Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.kernel > #1290636

[PATCH v2 0/3] TPM 2.0 trusted key features for v4.5

From Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com>
Newsgroups linux.kernel
Subject [PATCH v2 0/3] TPM 2.0 trusted key features for v4.5
Date 2015-12-13 16:50 +0100
Message-ID <qFh4l-1L3-3@gated-at.bofh.it> (permalink)
Organization linux.* mail to news gateway

Show all headers | View raw


These are the remaining features to enable trusted keys for TPM 2.0 that were
not finished by the v4.4 merge window. These patches enable authorization
policy based sealing (like using PCRs together with a password for example or
something more complicated) with a user selected hash algorithm.

Jarkko Sakkinen (3):
  keys, trusted: fix: *do not* allow duplicate key options
  keys, trusted: select hash algorithm for TPM2 chips
  keys, trusted: seal with a TPM2 authorization policy

 Documentation/security/keys-trusted-encrypted.txt | 31 +++++++-----
 crypto/hash_info.c                                |  2 +
 drivers/char/tpm/tpm.h                            | 10 ++--
 drivers/char/tpm/tpm2-cmd.c                       | 60 ++++++++++++++++++++---
 include/crypto/hash_info.h                        |  3 ++
 include/keys/trusted-type.h                       |  5 ++
 include/uapi/linux/hash_info.h                    |  1 +
 security/keys/Kconfig                             |  1 +
 security/keys/trusted.c                           | 56 ++++++++++++++++++++-
 9 files changed, 147 insertions(+), 22 deletions(-)

-- 
2.5.0

--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/

Back to linux.kernel | Previous | Next — Next in thread | Find similar | Unroll thread


Thread

[PATCH v2 0/3] TPM 2.0 trusted key features for v4.5 Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2015-12-13 16:50 +0100
  [PATCH v2 1/3] keys, trusted: fix: *do not* allow duplicate key options Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2015-12-13 16:50 +0100
    Re: [PATCH v2 1/3] keys, trusted: fix: *do not* allow duplicate key  options Mimi Zohar <zohar@linux.vnet.ibm.com> - 2015-12-14 14:50 +0100
      Re: [PATCH v2 1/3] keys, trusted: fix: *do not* allow duplicate key  options Jarkko Sakkinen <jarkko.sakkinen@linux.intel.com> - 2015-12-14 16:00 +0100

csiph-web