[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-10-21 Thread Bug Watch Updater
** Changed in: strongswan (Debian) Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940079 Title: Strongswan doesn't support TPM 2.0 through the TSS2 interface To m

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-10-06 Thread Launchpad Bug Tracker
This bug was fixed in the package strongswan - 5.9.1-1ubuntu1.1 --- strongswan (5.9.1-1ubuntu1.1) hirsute; urgency=medium * Compile the tpm plugin against the tpm2 software stack (tss2) (Debian packaging cherry-pick, LP: #1940079) - d/rules: add the --enable-tss-tss2 configu

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-10-06 Thread Launchpad Bug Tracker
This bug was fixed in the package strongswan - 5.8.2-1ubuntu3.2 --- strongswan (5.8.2-1ubuntu3.2) focal; urgency=medium * Compile the tpm plugin against the tpm2 software stack (tss2) (Debian packaging cherry-pick, LP: #1940079) - d/rules: add the --enable-tss-tss2 configure

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-29 Thread Paride Legovini
** Tags removed: verification-needed verification-needed-hirsute ** Tags added: verification-done verification-done-hirsute -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940079 Title: Strongswan do

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-29 Thread Paride Legovini
** Tags removed: verification-needed-focal ** Tags added: verification-done-focal -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940079 Title: Strongswan doesn't support TPM 2.0 through the TSS2 int

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-29 Thread Jim Sievert
On my Focal ipsec client machine, I added the following PPA: deb http://archive.ubuntu.com/ubuntu/ focal-proposed restricted main multiverse universe I installed various strongswan packages: charon-systemd/focal-proposed,now 5.8.2-1ubuntu3.2 amd64 [installed] libstrongswan-extra-plugins/focal-pr

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-29 Thread Paride Legovini
@Jim: could you please verify the packages once again, this time from focal-proposed, like you did in comment 22? The packages are identical to the ones you already verified, but this time it's on the "real" ones that will be copied to focal-updates once verified. I'll do the "light" verification

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-28 Thread Chris Halse Rogers
Hello Jim, or anyone else affected, Accepted strongswan into hirsute-proposed. The package will build now and be available at https://launchpad.net/ubuntu/+source/strongswan/5.9.1-1ubuntu1.1 in a few hours, and then in the -proposed repository. Please help us by testing this new package. See htt

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-28 Thread Chris Halse Rogers
Hello Jim, or anyone else affected, Accepted strongswan into focal-proposed. The package will build now and be available at https://launchpad.net/ubuntu/+source/strongswan/5.8.2-1ubuntu3.2 in a few hours, and then in the -proposed repository. Please help us by testing this new package. See https

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-21 Thread Paride Legovini
Thanks for testing! I uploaded the packages to Focal and Hirsute, now it's up to the SRU team to review the case and update/reject the change. If the packages get accepted they'll end up in the -proposed pockets and will need a final verification to finally land in -updates. -- You received this

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-21 Thread Paride Legovini
** Changed in: strongswan (Ubuntu Focal) Status: Incomplete => In Progress ** Changed in: strongswan (Ubuntu Hirsute) Status: Incomplete => In Progress -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchp

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-21 Thread Paride Legovini
** Description changed: [Impact] This is actually borderline between a bugfix and a new feature. It's a bugfix because in the libstrongswan-extra-plugins package description we write:   Also included is the libtpmtss library adding support for TPM plugin   (https://wiki.strongswa

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-21 Thread Launchpad Bug Tracker
** Merge proposal linked: https://code.launchpad.net/~paride/ubuntu/+source/strongswan/+git/strongswan/+merge/408927 ** Merge proposal linked: https://code.launchpad.net/~paride/ubuntu/+source/strongswan/+git/strongswan/+merge/408928 ** Merge proposal linked: https://code.launchpad.ne

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-21 Thread Jim Sievert
Hi Paride, I added your Focal PPA and installed the various strongswan packages on my client machine: strongswan, strongswan-swanctl, libstrongswan-extra- plugins, libstrongswan-standard-plugins, and strongswan-pki. I am able to confirm the ability to read TPM nvram keys and certificates success

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Bug Watch Updater
** Changed in: strongswan (Debian) Status: Unknown => New -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940079 Title: Strongswan doesn't support TPM 2.0 through the TSS2 interface To manage

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Jim Sievert
Paride, Thank you for all your diligence. I will try to provide focal testing results by early next week. Jim -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940079 Title: Strongswan doesn't suppo

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Paride Legovini
I uploaded the packages I plan to submit for the Focal/Hirsute SRU to this PPA: https://launchpad.net/~paride/+archive/ubuntu/strongswan They look good and sane to me, however I'll proceed with the SRU process only after they have been tested on a setup actually using the TPM2 bits. @Jim: would

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Paride Legovini
** Also affects: strongswan (Ubuntu Hirsute) Importance: Undecided Status: New ** Also affects: strongswan (Ubuntu Focal) Importance: Undecided Status: New ** Changed in: strongswan (Ubuntu Focal) Assignee: (unassigned) => Paride Legovini (paride) ** Changed in: strongsw

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Paride Legovini
** Description changed: [Impact] This is actually borderline between a bugfix and a new feature. It's a bugfix because in the libstrongswan-extra-plugins package description we write: - Also included is the libtpmtss library adding support for TPM plugin - (https://wiki.strongswa

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Paride Legovini
** Description changed: + [Impact] + + [Test Case] + + We can check that libtpmtss (installed by: libstrongswan-extra-plugins) + links against libtss2. For example with the proposed change in Focal we + have: + + $ ldd /usr/lib/ipsec/libtpmtss.so | grep tss + libtss2-sys.so.0 => /lib/x86_64

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Paride Legovini
Now that this is Fix Released in Impish, I'll twist this bug again and make it into a SRU bug, targeting Focal and Hirsute. I'll make a case summarizing the discussion above for the SRU team. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubu

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-16 Thread Launchpad Bug Tracker
This bug was fixed in the package strongswan - 5.9.1-1ubuntu3 --- strongswan (5.9.1-1ubuntu3) impish; urgency=medium * Compile the tpm plugin against the tpm2 software stack (tss2) (Debian packaging cherry-pick, LP: #1940079) - d/rules: add the --enable-tss-tss2 configure fl

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-16 Thread Paride Legovini
Thanks! Uploading strongswan using ftp to ubuntu (host: upload.ubuntu.com; directory: /ubuntu) Uploading strongswan_5.9.1-1ubuntu3.dsc Uploading strongswan_5.9.1-1ubuntu3.debian.tar.xz Uploading strongswan_5.9.1-1ubuntu3_source.buildinfo Uploading strongswan_5.9.1-1ubuntu3_source.changes -- You

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-16 Thread Steve Langasek
Ok for feature freeze, to enable this self-contained feature. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940079 Title: Strongswan doesn't support TPM 2.0 through the TSS2 interface To manage no