Received: by 2002:a25:f815:0:0:0:0:0 with SMTP id u21csp4054827ybd; Tue, 25 Jun 2019 13:14:40 -0700 (PDT) X-Google-Smtp-Source: APXvYqzPEtKyrtlxeNDaJha+70qgNVLyVG5ac8Dhyo69ygEeo5L4hfZ9j0HrtgungGIZAdB7TpTn X-Received: by 2002:a65:538d:: with SMTP id x13mr30724158pgq.190.1561493680235; Tue, 25 Jun 2019 13:14:40 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1561493680; cv=none; d=google.com; s=arc-20160816; b=kP3i/DlkdxkYJlg/3GjM5Vq4GsV5d2LhP8Xf+bDcOuu+8Yu/+oPkaGLnivlS5+lT/w mxZVO595gKapcC88tawk7LyPjlzEnZOv2Q0rxy36jSKnlAA9f6c0wbBOkXI0gy4h+BL6 PO/SB30zELYCZkMmsNAWVvqxhwow8xVEL95vDRkJfLGDmQLZKQ+0DJFqJZMyoP6Zvz6f /EZVvWy9rpkCmusFk2ca/8IVYBISJHXmkm8PbJEgYxzAZgqiDhwsDM866NZIpoSTT2tT QSe7mUwb/YEXpog6sq+wOSbS30+QpURCDq4ePqrVtIeQrALG0vAYhcWp2cDh5kBafmcd RScw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=sjRca8x5gYNu32ltHOehnTvRDg/bNUSxx2zFCbI8FyU=; b=GiOZgSmW1bldARnzTYEXSJvvp+PfyljL+UxVhkCZzZ95aJ2S+O4B2KQQhigxOXnVSc kZrwFTNr1h2A+npgtx/qazWxoVJeYzvy6FoRjpP6Jf1ZqrBnJcR6TRBD6u6Ka0RQczTo Z5lZ2Lrt2/xL1DPchj4LOo/YeZeGjkntPHGKayt26dqEgFYCZ6nBNuCtOzsDFRgBBHwj 7pvlvbP6zv+Ocm1IllMlhFewAo7ykl6ps5eOxc7dWJwZUKI3yxgQd00e0d2hW93S/m4/ GHrdUtql3X+yGCxydo+p0+/YbOm0LS+HsuPh60+zSYHYH/qDGPtYdYYJehM5PgPgwzK0 txfA== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=wMCLl0PF; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id 78si15308303pfz.268.2019.06.25.13.14.24; Tue, 25 Jun 2019 13:14:40 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=wMCLl0PF; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727702AbfFYUNv (ORCPT + 99 others); Tue, 25 Jun 2019 16:13:51 -0400 Received: from mail.kernel.org ([198.145.29.99]:42690 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726907AbfFYUNu (ORCPT ); Tue, 25 Jun 2019 16:13:50 -0400 Received: from sasha-vm.mshome.net (unknown [167.220.24.221]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id 067F4208E3; Tue, 25 Jun 2019 20:13:47 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1561493629; bh=+A8kslJHW27NDdIFi7+iCBJaMHuSt9MpoOrdUYPdCYE=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=wMCLl0PFhJPyATqhiS/MBnteSDZoFOtFe/8PptE6znBX92m3v8uZXSrNAxTvMYnKH bdR+H4HmyIcDHrwqFYISVEt6I6k3JXcKWI9ORFLtCmCvVzEsTMjkwgRA9ULXgn+aFh AP7om9XgDfvXBC7XblRLKcAGUgZkn35wj2eUyD7Q= From: Sasha Levin To: peterhuewe@gmx.de, jarkko.sakkinen@linux.intel.com, jgg@ziepe.ca Cc: corbet@lwn.net, linux-kernel@vger.kernel.org, linux-doc@vger.kernel.org, linux-integrity@vger.kernel.org, linux-kernel@microsoft.com, thiruan@microsoft.com, bryankel@microsoft.com, tee-dev@lists.linaro.org, ilias.apalodimas@linaro.org, sumit.garg@linaro.org, rdunlap@infradead.org, Sasha Levin Subject: [PATCH v7 2/2] fTPM: add documentation for ftpm driver Date: Tue, 25 Jun 2019 16:13:41 -0400 Message-Id: <20190625201341.15865-3-sashal@kernel.org> X-Mailer: git-send-email 2.20.1 In-Reply-To: <20190625201341.15865-1-sashal@kernel.org> References: <20190625201341.15865-1-sashal@kernel.org> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org This patch adds basic documentation to describe the new fTPM driver. Signed-off-by: Sasha Levin --- Documentation/security/tpm/index.rst | 1 + Documentation/security/tpm/tpm_ftpm_tee.rst | 31 +++++++++++++++++++++ 2 files changed, 32 insertions(+) create mode 100644 Documentation/security/tpm/tpm_ftpm_tee.rst diff --git a/Documentation/security/tpm/index.rst b/Documentation/security/tpm/index.rst index af77a7bbb070..15783668644f 100644 --- a/Documentation/security/tpm/index.rst +++ b/Documentation/security/tpm/index.rst @@ -4,4 +4,5 @@ Trusted Platform Module documentation .. toctree:: + tpm_ftpm_tee tpm_vtpm_proxy diff --git a/Documentation/security/tpm/tpm_ftpm_tee.rst b/Documentation/security/tpm/tpm_ftpm_tee.rst new file mode 100644 index 000000000000..48de0dcec0f6 --- /dev/null +++ b/Documentation/security/tpm/tpm_ftpm_tee.rst @@ -0,0 +1,31 @@ +============================================= +Firmware TPM Driver +============================================= + +| Authors: +| Thirupathaiah Annapureddy +| Sasha Levin + +This document describes the firmware Trusted Platform Module (fTPM) +device driver. + +Introduction +============ + +This driver is a shim for firmware implemented in ARM's TrustZone +environment. The driver allows programs to interact with the TPM in the same +way they would interact with a hardware TPM. + +Design +====== + +The driver acts as a thin layer that passes commands to and from a TPM +implemented in firmware. The driver itself doesn't contain much logic and is +used more like a dumb pipe between firmware and kernel/userspace. + +The firmware itself is based on the following paper: +https://www.microsoft.com/en-us/research/wp-content/uploads/2017/06/ftpm1.pdf + +When the driver is loaded it will expose ``/dev/tpmX`` character devices to +userspace which will enable userspace to communicate with the firmware TPM +through this device. -- 2.20.1