Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1673465

Re: [PATCH v3 4/6] tpm: replace TPM algorithms IDs with tpm_pcr_bank_info structs in tpm_chip

From Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com>
Newsgroups linux.kernel
Subject Re: [PATCH v3 4/6] tpm: replace TPM algorithms IDs with tpm_pcr_bank_info structs in tpm_chip
Date 2017-06-23 12:40 +0200
Message-ID <tVual-YI-11@gated-at.bofh.it> (permalink)
References <tUOXv-7i3-17@gated-at.bofh.it> <tUOXx-7i3-47@gated-at.bofh.it>
Organization Intel Finland Oy - BIC 0357606-4 - Westendinkatu 7, 02160 Espoo

Show all headers | View raw


On Wed, Jun 21, 2017 at 04:29:39PM +0200, Roberto Sassu wrote:
> This patch replaces the array of TPM algorithms ID, stored in the tpm_chip
> structure, with an array of the new structure tpm_pcr_bank_info.
> 
> The array is initialized during the execution of tpm2_get_pcr_allocation(),
> by tpm2_init_pcr_bank_info().
> 
> tpm2_pcr_extend() and tpm_pcr_extend() have been modified to use the
> digest size retrieved from the TPM instead of that from the crypto
> subsystem.
> 
> Signed-off-by: Roberto Sassu <roberto.sassu@huawei.com>

How do you deal with the trusted keys code?

> ---
>  drivers/char/tpm/tpm-interface.c |  4 ++--
>  drivers/char/tpm/tpm.h           |  2 +-
>  drivers/char/tpm/tpm2-cmd.c      | 22 +++++++++++-----------
>  3 files changed, 14 insertions(+), 14 deletions(-)
> 
> diff --git a/drivers/char/tpm/tpm-interface.c b/drivers/char/tpm/tpm-interface.c
> index d2b4df6..a11598a 100644
> --- a/drivers/char/tpm/tpm-interface.c
> +++ b/drivers/char/tpm/tpm-interface.c
> @@ -897,8 +897,8 @@ int tpm_pcr_extend(u32 chip_num, int pcr_idx, const u8 *hash)
>  		memset(digest_list, 0, sizeof(digest_list));
>  
>  		for (i = 0; i < ARRAY_SIZE(chip->active_banks) &&
> -			    chip->active_banks[i] != TPM2_ALG_ERROR; i++) {
> -			digest_list[i].alg_id = chip->active_banks[i];
> +		     chip->active_banks[i].alg_id != TPM2_ALG_ERROR; i++) {
> +			digest_list[i].alg_id = chip->active_banks[i].alg_id;
>  			memcpy(digest_list[i].digest, hash, TPM_DIGEST_SIZE);
>  			count++;
>  		}
> diff --git a/drivers/char/tpm/tpm.h b/drivers/char/tpm/tpm.h
> index 62c600d..d285bc6 100644
> --- a/drivers/char/tpm/tpm.h
> +++ b/drivers/char/tpm/tpm.h
> @@ -208,7 +208,7 @@ struct tpm_chip {
>  	const struct attribute_group *groups[3];
>  	unsigned int groups_cnt;
>  
> -	u16 active_banks[7];
> +	struct tpm_pcr_bank_info active_banks[7];
>  #ifdef CONFIG_ACPI
>  	acpi_handle acpi_dev_handle;
>  	char ppi_version[TPM_PPI_VERSION_LEN + 1];
> diff --git a/drivers/char/tpm/tpm2-cmd.c b/drivers/char/tpm/tpm2-cmd.c
> index 74a68ea..7bd2cf7 100644
> --- a/drivers/char/tpm/tpm2-cmd.c
> +++ b/drivers/char/tpm/tpm2-cmd.c
> @@ -301,7 +301,6 @@ int tpm2_pcr_extend(struct tpm_chip *chip, int pcr_idx, u32 count,
>  	struct tpm2_null_auth_area auth_area;
>  	int rc;
>  	int i;
> -	int j;
>  
>  	if (count > ARRAY_SIZE(chip->active_banks))
>  		return -EINVAL;
> @@ -323,14 +322,10 @@ int tpm2_pcr_extend(struct tpm_chip *chip, int pcr_idx, u32 count,
>  	tpm_buf_append_u32(&buf, count);
>  
>  	for (i = 0; i < count; i++) {
> -		for (j = 0; j < ARRAY_SIZE(tpm2_hash_map); j++) {
> -			if (digests[i].alg_id != tpm2_hash_map[j].tpm_id)
> -				continue;
> -			tpm_buf_append_u16(&buf, digests[i].alg_id);
> -			tpm_buf_append(&buf, (const unsigned char
> -					      *)&digests[i].digest,
> -			       hash_digest_size[tpm2_hash_map[j].crypto_id]);
> -		}
> +		/* digests[i].alg_id == chip->active_banks[i].alg_id */
> +		tpm_buf_append_u16(&buf, digests[i].alg_id);
> +		tpm_buf_append(&buf, (const unsigned char *)&digests[i].digest,
> +			       chip->active_banks[i].digest_size);
>  	}
>  
>  	rc = tpm_transmit_cmd(chip, NULL, buf.data, PAGE_SIZE, 0, 0,
> @@ -1076,7 +1071,12 @@ static ssize_t tpm2_get_pcr_allocation(struct tpm_chip *chip)
>  		}
>  
>  		memcpy(&pcr_selection, marker, sizeof(pcr_selection));
> -		chip->active_banks[i] = be16_to_cpu(pcr_selection.hash_alg);
> +		rc =  tpm2_init_pcr_bank_info(chip,
> +					be16_to_cpu(pcr_selection.hash_alg),
> +					&chip->active_banks[i]);
> +		if (rc)
> +			break;
> +
>  		sizeof_pcr_selection = sizeof(pcr_selection.hash_alg) +
>  			sizeof(pcr_selection.size_of_select) +
>  			pcr_selection.size_of_select;
> @@ -1085,7 +1085,7 @@ static ssize_t tpm2_get_pcr_allocation(struct tpm_chip *chip)
>  
>  out:
>  	if (i < ARRAY_SIZE(chip->active_banks))
> -		chip->active_banks[i] = TPM2_ALG_ERROR;
> +		chip->active_banks[i].alg_id = TPM2_ALG_ERROR;
>  
>  	tpm_buf_destroy(&buf);
>  
> -- 
> 2.9.3
> 

Hard to review the actual code change as it really does not live on its
own.

/Jarkko

Back to linux.kernel | Previous | NextPrevious in thread | Next in thread | Find similar | Unroll thread


Thread

[PATCH v3 0/6] Updated API for TPM 2.0 PCR extend Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-21 16:40 +0200
  [PATCH v3 5/6] tpm: introduce tpm_get_pcr_banks_info() Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-21 16:40 +0200
    Re: [PATCH v3 5/6] tpm: introduce tpm_get_pcr_banks_info() Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-23 12:40 +0200
  [PATCH v3 6/6] tpm: pass multiple digests to tpm_pcr_extend() Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-21 16:40 +0200
    Re: [tpmdd-devel] [PATCH v3 6/6] tpm: pass multiple digests to  tpm_pcr_extend() Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-23 12:40 +0200
  [PATCH v3 1/6] tpm: use tpm_buf functions to perform a PCR read Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-21 16:40 +0200
    Re: [tpmdd-devel] [PATCH v3 1/6] tpm: use tpm_buf functions to  perform a PCR read Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-22 12:20 +0200
      Re: [tpmdd-devel] [PATCH v3 1/6] tpm: use tpm_buf functions to  perform a PCR read Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-22 14:00 +0200
        Re: [tpmdd-devel] [PATCH v3 1/6] tpm: use tpm_buf functions to  perform a PCR read Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-23 13:00 +0200
  [PATCH v3 4/6] tpm: replace TPM algorithms IDs with tpm_pcr_bank_info structs in tpm_chip Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-21 16:40 +0200
    Re: [PATCH v3 4/6] tpm: replace TPM algorithms IDs with  tpm_pcr_bank_info structs in tpm_chip Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-23 12:40 +0200
  [PATCH v3 3/6] tpm: introduce tpm_pcr_bank_info structure with digest_size from TPM Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-21 16:40 +0200
    Re: [PATCH v3 3/6] tpm: introduce tpm_pcr_bank_info structure with  digest_size from TPM Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-23 12:30 +0200
      Re: [PATCH v3 3/6] tpm: introduce tpm_pcr_bank_info structure with  digest_size from TPM Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-23 13:30 +0200
    Re: [tpmdd-devel] [PATCH v3 3/6] tpm: introduce tpm_pcr_bank_info  structure with digest_size from TPM Mimi Zohar <zohar@linux.vnet.ibm.com> - 2017-06-27 17:30 +0200
  Re: [PATCH v3 0/6] Updated API for TPM 2.0 PCR extend Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-24 11:10 +0200
    Re: [PATCH v3 0/6] Updated API for TPM 2.0 PCR extend Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-26 09:00 +0200
    Re: [PATCH v3 0/6] Updated API for TPM 2.0 PCR extend Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-26 09:30 +0200
      Re: [PATCH v3 0/6] Updated API for TPM 2.0 PCR extend Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-28 20:00 +0200
    Re: [Linux-ima-devel] [PATCH v3 0/6] Updated API for TPM 2.0 PCR  extend Mimi Zohar <zohar@linux.vnet.ibm.com> - 2017-06-26 14:40 +0200
      Re: [Linux-ima-devel] [PATCH v3 0/6] Updated API for TPM 2.0 PCR  extend Roberto Sassu <roberto.sassu@huawei.com> - 2017-06-26 17:00 +0200
        Re: [Linux-ima-devel] [PATCH v3 0/6] Updated API for TPM 2.0 PCR  extend Mimi Zohar <zohar@linux.vnet.ibm.com> - 2017-06-26 19:20 +0200
      Re: [Linux-ima-devel] [PATCH v3 0/6] Updated API for TPM 2.0 PCR  extend Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2017-06-28 20:00 +0200
        Re: [Linux-ima-devel] [PATCH v3 0/6] Updated API for TPM 2.0 PCR  extend Mimi Zohar <zohar@linux.vnet.ibm.com> - 2017-06-29 00:30 +0200

csiph-web