2019-12-10 21:56:03

by Tadeusz Struk

[permalink] [raw]
Subject: [PATCH] tpm: selftests: cleanup after unseal with wrong policy test

Unseal with wrong policy tests affects DA lockout and eventually
causes to fail with:
"ProtocolError: TPM_RC_LOCKOUT: cc=0x00000153, rc=0x00000921",
when the test runs multiple times. Send tpm clear command
after the test to reset the DA counters.

Signed-off-by: Tadeusz Struk <[email protected]>
---
tools/testing/selftests/tpm2/test_smoke.sh | 5 +++++
1 file changed, 5 insertions(+)

diff --git a/tools/testing/selftests/tpm2/test_smoke.sh b/tools/testing/selftests/tpm2/test_smoke.sh
index 80521d46220c..22ae4183f2b9 100755
--- a/tools/testing/selftests/tpm2/test_smoke.sh
+++ b/tools/testing/selftests/tpm2/test_smoke.sh
@@ -2,3 +2,8 @@
# SPDX-License-Identifier: (GPL-2.0 OR BSD-3-Clause)

python -m unittest -v tpm2_tests.SmokeTest
+
+CLEAR_CMD=$(which tpm2_clear)
+if [ -n $CLEAR_CMD ]; then
+ tpm2_clear -T device
+fi


2019-12-11 17:59:06

by Jarkko Sakkinen

[permalink] [raw]
Subject: Re: [PATCH] tpm: selftests: cleanup after unseal with wrong policy test

On Tue, Dec 10, 2019 at 01:55:20PM -0800, Tadeusz Struk wrote:
> Unseal with wrong policy tests affects DA lockout and eventually
> causes to fail with:
> "ProtocolError: TPM_RC_LOCKOUT: cc=0x00000153, rc=0x00000921",
> when the test runs multiple times. Send tpm clear command
> after the test to reset the DA counters.
>
> Signed-off-by: Tadeusz Struk <[email protected]>

You could pick this also to the same patch set.

/Jarkko