Dear Members, I'm testing tboot on very old system (Lenovo t400) that
supports only v1 policy versions. After creating policy according to
"policy_v1.txt" I've got SINIT module error "unsupported policy
version". It seems that tb_polgen can create only v2 policy now and this is
not supported by my pc. Running: tb_polgen --create --type nonfatal vl.pol
tb_polgen --add --num 0 --hash image --cmdlin "kernel cmdline" --image
"kernel image" vl.pol tb_polgen --verbose --show vl.pol clearly
shows that "version: 2" policy was created. Is there a way to create
v1 Verified Launch control policy? I'm almost sure that I am missing
something, maybe I should generate policy without using tb_polgen? Anyway is
that means that there is an error in instructions given in
"policy_v1.txt" or I just don't understand something correctly?
Thank You in advance, Michael Widlok
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
tboot-devel mailing list
tboot-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/tboot-devel