While the tboot Linux LCP tools provide the capability for defining
OEM/manufacturer TPM NV indices, the recommended process for OEMs is to use our
OEM tools. The OEM tools and documentation for manufacturing and provisioning
a TXT system are available under NDA, as there is much more to OEM su
I have a question about the Sandy Bridge SINIT module
(2nd_gen_i5_i7_SINIT_51.BIN).
The developers kit has a set of programs for defining the default policy
(NVRAM index 0x5001) and aux2 (NVRAM index 0x5003).
All of the Sandy Bridge Machines that we currently have, have aux
predefi
Joe,
Version two of the patch:
Signed-off-by: Charles Fisher
diff -up tboot-1.7.0/tb_polgen/param.c.orig
tboot-1.7.0/tb_polgen/param.c
--- tboot-1.7.0/tb_polgen/param.c.orig2012-04-26 08:33:58.631208000
-0700
+++ tboot-1.7.0/tb_polgen/param.c 2012-04-26 10:10:49.931844000 -0700
@
Joe,
Please put this patch on hold. I am going to make the change suggested
earlier and use a common definition for both tboot, and tb_polgen, as
well as add a check in tb_polgen for the cmdline length being larger
than the buffer so, and put out an error message to that effect so that
the cond