Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1760160AbYJIRqU (ORCPT ); Thu, 9 Oct 2008 13:46:20 -0400 Received: (majordomo@vger.kernel.org) by vger.kernel.org id S1755894AbYJIRqM (ORCPT ); Thu, 9 Oct 2008 13:46:12 -0400 Received: from sous-sol.org ([216.99.217.87]:43466 "EHLO sequoia.sous-sol.org" rhost-flags-OK-OK-OK-FAIL) by vger.kernel.org with ESMTP id S1753807AbYJIRqL (ORCPT ); Thu, 9 Oct 2008 13:46:11 -0400 Date: Thu, 9 Oct 2008 10:44:27 -0700 From: Chris Wright To: Pavel Machek Cc: "Cihula, Joseph" , linux-kernel@vger.kernel.org, "Wang, Shane" , "Wei, Gang" , "Van De Ven, Arjan" , "Mallick, Asit K" , "Nakajima, Jun" , Chris Wright , Jan Beulich , mingo@elte.hu, tytso@mit.edu Subject: Re: [RFC][PATCH 0a/3] TXT: Intel(R) Trusted Execution Technology support for Linux - Overview Message-ID: <20081009174427.GB6912@sequoia.sous-sol.org> References: <20081009125311.GD1623@ucw.cz> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20081009125311.GD1623@ucw.cz> User-Agent: Mutt/1.5.18 (2008-05-17) Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Content-Length: 960 Lines: 24 * Pavel Machek (pavel@suse.cz) wrote: > Ok, I don't get it, why would I want to measure my kernel? Trusted boot. There's always the double-edge sword w/ this. Clearly, a requirement is that you don't just brick your own box, and have some policy/mechanism for defining how you'd use trusted boot. I believe that's all there w/ TXT patch (since it's mostly handled before kernel boots, TXT kernel bit is just to help w/ handoff). > I see why Disney would want to do that, but I don't see why we would > want to help them. > > Plus, the fact that trusted mode is pretty much incompatible with > s3/s4 makes it useless, right? Why do you say that? Did you look at patch 3/3, see tboot_sleep(). thanks, -chris -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/