[yocto] [meta-security][PATCH] tpm2-openssl: update to 1.2.0

2023-10-14 Thread Petr Gotthard
This is a feature release:
https://github.com/tpm2-software/tpm2-openssl/blob/1.2.0/docs/CHANGELOG.md

The do_configure amendment is no longer needed.

Signed-off-by: Petr Gotthard 
---
 .../{tpm2-openssl_1.1.1.bb => tpm2-openssl_1.2.0.bb}   | 7 +--
 1 file changed, 1 insertion(+), 6 deletions(-)
 rename meta-tpm/recipes-tpm2/tpm2-openssl/{tpm2-openssl_1.1.1.bb => 
tpm2-openssl_1.2.0.bb} (64%)

diff --git a/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.1.bb 
b/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.2.0.bb
similarity index 64%
rename from meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.1.bb
rename to meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.2.0.bb
index b676871..3b4f9f7 100644
--- a/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.1.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.2.0.bb
@@ -6,16 +6,11 @@ DEPENDS = "autoconf-archive-native tpm2-tss openssl"
 
 SRC_URI = 
"https://github.com/tpm2-software/${BPN}/releases/download/${PV}/${BPN}-${PV}.tar.gz;
 
-SRC_URI[sha256sum] = 
"5a9bb0c6c61d026272b8843cbc291b5dfa9a55c1661a513b1c980807ad2dad01"
+SRC_URI[sha256sum] = 
"2ee15da2dceae1466ffba868e75a00b119d752babc1b6a2792286336a3324fb0"
 
 UPSTREAM_CHECK_URI = "https://github.com/tpm2-software/${BPN}/releases;
 
 inherit autotools pkgconfig
 
-do_configure:prepend() {
-# do not extract the version number from git
-sed -i -e 's/m4_esyscmd_s(\[git describe --tags --always 
--dirty\])/${PV}/' ${S}/configure.ac
-}
-
 FILES:${PN} = "\
 ${libdir}/ossl-modules/tpm2.so"
-- 
2.34.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#61341): https://lists.yoctoproject.org/g/yocto/message/61341
Mute This Topic: https://lists.yoctoproject.org/mt/101957653/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



Re: [yocto] [meta-security][PATCH] tpm2-tss: upgrade 3.2.0 -> 4.0.1

2023-04-21 Thread Petr Gotthard
Yeah, I am sorry for that. It was intentional, but I discovered there is a bug 
in the upstream that prevents me from using this feature properly.
https://github.com/tpm2-software/tpm2-tss/issues/2571

I thought it will be fixed quickly, but it wasn't. Let me fix this.

-Original Message-
From: Peter Kjellerstedt  
Sent: Friday, April 21, 2023 8:07 PM
To: Petr Gotthard 
Cc: yocto@lists.yoctoproject.org
Subject: RE: [meta-security][PATCH] tpm2-tss: upgrade 3.2.0 -> 4.0.1

You introduce a new feature "policy", but then you set the default for 
PACKAGECONFIG to "vendor", which does not exist. Was this intentional? If so it 
should have been mentioned in the commit message as it causes a warning unless 
you override the default PACKAGECONFIG:

  WARNING: tpm2-tss-4.0.1-r0 do_configure: QA Issue: tpm2-tss: invalid
  PACKAGECONFIG: vendor [invalid-packageconfig]


//Peter

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#59757): https://lists.yoctoproject.org/g/yocto/message/59757
Mute This Topic: https://lists.yoctoproject.org/mt/97035270/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH] tpm2-abrmd: upgrade 2.4.1 -> 3.0.0

2023-02-17 Thread Petr Gotthard
Changelog:
https://github.com/tpm2-software/tpm2-abrmd/blob/3.0.0/CHANGELOG.md

Signed-off-by: Petr Gotthard 
---
 .../tpm2-abrmd/{tpm2-abrmd_2.4.1.bb => tpm2-abrmd_3.0.0.bb} | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)
 rename meta-tpm/recipes-tpm2/tpm2-abrmd/{tpm2-abrmd_2.4.1.bb => 
tpm2-abrmd_3.0.0.bb} (95%)

diff --git a/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.1.bb 
b/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_3.0.0.bb
similarity index 95%
rename from meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.1.bb
rename to meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_3.0.0.bb
index 75e9588..ea2433c 100644
--- a/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.1.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_3.0.0.bb
@@ -18,7 +18,7 @@ SRC_URI = "\
 file://tpm2-abrmd.default \
 "
 
-SRC_URI[sha256sum] = 
"a7844a257eaf5176f612fe9620018edc0880cca7036465ad2593f83ae0ad6673"
+SRC_URI[sha256sum] = 
"d59aff34164aa705b05155b86607f6b66918a433104f754a3fcf76216dd9f465"
 
 UPSTREAM_CHECK_URI = "https://github.com/tpm2-software/${BPN}/releases;
 
-- 
2.34.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#59247): https://lists.yoctoproject.org/g/yocto/message/59247
Mute This Topic: https://lists.yoctoproject.org/mt/97035299/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH] tpm2-pkcs11: upgrade 1.8.0 -> 1.9.0

2023-02-17 Thread Petr Gotthard
Changelog:
https://github.com/tpm2-software/tpm2-pkcs11/blob/1.9.0/CHANGELOG.md

Signed-off-by: Petr Gotthard 
---
 .../{tpm2-pkcs11_1.8.0.bb => tpm2-pkcs11_1.9.0.bb} | 7 +--
 1 file changed, 1 insertion(+), 6 deletions(-)
 rename meta-tpm/recipes-tpm2/tpm2-pkcs11/{tpm2-pkcs11_1.8.0.bb => 
tpm2-pkcs11_1.9.0.bb} (85%)

diff --git a/meta-tpm/recipes-tpm2/tpm2-pkcs11/tpm2-pkcs11_1.8.0.bb 
b/meta-tpm/recipes-tpm2/tpm2-pkcs11/tpm2-pkcs11_1.9.0.bb
similarity index 85%
rename from meta-tpm/recipes-tpm2/tpm2-pkcs11/tpm2-pkcs11_1.8.0.bb
rename to meta-tpm/recipes-tpm2/tpm2-pkcs11/tpm2-pkcs11_1.9.0.bb
index 38847a8..e0def0f 100644
--- a/meta-tpm/recipes-tpm2/tpm2-pkcs11/tpm2-pkcs11_1.8.0.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-pkcs11/tpm2-pkcs11_1.9.0.bb
@@ -8,7 +8,7 @@ DEPENDS = "autoconf-archive pkgconfig sqlite3 openssl 
libtss2-dev tpm2-tools lib
 
 SRC_URI = 
"https://github.com/tpm2-software/${BPN}/releases/download/${PV}/${BPN}-${PV}.tar.gz;
 
-SRC_URI[sha256sum] = 
"79f28899047defd6b4b72b7268dd56abf27774954022315f818c239af33e05bd"
+SRC_URI[sha256sum] = 
"35bf06c30cfa76fc0eba2c5f503cf7dd0d34a66afb2d292fee896b90362f633b"
 
 UPSTREAM_CHECK_URI = "https://github.com/tpm2-software/${BPN}/releases;
 
@@ -16,11 +16,6 @@ inherit autotools-brokensep pkgconfig python3native
 
 EXTRA_OECONF += "--disable-ptool-checks"
 
-do_configure:prepend() {
-# do not extract the version number from git
-sed -i -e 's/m4_esyscmd_s(\[git describe --tags --always 
--dirty\])/${PV}/' ${S}/configure.ac
-}
-
 do_compile:append() {
 cd ${S}/tools
 python3 setup.py build
-- 
2.34.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#59246): https://lists.yoctoproject.org/g/yocto/message/59246
Mute This Topic: https://lists.yoctoproject.org/mt/97035298/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH] tpm2-tss: upgrade 3.2.0 -> 4.0.1

2023-02-17 Thread Petr Gotthard
Changelog:
https://github.com/tpm2-software/tpm2-tss/blob/4.0.1/CHANGELOG.md

Signed-off-by: Petr Gotthard 
---
 .../tpm2-tss/tpm2-tss/fixup_hosttools.patch  | 10 +-
 .../{tpm2-tss_3.2.0.bb => tpm2-tss_4.0.1.bb} | 12 
 2 files changed, 9 insertions(+), 13 deletions(-)
 rename meta-tpm/recipes-tpm2/tpm2-tss/{tpm2-tss_3.2.0.bb => tpm2-tss_4.0.1.bb} 
(90%)

diff --git a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/fixup_hosttools.patch 
b/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/fixup_hosttools.patch
index 450698f..04a2964 100644
--- a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/fixup_hosttools.patch
+++ b/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/fixup_hosttools.patch
@@ -5,16 +5,16 @@ Not appropriate for cross build env.
 Upstream-Status: OE [inappropriate]
 Signed-off-by: Armin Kuster 
 
-Index: tpm2-tss-3.2.0/configure.ac
+Index: tpm2-tss-4.0.1/configure.ac
 ===
 tpm2-tss-3.2.0.orig/configure.ac
-+++ tpm2-tss-3.2.0/configure.ac
-@@ -488,17 +488,6 @@
+--- tpm2-tss-4.0.1.orig/configure.ac
 tpm2-tss-4.0.1/configure.ac
+@@ -554,17 +554,6 @@ AM_CONDITIONAL(SYSD_SYSUSERS, test "x$systemd_sysusers" = 
"xyes")
  AC_CHECK_PROG(systemd_tmpfiles, systemd-tmpfiles, yes)
  AM_CONDITIONAL(SYSD_TMPFILES, test "x$systemd_tmpfiles" = "xyes")
  
 -# Check all tools used by make install
--AS_IF([test "$HOSTOS" = "Linux"],
+-AS_IF([test "$HOSTOS" = "Linux" && test "x$systemd_sysusers" != "xyes"],
 -[ AC_CHECK_PROG(useradd, useradd, yes)
 -  AC_CHECK_PROG(groupadd, groupadd, yes)
 -  AC_CHECK_PROG(adduser, adduser, yes)
diff --git a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_3.2.0.bb 
b/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb
similarity index 90%
rename from meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_3.2.0.bb
rename to meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb
index 1556273..657a2cd 100644
--- a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_3.2.0.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb
@@ -10,15 +10,16 @@ SRC_URI = 
"https://github.com/tpm2-software/${BPN}/releases/download/${PV}/${BPN
file://fixup_hosttools.patch \
"
 
-SRC_URI[sha256sum] = 
"48305e4144dcf6d10f3b25b7bccf0189fd2d1186feafd8cd68c6b17ecf0d7912"
+SRC_URI[sha256sum] = 
"532a70133910b6bd842289915b3f9423c0205c0ea009d65294ca18a74087c950"
 
 UPSTREAM_CHECK_URI = "https://github.com/tpm2-software/${BPN}/releases;
 
 inherit autotools pkgconfig systemd useradd
 
-PACKAGECONFIG ??= ""
+PACKAGECONFIG ??= "vendor"
 PACKAGECONFIG[oxygen] = ",--disable-doxygen-doc, "
-PACKAGECONFIG[fapi] = "--enable-fapi,--disable-fapi,curl json-c "
+PACKAGECONFIG[fapi] = "--enable-fapi,--disable-fapi,curl json-c 
util-linux-libuuid "
+PACKAGECONFIG[policy] = "--enable-policy,--disable-policy,json-c 
util-linux-libuuid "
 
 EXTRA_OECONF += "--enable-static 
--with-udevrulesdir=${nonarch_base_libdir}/udev/rules.d/"
 EXTRA_OECONF += "--runstatedir=/run"
@@ -28,11 +29,6 @@ USERADD_PACKAGES = "${PN}"
 GROUPADD_PARAM:${PN} = "--system tss"
 USERADD_PARAM:${PN} = "--system -M -d /var/lib/tpm -s /bin/false -g tss tss"
 
-do_configure:prepend() {
-# do not extract the version number from git
-sed -i -e 's/m4_esyscmd_s(\[git describe --tags --always 
--dirty\])/${PV}/' ${S}/configure.ac
-}
-
 do_install:append() {
 # Remove /run as it is created on startup
 rm -rf ${D}/run
-- 
2.34.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#59244): https://lists.yoctoproject.org/g/yocto/message/59244
Mute This Topic: https://lists.yoctoproject.org/mt/97035270/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH] tpm2-tools: upgrade 5.3 -> 5.5

2023-02-17 Thread Petr Gotthard
Changelog:
https://github.com/tpm2-software/tpm2-tools/blob/5.5/docs/CHANGELOG.md

Signed-off-by: Petr Gotthard 
---
 .../tpm2-tools/{tpm2-tools_5.3.bb => tpm2-tools_5.5.bb}| 7 +--
 1 file changed, 1 insertion(+), 6 deletions(-)
 rename meta-tpm/recipes-tpm2/tpm2-tools/{tpm2-tools_5.3.bb => 
tpm2-tools_5.5.bb} (65%)

diff --git a/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.3.bb 
b/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.5.bb
similarity index 65%
rename from meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.3.bb
rename to meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.5.bb
index 53d5abb..ef73238 100644
--- a/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.3.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.5.bb
@@ -8,16 +8,11 @@ DEPENDS = "tpm2-abrmd tpm2-tss openssl curl autoconf-archive"
 
 SRC_URI = 
"https://github.com/tpm2-software/${BPN}/releases/download/${PV}/${BPN}-${PV}.tar.gz;
 
-SRC_URI[sha256sum] = 
"e7ce2fd36ef5cdbd7872d823a442e8754a4f0ca7c54b60efcdb75c12a1f98f8f"
+SRC_URI[sha256sum] = 
"1fdb49c730537bfdaed04881a61e3bfd121e957ec0bdceeec0261236c123"
 
 UPSTREAM_CHECK_URI = "https://github.com/tpm2-software/${BPN}/releases;
 
 inherit autotools pkgconfig bash-completion
 
-do_configure:prepend() {
-# do not extract the version number from git
-sed -i -e 's/m4_esyscmd_s(\[git describe --tags --always 
--dirty\])/${PV}/' ${S}/configure.ac
-}
-
 # need tss-esys
 RDEPENDS:${PN} = "libtss2 tpm2-abrmd"
-- 
2.34.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#59245): https://lists.yoctoproject.org/g/yocto/message/59245
Mute This Topic: https://lists.yoctoproject.org/mt/97035271/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



Re: [linux-yocto] [kernel-cache][PATCH] nft: add NFT_OBJREF

2022-06-30 Thread Petr Gotthard
I did test the change with kernels 5.10, 5.14 and 5.15 in Honister (now EOL) 
and Kirkstone
In all these the kernel module is built, loaded and works with nft as expected.

Petr

-Original Message-
From: Bruce Ashfield  
Sent: Tuesday, June 28, 2022 11:13 PM
To: Petr Gotthard 
Cc: linux-yocto@lists.yoctoproject.org
Subject: Re: [kernel-cache][PATCH] nft: add NFT_OBJREF



Sorry for the delay, I was traveling and didn't get to this until now.

The change looks fine to me. I can apply this to 5.4+, but it would be useful 
to know which kernel versions you've tested the change with.

Bruce

In message: [kernel-cache][PATCH] nft: add NFT_OBJREF on 21/06/2022 Petr 
Gotthard wrote:

> This option allows references to stateful objects, such as counters 
> and quotas. In Linux kernel since 4.10, so applicable to all branches.
>
> Signed-off-by: Petr Gotthard 
> ---
>  features/nf_tables/nf_tables.cfg | 1 +
>  1 file changed, 1 insertion(+)
>
> diff --git a/features/nf_tables/nf_tables.cfg 
> b/features/nf_tables/nf_tables.cfg
> index 3bb34d59..b8f73b76 100644
> --- a/features/nf_tables/nf_tables.cfg
> +++ b/features/nf_tables/nf_tables.cfg
> @@ -12,6 +12,7 @@ CONFIG_NFT_LIMIT=m
>  CONFIG_NFT_CONNLIMIT=m
>  CONFIG_NFT_TUNNEL=m
>  CONFIG_NFT_NAT=m
> +CONFIG_NFT_OBJREF=m
>  CONFIG_NFT_QUEUE=m
>  CONFIG_NFT_REJECT=m
>  CONFIG_NFT_REJECT_INET=m
> --
> 2.34.1

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#11424): 
https://lists.yoctoproject.org/g/linux-yocto/message/11424
Mute This Topic: https://lists.yoctoproject.org/mt/91898140/21656
Group Owner: linux-yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/linux-yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[linux-yocto] [kernel-cache][PATCH] nft: add NFT_OBJREF

2022-06-21 Thread Petr Gotthard
This option allows references to stateful objects, such as counters
and quotas. In Linux kernel since 4.10, so applicable to all branches.

Signed-off-by: Petr Gotthard 
---
 features/nf_tables/nf_tables.cfg | 1 +
 1 file changed, 1 insertion(+)

diff --git a/features/nf_tables/nf_tables.cfg b/features/nf_tables/nf_tables.cfg
index 3bb34d59..b8f73b76 100644
--- a/features/nf_tables/nf_tables.cfg
+++ b/features/nf_tables/nf_tables.cfg
@@ -12,6 +12,7 @@ CONFIG_NFT_LIMIT=m
 CONFIG_NFT_CONNLIMIT=m
 CONFIG_NFT_TUNNEL=m
 CONFIG_NFT_NAT=m
+CONFIG_NFT_OBJREF=m
 CONFIG_NFT_QUEUE=m
 CONFIG_NFT_REJECT=m
 CONFIG_NFT_REJECT_INET=m
-- 
2.34.1

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#11404): 
https://lists.yoctoproject.org/g/linux-yocto/message/11404
Mute This Topic: https://lists.yoctoproject.org/mt/91898140/21656
Group Owner: linux-yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/linux-yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH 6/6] tpm2-pkcs11: update to 1.8.0

2022-04-10 Thread Petr Gotthard
The build patches are now included in the upstream,
the local binary checkes can be disabled with --disable-ptool-checks,
the boostrap doesn't need to be called if the release .tar.gz is used.

Signed-off-by: Petr Gotthard 
---
 .../0001-remove-local-binary-checkes.patch|   77 -
 .../0001-ssl-compile-against-OSSL-3.0.patch   | 1305 -
 ...ssl-require-version-1.1.0-or-greater.patch |   93 --
 .../tpm2-pkcs11/files/bootstrap_fixup.patch   |   12 -
 ...2-pkcs11_1.7.0.bb => tpm2-pkcs11_1.8.0.bb} |   18 +-
 5 files changed, 7 insertions(+), 1498 deletions(-)
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-remove-local-binary-checkes.patch
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-ssl-compile-against-OSSL-3.0.patch
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0002-ossl-require-version-1.1.0-or-greater.patch
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/bootstrap_fixup.patch
 rename meta-tpm/recipes-tpm2/tpm2-pkcs11/{tpm2-pkcs11_1.7.0.bb => 
tpm2-pkcs11_1.8.0.bb} (76%)

diff --git 
a/meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-remove-local-binary-checkes.patch
 
b/meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-remove-local-binary-checkes.patch
deleted file mode 100644
index 9d3f073..000
--- 
a/meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-remove-local-binary-checkes.patch
+++ /dev/null
@@ -1,77 +0,0 @@
-From 9e3ef6f253f9427596baf3e7d748a79854cadfa9 Mon Sep 17 00:00:00 2001
-From: Armin Kuster 
-Date: Wed, 14 Oct 2020 08:55:33 -0700
-Subject: [PATCH] remove local binary checkes
-
-Signed-off-by: Armin Kuster 
-
-Upsteam-Status: Inappropriate
-These are only needed to run on the tartget so we add an RDPENDS.
-Not needed for building.
-

- configure.ac | 48 
- 1 file changed, 48 deletions(-)
-
-diff --git a/configure.ac b/configure.ac
-index 50e7d4b..2b9abcf 100644
 a/configure.ac
-+++ b/configure.ac
-@@ -219,54 +219,6 @@ AX_PROG_JAVAC()
- AX_PROG_JAVA()
- m4_popdef([AC_MSG_ERROR])
- 
--AC_CHECK_PROG([tpm2_createprimary], [tpm2_createprimary], [yes], [no])
--  AS_IF([test "x$tpm2_createprimary" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_createprimary, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_create], [tpm2_create], [yes], [no])
--  AS_IF([test "x$tpm2_create" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_create, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_evictcontrol], [tpm2_evictcontrol], [yes], [no])
--  AS_IF([test "x$tpm2_evictcontrol" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_evictcontrol, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_readpublic], [tpm2_readpublic], [yes], [no])
--  AS_IF([test "x$tpm2_readpublic" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_readpublic, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_load], [tpm2_load], [yes], [no])
--  AS_IF([test "x$tpm2_load" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_load, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_loadexternal], [tpm2_loadexternal], [yes], [no])
--  AS_IF([test "x$tpm2_loadexternal" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_loadexternal, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_unseal], [tpm2_unseal], [yes], [no])
--  AS_IF([test "x$tpm2_unseal" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_unseal, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_encryptdecrypt], [tpm2_encryptdecrypt], [yes], [no])
--  AS_IF([test "x$tpm2_encryptdecrypt" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_encryptdecrypt, but executable 
not found.])])
--
--AC_CHECK_PROG([tpm2_sign], [tpm2_sign], [yes], [no])
--  AS_IF([test "x$tpm2_sign" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_sign, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_getcap], [tpm2_getcap], [yes], [no])
--  AS_IF([test "x$tpm2_getcap" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_getcap, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_import], [tpm2_import], [yes], [no])
--  AS_IF([test "x$tpm2_import" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_import, but executable not 
found.])])
--
--AC_CHECK_PROG([tpm2_changeauth], [tpm2_changeauth], [yes], [no])
--  AS_IF([test "x$tpm2_changeauth" != "xyes"],
--[AC_MSG_ERROR([tpm2_ptool requires tpm2_changeauth, but executable not 
found.])])
--
- AC_DEFUN([integration_test_checks], [
- 
-   PKG_CHECK_MODULES([OPENSC_PKCS11],[opensc-pkcs11],,
--- 
-2.17.1
-
diff --git 
a/meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-ssl-compile-against-OSSL-3.0.patch
 
b/meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-ssl-compile-against-

[yocto] [meta-security][PATCH 5/6] tpm2-tss-engine: fix version string and build with openssl 3.0

2022-04-10 Thread Petr Gotthard
Calling autoreconf outside git repo causes the version number to
be null. This patch makes the version number fixed.

Since Yocto now uses OpenSSL 3.0, the file packaging need to
be updated.

Signed-off-by: Petr Gotthard 
---
 .../tpm2-tss-engine/tpm2-tss-engine_1.1.0.bb  | 19 +--
 1 file changed, 13 insertions(+), 6 deletions(-)

diff --git a/meta-tpm/recipes-tpm2/tpm2-tss-engine/tpm2-tss-engine_1.1.0.bb 
b/meta-tpm/recipes-tpm2/tpm2-tss-engine/tpm2-tss-engine_1.1.0.bb
index 4d1f425..efe62a8 100644
--- a/meta-tpm/recipes-tpm2/tpm2-tss-engine/tpm2-tss-engine_1.1.0.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-tss-engine/tpm2-tss-engine_1.1.0.bb
@@ -8,16 +8,23 @@ SECTION = "security/tpm"
 
 DEPENDS = "autoconf-archive-native bash-completion libtss2 libgcrypt openssl"
 
-SRCREV = "6f387a4efe2049f1b4833e8f621c77231bc1eef4"
-SRC_URI = 
"git://github.com/tpm2-software/tpm2-tss-engine.git;branch=v1.1.x;protocol=https"
+SRC_URI = 
"https://github.com/tpm2-software/${BPN}/releases/download/v${PV}/${BPN}-${PV}.tar.gz;
+
+SRC_URI[sha256sum] = 
"ea2941695ac221d23a7f3e1321140e75b1495ae6ade876f2f4c2ed807c65e2a5"
 
 inherit autotools-brokensep pkgconfig systemd
 
-S = "${WORKDIR}/git"
+# It uses the API deprecated since the OpenSSL 3.0
+CFLAGS:append = ' -Wno-deprecated-declarations -Wno-unused-parameter'
+
+do_configure:prepend() {
+# do not extract the version number from git
+sed -i -e 's/m4_esyscmd_s(\[git describe --tags --always 
--dirty\])/${PV}/' ${S}/configure.ac
+}
 
 PACKAGES += "${PN}-engines ${PN}-engines-staticdev ${PN}-bash-completion"
 
-FILES:${PN}-dev = "${libdir}/engines-1.1/tpm2tss.so ${includedir}/*"
-FILES:${PN}-engines = "${libdir}/engines-1.1/lib*.so*"
-FILES:${PN}-engines-staticdev = "${libdir}/engines-1.1/libtpm2tss.a"
+FILES:${PN}-dev = "${libdir}/engines-3/tpm2tss.so ${includedir}/*"
+FILES:${PN}-engines = "${libdir}/engines-3/lib*.so*"
+FILES:${PN}-engines-staticdev = "${libdir}/engines-3/libtpm2tss.a"
 FILES:${PN}-bash-completion += "${datadir}/bash-completion/completions"
-- 
2.25.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#56708): https://lists.yoctoproject.org/g/yocto/message/56708
Mute This Topic: https://lists.yoctoproject.org/mt/90376027/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH 4/6] tpm2-abrmd: update to 2.4.1

2022-04-10 Thread Petr Gotthard
The version number is correctly assigned only when the release .tar.gz
is used.

Signed-off-by: Petr Gotthard 
---
 .../tpm2-abrmd/{tpm2-abrmd_2.4.0.bb => tpm2-abrmd_2.4.1.bb} | 6 ++
 1 file changed, 2 insertions(+), 4 deletions(-)
 rename meta-tpm/recipes-tpm2/tpm2-abrmd/{tpm2-abrmd_2.4.0.bb => 
tpm2-abrmd_2.4.1.bb} (90%)

diff --git a/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.0.bb 
b/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.1.bb
similarity index 90%
rename from meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.0.bb
rename to meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.1.bb
index 1818171..daafae3 100644
--- a/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.0.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-abrmd/tpm2-abrmd_2.4.1.bb
@@ -13,14 +13,12 @@ DEPENDS = "autoconf-archive dbus glib-2.0 tpm2-tss 
glib-2.0-native \
 libtss2 libtss2-mu libtss2-tcti-device libtss2-tcti-mssim"
 
 SRC_URI = "\
-git://github.com/tpm2-software/tpm2-abrmd.git;branch=master;protocol=https 
\
+
https://github.com/tpm2-software/${BPN}/releases/download/${PV}/${BPN}-${PV}.tar.gz
 \
 file://tpm2-abrmd-init.sh \
 file://tpm2-abrmd.default \
 "
 
-SRCREV = "4f332013a02c422e186c4aaf127ab6a40b996028"
-
-S = "${WORKDIR}/git"
+SRC_URI[sha256sum] = 
"a7844a257eaf5176f612fe9620018edc0880cca7036465ad2593f83ae0ad6673"
 
 inherit autotools pkgconfig systemd update-rc.d useradd
 
-- 
2.25.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#56707): https://lists.yoctoproject.org/g/yocto/message/56707
Mute This Topic: https://lists.yoctoproject.org/mt/90376024/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH 3/6] tpm2-tss: update to 3.2.0

2022-04-10 Thread Petr Gotthard
This deletes the patches that were unused for a long time,
updates the tpm2-tss package and introduces a fix to the version
number problem that got introduced with the 3.2.0 version.

Signed-off-by: Petr Gotthard 
---
 .../tpm2-tss/tpm2-tss/ax_pthread.m4   | 332 --
 .../tpm2-tss/fix_musl_select_include.patch|  31 --
 .../tpm2-tss/tpm2-tss/fixup_hosttools.patch   |  29 +-
 .../{tpm2-tss_3.1.0.bb => tpm2-tss_3.2.0.bb}  |   7 +-
 4 files changed, 22 insertions(+), 377 deletions(-)
 delete mode 100644 meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/ax_pthread.m4
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/fix_musl_select_include.patch
 rename meta-tpm/recipes-tpm2/tpm2-tss/{tpm2-tss_3.1.0.bb => tpm2-tss_3.2.0.bb} 
(91%)

diff --git a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/ax_pthread.m4 
b/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/ax_pthread.m4
deleted file mode 100644
index d383ad5..000
--- a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/ax_pthread.m4
+++ /dev/null
@@ -1,332 +0,0 @@
-# ===
-#http://www.gnu.org/software/autoconf-archive/ax_pthread.html
-# ===
-#
-# SYNOPSIS
-#
-#   AX_PTHREAD([ACTION-IF-FOUND[, ACTION-IF-NOT-FOUND]])
-#
-# DESCRIPTION
-#
-#   This macro figures out how to build C programs using POSIX threads. It
-#   sets the PTHREAD_LIBS output variable to the threads library and linker
-#   flags, and the PTHREAD_CFLAGS output variable to any special C compiler
-#   flags that are needed. (The user can also force certain compiler
-#   flags/libs to be tested by setting these environment variables.)
-#
-#   Also sets PTHREAD_CC to any special C compiler that is needed for
-#   multi-threaded programs (defaults to the value of CC otherwise). (This
-#   is necessary on AIX to use the special cc_r compiler alias.)
-#
-#   NOTE: You are assumed to not only compile your program with these flags,
-#   but also link it with them as well. e.g. you should link with
-#   $PTHREAD_CC $CFLAGS $PTHREAD_CFLAGS $LDFLAGS ... $PTHREAD_LIBS $LIBS
-#
-#   If you are only building threads programs, you may wish to use these
-#   variables in your default LIBS, CFLAGS, and CC:
-#
-# LIBS="$PTHREAD_LIBS $LIBS"
-# CFLAGS="$CFLAGS $PTHREAD_CFLAGS"
-# CC="$PTHREAD_CC"
-#
-#   In addition, if the PTHREAD_CREATE_JOINABLE thread-attribute constant
-#   has a nonstandard name, defines PTHREAD_CREATE_JOINABLE to that name
-#   (e.g. PTHREAD_CREATE_UNDETACHED on AIX).
-#
-#   Also HAVE_PTHREAD_PRIO_INHERIT is defined if pthread is found and the
-#   PTHREAD_PRIO_INHERIT symbol is defined when compiling with
-#   PTHREAD_CFLAGS.
-#
-#   ACTION-IF-FOUND is a list of shell commands to run if a threads library
-#   is found, and ACTION-IF-NOT-FOUND is a list of commands to run it if it
-#   is not found. If ACTION-IF-FOUND is not specified, the default action
-#   will define HAVE_PTHREAD.
-#
-#   Please let the authors know if this macro fails on any platform, or if
-#   you have any other suggestions or comments. This macro was based on work
-#   by SGJ on autoconf scripts for FFTW (http://www.fftw.org/) (with help
-#   from M. Frigo), as well as ac_pthread and hb_pthread macros posted by
-#   Alejandro Forero Cuervo to the autoconf macro repository. We are also
-#   grateful for the helpful feedback of numerous users.
-#
-#   Updated for Autoconf 2.68 by Daniel Richard G.
-#
-# LICENSE
-#
-#   Copyright (c) 2008 Steven G. Johnson 
-#   Copyright (c) 2011 Daniel Richard G. 
-#
-#   This program is free software: you can redistribute it and/or modify it
-#   under the terms of the GNU General Public License as published by the
-#   Free Software Foundation, either version 3 of the License, or (at your
-#   option) any later version.
-#
-#   This program is distributed in the hope that it will be useful, but
-#   WITHOUT ANY WARRANTY; without even the implied warranty of
-#   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General
-#   Public License for more details.
-#
-#   You should have received a copy of the GNU General Public License along
-#   with this program. If not, see <http://www.gnu.org/licenses/>.
-#
-#   As a special exception, the respective Autoconf Macro's copyright owner
-#   gives unlimited permission to copy, distribute and modify the configure
-#   scripts that are the output of Autoconf when processing the Macro. You
-#   need not follow the terms of the GNU General Public License when using
-#   or distributing such scripts, even though portions of the text of the
-#   Macro appear in them. The GNU General Public License (GPL) does govern
-#   all other use of the material that constitutes the Autoconf Macro.
-#
-#   This special exception to the GPL applies to versions of the Autoconf
-#   Macro released by the Autoconf Archive. When you m

[yocto] [meta-security][PATCH 2/6] tpm2-openssl: update to 1.1.0

2022-04-10 Thread Petr Gotthard
Also, the recipe is fixed to correctly package the openssl provider.

This new tpm2-openssl:
- Fixed segmentation fault when a signature algorithm is beging initialized
  without a private key.
- Fixed RSA/EC key equality checks. Works with OpenSSL 3.0.1.
- Added support for the `TPM2OPENSSL_PARENT_AUTH` environment variable.

Signed-off-by: Petr Gotthard 
---
 .../tpm2-openssl/tpm2-openssl_1.0.bb  | 11 ---
 .../tpm2-openssl/tpm2-openssl_1.1.0.bb| 19 +++
 2 files changed, 19 insertions(+), 11 deletions(-)
 delete mode 100644 meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.0.bb
 create mode 100644 meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.0.bb

diff --git a/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.0.bb 
b/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.0.bb
deleted file mode 100644
index f6a694c..000
--- a/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.0.bb
+++ /dev/null
@@ -1,11 +0,0 @@
-SUMMARY = "Provider for integration of TPM 2.0 to OpenSSL 3.0"
-LICENSE = "BSD-3-Clause"
-LIC_FILES_CHKSUM = "file://LICENSE;md5=b75785ac083d3c3ca04d99d9e4e1fbab"
-
-SRC_URI = 
"git://github.com/tpm2-software/tpm2-openssl.git;protocol=https;branch=master"
-
-SRCREV = "66e34f9e45c3697590cced1e4d3f35993a822f8b"
-
-S = "${WORKDIR}/git"
-
-inherit pkgconfig
diff --git a/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.0.bb 
b/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.0.bb
new file mode 100644
index 000..55061c9
--- /dev/null
+++ b/meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.0.bb
@@ -0,0 +1,19 @@
+SUMMARY = "Provider for integration of TPM 2.0 to OpenSSL 3.0"
+LICENSE = "BSD-3-Clause"
+LIC_FILES_CHKSUM = "file://LICENSE;md5=b75785ac083d3c3ca04d99d9e4e1fbab"
+
+DEPENDS = "autoconf-archive-native tpm2-tss openssl"
+
+SRC_URI = 
"https://github.com/tpm2-software/${BPN}/releases/download/${PV}/${BPN}-${PV}.tar.gz;
+
+SRC_URI[sha256sum] = 
"eedcc0b72ad6d232e6f9f55a780290c4d33a4d06efca9314f8a36d7384eb1dfc"
+
+inherit autotools pkgconfig
+
+do_configure:prepend() {
+# do not extract the version number from git
+sed -i -e 's/m4_esyscmd_s(\[git describe --tags --always 
--dirty\])/${PV}/' ${S}/configure.ac
+}
+
+FILES:${PN} = "\
+${libdir}/ossl-modules/tpm2.so"
-- 
2.25.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#56705): https://lists.yoctoproject.org/g/yocto/message/56705
Mute This Topic: https://lists.yoctoproject.org/mt/90376015/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH 1/6] tpm2-tools: fix missing version number

2022-04-10 Thread Petr Gotthard
Calling autoreconf outside git repo causes the version number to
be null. This patch makes the version number fixed.

Signed-off-by: Petr Gotthard 
---
 meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.2.bb | 5 +
 1 file changed, 5 insertions(+)

diff --git a/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.2.bb 
b/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.2.bb
index 6e95a0e..f924038 100644
--- a/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.2.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-tools/tpm2-tools_5.2.bb
@@ -11,3 +11,8 @@ SRC_URI = 
"https://github.com/tpm2-software/${BPN}/releases/download/${PV}/${BPN
 SRC_URI[sha256sum] = 
"c0b402f6a7b3456e8eb2445211e2d41c46c7e769e05fe4d8909ff64119f7a630"
 
 inherit autotools pkgconfig bash-completion
+
+do_configure:prepend() {
+# do not extract the version number from git
+sed -i -e 's/m4_esyscmd_s(\[git describe --tags --always 
--dirty\])/${PV}/' ${S}/configure.ac
+}
-- 
2.25.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#56704): https://lists.yoctoproject.org/g/yocto/message/56704
Mute This Topic: https://lists.yoctoproject.org/mt/90375999/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [meta-security][PATCH 0/6] upgrade and cleanup tpm2-software

2022-04-10 Thread Petr Gotthard
Hello. I'd suggest some "house cleaning" of the tpm2-software. (I am
a member of the tpm2-software community and an upstream developer of
the tpm2-openssl provider.)

In general:

Some tpm2-software is not having the latest versions. For the Kirkstone
I suggest upgrading to the latest, which has the best openssl 3.0 support.

Many tpm2-software have null version strings. I suggest fixing the build
procedure so that the tools are aware of the correct version. It is
crucial e.g. for library dependency checking.

There were some unused patches, some very, very old. Few other patches
have been accepted to the upstream or the upstream changed in a way the
patches are no longer needed (e.g. there is a switch to do the same thing).

Petr Gotthard (6):
  tpm2-tools: fix missing version number
  tpm2-openssl: update to 1.1.0
  tpm2-tss: update to 3.2.0
  tpm2-abrmd: update to 2.4.1
  tpm2-tss-engine: fix version string and build with openssl 3.0
  tpm2-pkcs11: update to 1.8.0

 ...pm2-abrmd_2.4.0.bb => tpm2-abrmd_2.4.1.bb} |6 +-
 .../tpm2-openssl/tpm2-openssl_1.0.bb  |   11 -
 .../tpm2-openssl/tpm2-openssl_1.1.0.bb|   19 +
 .../0001-remove-local-binary-checkes.patch|   77 -
 .../0001-ssl-compile-against-OSSL-3.0.patch   | 1305 -
 ...ssl-require-version-1.1.0-or-greater.patch |   93 --
 .../tpm2-pkcs11/files/bootstrap_fixup.patch   |   12 -
 ...2-pkcs11_1.7.0.bb => tpm2-pkcs11_1.8.0.bb} |   18 +-
 .../recipes-tpm2/tpm2-tools/tpm2-tools_5.2.bb |5 +
 .../tpm2-tss-engine/tpm2-tss-engine_1.1.0.bb  |   19 +-
 .../tpm2-tss/tpm2-tss/ax_pthread.m4   |  332 -
 .../tpm2-tss/fix_musl_select_include.patch|   31 -
 .../tpm2-tss/tpm2-tss/fixup_hosttools.patch   |   29 +-
 .../{tpm2-tss_3.1.0.bb => tpm2-tss_3.2.0.bb}  |7 +-
 14 files changed, 68 insertions(+), 1896 deletions(-)
 rename meta-tpm/recipes-tpm2/tpm2-abrmd/{tpm2-abrmd_2.4.0.bb => 
tpm2-abrmd_2.4.1.bb} (90%)
 delete mode 100644 meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.0.bb
 create mode 100644 meta-tpm/recipes-tpm2/tpm2-openssl/tpm2-openssl_1.1.0.bb
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-remove-local-binary-checkes.patch
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0001-ssl-compile-against-OSSL-3.0.patch
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/0002-ossl-require-version-1.1.0-or-greater.patch
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-pkcs11/files/bootstrap_fixup.patch
 rename meta-tpm/recipes-tpm2/tpm2-pkcs11/{tpm2-pkcs11_1.7.0.bb => 
tpm2-pkcs11_1.8.0.bb} (76%)
 delete mode 100644 meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/ax_pthread.m4
 delete mode 100644 
meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss/fix_musl_select_include.patch
 rename meta-tpm/recipes-tpm2/tpm2-tss/{tpm2-tss_3.1.0.bb => tpm2-tss_3.2.0.bb} 
(91%)

-- 
2.25.1


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#56703): https://lists.yoctoproject.org/g/yocto/message/56703
Mute This Topic: https://lists.yoctoproject.org/mt/90375985/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-