Skip to content

feat(esapi): add missing TPM commands in integrity_collection_pcr#650

Open
hyperfinitism wants to merge 1 commit into
parallaxsecond:mainfrom
hyperfinitism:feature/icpcr-commands
Open

feat(esapi): add missing TPM commands in integrity_collection_pcr#650
hyperfinitism wants to merge 1 commit into
parallaxsecond:mainfrom
hyperfinitism:feature/icpcr-commands

Conversation

@hyperfinitism
Copy link
Copy Markdown
Contributor

This pull request implements the following Esys wrapper the following wrapper functions with integration tests for these commands:

  • pcr_event (ESAPI spec 11.3.52)
  • pcr_allocate (11.3.54)
  • pcr_set_auth_policy (11.3.55)
  • pcr_set_auth_value (11.3.56)

These were extracted from #625.

Limitation

swtpm (libtpms) does not support PCR_SetAuthPolicy or PCR_SetAuthValue; these commands always return TPM_RC_VALUE. So their integration tests are marked #[ignore], and their doc examples are marked no_run.

Reference: https://github.com/stefanberger/libtpms/blob/521c51073fe6f7c56023db78e56961fcaf7906e8/src/tpm2/TPMCmd/Platform/src/PlatformPcr.c

Added the following wrapper functions with integration tests for these commands:

- pcr_event (ESAPI spec 11.3.52)
- pcr_allocate (11.3.54)
- pcr_set_auth_policy (11.3.55)
- pcr_set_auth_value (11.3.56)

swtpm (libtpms) does not support PCR_SetAuthPolicy or PCR_SetAuthValue; these
commands return TPM_RC_VALUE. So their integration tests are marked #[ignore],
and their doc examples are marked no_run.

Signed-off-by: Takuma IMAMURA <209989118+hyperfinitism@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant