Received: by 2002:a25:8b12:0:0:0:0:0 with SMTP id i18csp815130ybl; Wed, 14 Aug 2019 06:25:46 -0700 (PDT) X-Google-Smtp-Source: APXvYqwGFxy/sLDFppEl4y+FyWSbMCO+8sEa5xQR6N9wrlCewcRAFC0oK6pd/jeSMmalK3aVGhY+ X-Received: by 2002:aa7:8a92:: with SMTP id a18mr47180725pfc.216.1565789146449; Wed, 14 Aug 2019 06:25:46 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1565789146; cv=none; d=google.com; s=arc-20160816; b=jQiLbYh0xPPKNIdT1xD4OZrevrY/GQynqcYt0VqUnFoQikDrShfV9WKgfGknT+i//W c7SJopySqSw8qgger1gbFZqe9I+Qgiza1JBBceOQn17jtkYlEsYtCf0OQirl25gvmJn2 cKXDZ4xuISISwAo6PDtypWk621VYyRbsDuQIyim9o2RBkaC+5lTpvEIN1bxXAHUvq8sE f7/MdlOJmJ9shEJ2INhyAbv4q2VEvrmv+YXQ+mN8w6EnYXwYQmkpJjORwZWlTgn7LcsA b+lqOOk6aY1k1CllKq6QN/vQlf6gDt8Ko1aRt2jlR0NxgsyieiHkEK4ZmR8mQF4Afxks 4eNA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :references:in-reply-to:date:cc:to:from:subject:message-id :dkim-signature; bh=xM75YS8OdlGAfeY/gV3tOzYYWA6yJARI8+0JBcTsHmA=; b=SP0hinkJB1xqExckxdyl1QoRqg0LCL2wy/+PanLi4NamWcpsEa8Zj5WWDFkOQ1en6Z pkeycjT62S6jw9nqHHkisPICe69I4B0QNH3EyDrdYgVqtaRnJrgXG+zozritQPL1Pcjh AhaBbS5C4z3HQ153RbxottNfa6mXXyN9WXN3jxXJ9Y5j87vOCnlt0vsonWY7+KCVyv2Z T8Kw7/4pZneL3KxUx4EaLpV6YrSnGyHHWeUPMjPOIBkWIapz8RAU5QvygxOqEMcHHxXY w2vV80ehFDa74H+cA/bpgQbkSZcTqPdp9c3PYstDT0DEvr++Tl2wXYKkBEoBd5sjNjl6 3fVg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=BEaIXEhb; spf=pass (google.com: best guess record for domain of linux-crypto-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id b10si14012623plx.415.2019.08.14.06.25.25; Wed, 14 Aug 2019 06:25:46 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-crypto-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=BEaIXEhb; spf=pass (google.com: best guess record for domain of linux-crypto-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-crypto-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1728051AbfHNNYm (ORCPT + 99 others); Wed, 14 Aug 2019 09:24:42 -0400 Received: from mail.kernel.org ([198.145.29.99]:52742 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1727654AbfHNNYm (ORCPT ); Wed, 14 Aug 2019 09:24:42 -0400 Received: from localhost.localdomain (ool-18bba523.dyn.optonline.net [24.187.165.35]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id D46EC206C1; Wed, 14 Aug 2019 13:24:39 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1565789081; bh=728hr/u8ACkr4eN6s55og0sZZKXT3mgz/+81KVMagtM=; h=Subject:From:To:Cc:Date:In-Reply-To:References:From; b=BEaIXEhbN5LobKXpsJugCZtSW+XS2aQg1QUETdq/6yY99Qn/DFfPk0cHVGWNw7TV9 9JisrfYyNGp2YtEudUH9o6nFF5oU4tYajzzGay1/9y5T5phTGmX0XMwBVf3n9JPSXu hGVzpbf/flSHs0lNdtZbG0zWWST/1DLSuYP1HPPc= Message-ID: <1565789078.10490.10.camel@kernel.org> Subject: Re: [RFC/RFT v4 0/5] Add generic trusted keys framework/subsystem From: Mimi Zohar To: Sumit Garg , keyrings@vger.kernel.org, linux-integrity@vger.kernel.org, linux-crypto@vger.kernel.org, linux-security-module@vger.kernel.org Cc: dhowells@redhat.com, herbert@gondor.apana.org.au, davem@davemloft.net, peterhuewe@gmx.de, jgg@ziepe.ca, jejb@linux.ibm.com, jarkko.sakkinen@linux.intel.com, arnd@arndb.de, gregkh@linuxfoundation.org, jmorris@namei.org, serge@hallyn.com, casey@schaufler-ca.com, ard.biesheuvel@linaro.org, daniel.thompson@linaro.org, linux-kernel@vger.kernel.org, tee-dev@lists.linaro.org Date: Wed, 14 Aug 2019 09:24:38 -0400 In-Reply-To: <1565682784-10234-1-git-send-email-sumit.garg@linaro.org> References: <1565682784-10234-1-git-send-email-sumit.garg@linaro.org> Content-Type: text/plain; charset="UTF-8" X-Mailer: Evolution 3.20.5 (3.20.5-1.fc24) Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Sender: linux-crypto-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-crypto@vger.kernel.org Hi Sumit, On Tue, 2019-08-13 at 13:22 +0530, Sumit Garg wrote: > This patch-set is an outcome of discussion here [1]. It has evolved very > much since v1 to create, consolidate and generalize trusted keys > subsystem. > > This framework has been tested with trusted keys support provided via TEE > but I wasn't able to test it with a TPM device as I don't possess one. It > would be really helpful if others could test this patch-set using a TPM > device. With the "CONFIG_HEADER_TEST" and "CONFIG_KERNEL_HEADER_TEST" config options enabled, which is required for linux-next, it fails to build. Mimi