Dear Members,  I'm testing tboot on very old system (Lenovo t400) that 
supports only v1 policy versions. After creating policy according to 
"policy_v1.txt" I've got SINIT module error "unsupported policy 
version". It seems that tb_polgen can create only v2 policy now and this is 
not supported by my pc.  Running:   tb_polgen --create --type nonfatal vl.pol  
tb_polgen --add --num 0 --hash image --cmdlin "kernel cmdline" --image 
"kernel image" vl.pol  tb_polgen --verbose --show vl.pol   clearly 
shows that "version: 2" policy was created.   Is there a way to create 
v1 Verified Launch control policy? I'm almost sure that I am missing 
something, maybe I should generate policy without using tb_polgen? Anyway is 
that means that there is an error in instructions given in 
"policy_v1.txt" or I just don't understand something correctly?   
Thank You in advance,  Michael Widlok
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
tboot-devel mailing list
tboot-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/tboot-devel

Reply via email to