[yocto] [meta-security][PATCH v2 0/9] tpm: virtual TPM for qemu

akuster808 akuster808 at gmail.com
Wed Feb 15 07:35:53 PST 2017



On 02/14/2017 03:21 AM, Patrick Ohly wrote:
> On Fri, 2017-02-03 at 10:35 -0800, akuster808 wrote:
>> On 2/3/17 12:46 AM, Patrick Ohly wrote:
>>> I recently started using swtpm-native in combination with the qemu-tpm
>>> patches to simulate a virtual TPM chip in qemu. The qemu-tpm patches
>>> should go into OE-core, but currently usage is a bit cumbersome
>>> (requires root privileges and manually starting swtpm before each
>>> runqemu invocation), so at this time I only consider the meta-security
>>> changes ready and useful enough for merging.
>>>
>>> Inside the virtual machine I used tpm-tools + trousers to set up
>>> sealed keys for EVM, which required fixing a few things.
>>>
>>> These patches were based on Armin's swtpm+trousers version update
>>> series which needs to be merged first to avoid merge conflicts.
>> In staging
> How often do you promote staging to master?
usually once I double check things.
> Can this be done soon (like
> this week)?
I am getting build failures on aarch64 I want to investigate, so its 
possible.

- armin




More information about the yocto mailing list