2019-11-07 08:25:21

by Xinwei Kong

[permalink] [raw]
Subject: [PATCH V2] EFI/stub: tpm: enable tpm eventlog function for ARM64 platform

this patch gets tpm eventlog information such as device boot status,event guid
and so on, which will be from bios stage. it use "efi_retrieve_tpm2_eventlog"
functions to get it for ARM64 platorm.

Tested-by: Zou Cao <[email protected]>
Signed-off-by: Xinwei Kong <[email protected]>
---
drivers/firmware/efi/libstub/arm-stub.c | 2 ++
1 file changed, 2 insertions(+)

diff --git a/drivers/firmware/efi/libstub/arm-stub.c b/drivers/firmware/efi/libstub/arm-stub.c
index c382a48..817237c 100644
--- a/drivers/firmware/efi/libstub/arm-stub.c
+++ b/drivers/firmware/efi/libstub/arm-stub.c
@@ -189,6 +189,8 @@ unsigned long efi_entry(void *handle, efi_system_table_t *sys_table,
goto fail_free_cmdline;
}

+ efi_retrieve_tpm2_eventlog(sys_table);
+
/* Ask the firmware to clear memory on unclean shutdown */
efi_enable_reset_attack_mitigation(sys_table);

--
2.7.4


2019-11-07 09:21:49

by Ard Biesheuvel

[permalink] [raw]
Subject: Re: [PATCH V2] EFI/stub: tpm: enable tpm eventlog function for ARM64 platform

On Thu, 7 Nov 2019 at 09:23, Xinwei Kong <[email protected]> wrote:
>
> this patch gets tpm eventlog information such as device boot status,event guid
> and so on, which will be from bios stage. it use "efi_retrieve_tpm2_eventlog"
> functions to get it for ARM64 platorm.
>
> Tested-by: Zou Cao <[email protected]>
> Signed-off-by: Xinwei Kong <[email protected]>

Thanks. I'll queue this up.

> ---
> drivers/firmware/efi/libstub/arm-stub.c | 2 ++
> 1 file changed, 2 insertions(+)
>
> diff --git a/drivers/firmware/efi/libstub/arm-stub.c b/drivers/firmware/efi/libstub/arm-stub.c
> index c382a48..817237c 100644
> --- a/drivers/firmware/efi/libstub/arm-stub.c
> +++ b/drivers/firmware/efi/libstub/arm-stub.c
> @@ -189,6 +189,8 @@ unsigned long efi_entry(void *handle, efi_system_table_t *sys_table,
> goto fail_free_cmdline;
> }
>
> + efi_retrieve_tpm2_eventlog(sys_table);
> +
> /* Ask the firmware to clear memory on unclean shutdown */
> efi_enable_reset_attack_mitigation(sys_table);
>
> --
> 2.7.4
>