Re: [yocto] [QUESTION] [meta-security/meta-tpm/recipes-tpm2] Kirkstone release

2023-07-03 Thread Benjamin BARATTE via lists.yoctoproject.org
Hi Armin,

> -Original Message-
> From: akuster808 
> Sent: Sunday, July 2, 2023 9:11 PM
> To: Benjamin BARATTE ;
> yocto@lists.yoctoproject.org
> Subject: Re: [yocto] [QUESTION] [meta-security/meta-tpm/recipes-tpm2]
> Kirkstone release
> 
> Benjamin,
> 
> On 6/30/23 11:12 AM, Benjamin BARATTE via lists.yoctoproject.org wrote:
> >
> > Dear Maintainers,
> >
> > I’m using the meta-security with Kirkstone version to use discrete TPM
> > with STM32MP1.
> >
> > I’m facing 3 issues :
> >
> >   * The packagegroup does not include libtss2-tcti-device library è
> > mandatory to use discrete TPM.
> >
> 
> Does this Mickledore commit address the issue?
> https://git.yoctoproject.org/meta-security/commit/meta-tpm/recipes-
> core/packagegroup?id=8a7112d37bfe0157289ed7e6baeb1d7e37707b29

yes, this one is working on Kirkstone

> >
> >  *
> >
> >
> >   * The packagegroup does not include tpm2-openssl è support of TPM
> > provides for openssl v3.x
> >
> Mind sending a patch to add this to master and I will backport to kirkstone.

Based on Mickledore commit, you can add tpm2-openssl in the list of 
dependencies for the packagegroup-security-tpm2

> >
> >  *
> >
> >
> >   * Tpm2-tools is on release 5.2 which has an issue with tpm2_nvread
> > (https://bugzilla.redhat.com/show_bug.cgi?id=2158598) è could it
> > be possible to update it at least to release 5.4
> >
> 
> The changes between 5.2 and 5.4 include many new functions/features. You
> can either carry that recipe local or give Mickledore a try.

I have seen that Mickledore use the version 5.4 already. 
The other dependencies seem OK. 
As this is only the tpm2-tools package and I don't have the choice of the Yocto 
release, I have made a local modification to use 5.4

Best Regards,

Benjamin

> 
> BR,
> Armin
> >
> >  *
> >
> > Thanks,
> >
> > Best Regards,
> >
> > Benjamin
> >
> >
> >
> > 
> >


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#60494): https://lists.yoctoproject.org/g/yocto/message/60494
Mute This Topic: https://lists.yoctoproject.org/mt/99874868/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



Re: [yocto] [QUESTION] [meta-security/meta-tpm/recipes-tpm2] Kirkstone release

2023-07-02 Thread Armin Kuster

Benjamin,

On 6/30/23 11:12 AM, Benjamin BARATTE via lists.yoctoproject.org wrote:


Dear Maintainers,

I’m using the meta-security with Kirkstone version to use discrete TPM 
with STM32MP1.


I’m facing 3 issues :

  * The packagegroup does not include libtss2-tcti-device library è
mandatory to use discrete TPM.



Does this Mickledore commit address the issue?
https://git.yoctoproject.org/meta-security/commit/meta-tpm/recipes-core/packagegroup?id=8a7112d37bfe0157289ed7e6baeb1d7e37707b29


 *


  * The packagegroup does not include tpm2-openssl è support of TPM
provides for openssl v3.x


Mind sending a patch to add this to master and I will backport to kirkstone.


 *


  * Tpm2-tools is on release 5.2 which has an issue with tpm2_nvread
(https://bugzilla.redhat.com/show_bug.cgi?id=2158598) è could it
be possible to update it at least to release 5.4



The changes between 5.2 and 5.4 include many new functions/features.  
You can either carry that recipe local or give Mickledore a try.


BR,
Armin


 *

Thanks,

Best Regards,

Benjamin

ST Restricted







-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#60490): https://lists.yoctoproject.org/g/yocto/message/60490
Mute This Topic: https://lists.yoctoproject.org/mt/99874868/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



[yocto] [QUESTION] [meta-security/meta-tpm/recipes-tpm2] Kirkstone release

2023-06-30 Thread Benjamin BARATTE via lists.yoctoproject.org
Dear Maintainers,

I'm using the meta-security with Kirkstone version to use discrete TPM with 
STM32MP1.

I'm facing 3 issues :

  *   The packagegroup does not include libtss2-tcti-device library ==> 
mandatory to use discrete TPM.
  *   The packagegroup does not include tpm2-openssl ==> support of TPM 
provides for openssl v3.x
  *   Tpm2-tools is on release 5.2 which has an issue with tpm2_nvread 
(https://bugzilla.redhat.com/show_bug.cgi?id=2158598) ==> could it be possible 
to update it at least to release 5.4
Thanks,

Best Regards,

Benjamin



ST Restricted

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#60487): https://lists.yoctoproject.org/g/yocto/message/60487
Mute This Topic: https://lists.yoctoproject.org/mt/99874868/21656
Group Owner: yocto+ow...@lists.yoctoproject.org
Unsubscribe: https://lists.yoctoproject.org/g/yocto/unsub 
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-