | | |
975 | 979 | | |
976 | 980 | | |
| 981 | + | |
| 982 | + | |
977 | 983 | | |
978 | | - | |
979 | | - | |
980 | | - | |
981 | 984 | | |
982 | 985 | | |
983 | 986 | | |
| |||
997 | 1000 | | |
998 | 1001 | | |
999 | 1002 | | |
1000 | | - | |
| 1003 | + | |
1001 | 1004 | | |
1002 | 1005 | | |
1003 | 1006 | | |
| |||
0 commit comments