d983580f90
Test: Install bootimage.iso on bare mental, enable Intel TXT setting in BIOS. During installation make with such selection "Standard Controller" or "All-in-One Controller" -> "Graphical console" -> "EXTENDED Security Profile" -> "Trusted Boot Profile" After system bootup, check tboot with such command "sudo txt-stat" Depends-On: https://review.openstack.org/627745 Story: 2004522 Task: 28436 Change-Id: I7599f1648acfa71757cd5dfdb54f00c9499c8d61 Signed-off-by: Martin, Chen <haochuan.z.chen@intel.com>
33 lines
1.0 KiB
Diff
33 lines
1.0 KiB
Diff
From 16a82ea84332a117c4524caaa4209b912e18e888 Mon Sep 17 00:00:00 2001
|
|
From: Bin Qian <bin.qian@windriver.com>
|
|
Date: Wed, 6 Dec 2017 08:47:12 -0500
|
|
Subject: [PATCH 1/1] TiS tboot
|
|
|
|
---
|
|
SPECS/tboot.spec | 2 ++
|
|
1 file changed, 2 insertions(+)
|
|
|
|
diff --git a/SPECS/tboot.spec b/SPECS/tboot.spec
|
|
index c2d5eb7..f04dd17 100644
|
|
--- a/SPECS/tboot.spec
|
|
+++ b/SPECS/tboot.spec
|
|
@@ -27,6 +27,7 @@ Patch13: ../patches/0013-Add-centos7-instructions-for-Use-in-EFI-boot-mode.patch
|
|
Patch14: ../patches/0014-Ensure-tboot-log-is-available-even-when-measured-lau.patch
|
|
Patch15: ../patches/0015-Add-support-for-appending-to-a-TPM2-TCG-style-event-.patch
|
|
Patch16: ../patches/0016-Add-an-option-in-tboot-to-force-SINIT-to-use-the-leg.patch
|
|
+Patch999: ../patches/1000-tboot-for-tis.patch
|
|
|
|
BuildRequires: trousers-devel
|
|
BuildRequires: openssl-devel
|
|
@@ -56,6 +57,7 @@ and verified launch of an OS kernel/VMM.
|
|
%patch14 -p1 -b .0014
|
|
%patch15 -p1 -b .0015
|
|
%patch16 -p1 -b .0016
|
|
+%patch999 -p1
|
|
|
|
%build
|
|
CFLAGS="$RPM_OPT_FLAGS"; export CFLAGS
|
|
--
|
|
2.7.4
|
|
|