Re: [tboot-devel] [RFC] tboot: kernel signature verification

2019-12-17 Thread Paul Moore (pmoore2) via tboot-devel
On Fri, 2019-12-06 at 11:37 +0100, Lukasz Hawrylko wrote: > On Thu, 2019-12-05 at 17:20 +, Paul Moore (pmoore2) wrote: > > A question for discussion: if the VLP is loaded from it's own > > nvindex, > > and there is also a VLP present inside the LCP, which VLP do we want > > to > > use? I'm ass

Re: [tboot-devel] [RFC] tboot: kernel signature verification

2019-12-17 Thread Paul Moore (pmoore2) via tboot-devel
On Fri, 2019-12-06 at 21:28 +, Paul Moore (pmoore2) via tboot-devel wrote: > On Fri, 2019-12-06 at 11:37 +0100, Lukasz Hawrylko wrote: > > On Wed, 2019-12-04 at 14:33 +, Paul Moore (pmoore2) wrote: > > > Can you elaborate a bit more on what you mean by "the root of > > > certificate"? Alte

Re: [tboot-devel] [RFC] tboot: kernel signature verification

2019-12-17 Thread Paul Moore (pmoore2) via tboot-devel
On Mon, 2019-12-09 at 15:23 +0100, Lukasz Hawrylko wrote: > On Fri, 2019-12-06 at 21:28 +, Paul Moore (pmoore2) wrote: > > I know I've said this before, but please consider all of this code > > still > > a very rough prototype. Normally I wouldn't share code of this > > quality, > > but since