From: "Michael D Kinney" <michael.d.kinney@intel.com>
To: "devel@edk2.groups.io" <devel@edk2.groups.io>,
"Yao, Jiewen" <jiewen.yao@intel.com>,
"mikuback@linux.microsoft.com" <mikuback@linux.microsoft.com>,
"Kinney, Michael D" <michael.d.kinney@intel.com>
Cc: "Chiu, Chasel" <chasel.chiu@intel.com>,
"Desimone, Nathaniel L" <nathaniel.l.desimone@intel.com>,
Liming Gao <gaoliming@byosoft.com.cn>,
"Dong, Eric" <eric.dong@intel.com>,
Jeremiah Cox <jerecox@microsoft.com>
Subject: Re: [edk2-devel] [edk2-platforms][PATCH v2 0/4] MinPlatformPkg: Add TPM platform hier disable support
Date: Thu, 15 Jul 2021 03:35:06 +0000 [thread overview]
Message-ID: <CO1PR11MB4929F05A9DEBAE03F9D3EDAFD2129@CO1PR11MB4929.namprd11.prod.outlook.com> (raw)
In-Reply-To: <CO1PR11MB4929CB3E772230D1421539CED2129@CO1PR11MB4929.namprd11.prod.outlook.com>
pushed:
e235a2ee42..bfabeef4c9
Mike
> -----Original Message-----
> From: Kinney, Michael D <michael.d.kinney@intel.com>
> Sent: Wednesday, July 14, 2021 8:28 PM
> To: devel@edk2.groups.io; Yao, Jiewen <jiewen.yao@intel.com>; mikuback@linux.microsoft.com; Kinney, Michael D
> <michael.d.kinney@intel.com>
> Cc: Chiu, Chasel <chasel.chiu@intel.com>; Desimone, Nathaniel L <nathaniel.l.desimone@intel.com>; Liming Gao
> <gaoliming@byosoft.com.cn>; Dong, Eric <eric.dong@intel.com>; Jeremiah Cox <jerecox@microsoft.com>
> Subject: RE: [edk2-devel] [edk2-platforms][PATCH v2 0/4] MinPlatformPkg: Add TPM platform hier disable support
>
> Acked-by: Michael D Kinney <michael.d.kinney@intel.com>
>
>
> > -----Original Message-----
> > From: devel@edk2.groups.io <devel@edk2.groups.io> On Behalf Of Yao, Jiewen
> > Sent: Wednesday, July 14, 2021 8:14 PM
> > To: devel@edk2.groups.io; Yao, Jiewen <jiewen.yao@intel.com>; mikuback@linux.microsoft.com
> > Cc: Chiu, Chasel <chasel.chiu@intel.com>; Desimone, Nathaniel L <nathaniel.l.desimone@intel.com>; Liming Gao
> > <gaoliming@byosoft.com.cn>; Dong, Eric <eric.dong@intel.com>; Jeremiah Cox <jerecox@microsoft.com>; Yao, Jiewen
> > <jiewen.yao@intel.com>
> > Subject: Re: [edk2-devel] [edk2-platforms][PATCH v2 0/4] MinPlatformPkg: Add TPM platform hier disable support
> >
> > Reviewed-by: Jiewen Yao <Jiewen.yao@intel.com>
> >
> > > -----Original Message-----
> > > From: devel@edk2.groups.io <devel@edk2.groups.io> On Behalf Of Yao, Jiewen
> > > Sent: Wednesday, June 16, 2021 8:41 AM
> > > To: devel@edk2.groups.io; mikuback@linux.microsoft.com
> > > Cc: Chiu, Chasel <chasel.chiu@intel.com>; Desimone, Nathaniel L
> > > <nathaniel.l.desimone@intel.com>; Liming Gao <gaoliming@byosoft.com.cn>;
> > > Dong, Eric <eric.dong@intel.com>; Jeremiah Cox <jerecox@microsoft.com>
> > > Subject: Re: [edk2-devel] [edk2-platforms][PATCH v2 0/4] MinPlatformPkg: Add
> > > TPM platform hier disable support
> > >
> > > Thank you, Michael.
> > >
> > > Acked-by: Jiewen Yao <Jiewen.yao@intel.com>
> > >
> > >
> > > > -----Original Message-----
> > > > From: devel@edk2.groups.io <devel@edk2.groups.io> On Behalf Of Michael
> > > > Kubacki
> > > > Sent: Wednesday, June 16, 2021 4:57 AM
> > > > To: devel@edk2.groups.io
> > > > Cc: Chiu, Chasel <chasel.chiu@intel.com>; Desimone, Nathaniel L
> > > > <nathaniel.l.desimone@intel.com>; Liming Gao <gaoliming@byosoft.com.cn>;
> > > > Dong, Eric <eric.dong@intel.com>; Yao, Jiewen <jiewen.yao@intel.com>;
> > > > Jeremiah Cox <jerecox@microsoft.com>
> > > > Subject: Re: [edk2-devel] [edk2-platforms][PATCH v2 0/4] MinPlatformPkg:
> > > Add
> > > > TPM platform hier disable support
> > > >
> > > > It's been a week and I haven't seen any feedback. Please review when
> > > > possible.
> > > >
> > > > Thanks,
> > > > Michael
> > > >
> > > > On 6/7/2021 12:05 PM, Michael Kubacki wrote:
> > > > > From: Michael Kubacki <michael.kubacki@microsoft.com>
> > > > >
> > > > > REF:https://bugzilla.tianocore.org/show_bug.cgi?id=3411
> > > > >
> > > > > This patch series adds support in TpmPlatformHierarchyLib to either
> > > > > randomize the platform auth (current behavior) or disable the
> > > > > platform auth (new behavior) based on a new PCD introduced to
> > > > > MinPlatformPkg: PcdRandomizePlatformHierarchy.
> > > > >
> > > > > Some platforms that would like to adopt MinPlatformPkg prefer to
> > > > > disable the platform hierarchy as opposed to the randomization
> > > > > approach.
> > > > >
> > > > > Minor changes are included to eliminate code duplication in impacted
> > > > > code.
> > > > >
> > > > > V2 changes:
> > > > > 1. Update code that randomizes the platform auth in Tcg2PlatformPei
> > > > > to use the TpmPlatformHierarchyLib interface for platform
> > > > > hierarchy configuration.
> > > > > 2. Remove pre-existing redundant code in Tcg2PlatformPei.
> > > > > 3. Add a PCD to allow the platform integrator to choose how to
> > > > > configure the TPM platform hierarchy.
> > > > >
> > > > > Cc: Chasel Chiu <chasel.chiu@intel.com>
> > > > > Cc: Nate DeSimone <nathaniel.l.desimone@intel.com>
> > > > > Cc: Liming Gao <gaoliming@byosoft.com.cn>
> > > > > Cc: Eric Dong <eric.dong@intel.com>
> > > > > Cc: Jiewen Yao <jiewen.yao@intel.com>
> > > > > Cc: Jeremiah Cox <jerecox@microsoft.com>
> > > > > Signed-off-by: Michael Kubacki <michael.kubacki@microsoft.com>
> > > > >
> > > > > Michael Kubacki (4):
> > > > > MinPlatformPkg: Add TpmPlatformHierarchyLib to Components in DSC
> > > > > MinPlatformPkg/TpmPlatformHierarchyLib: Add PEI support
> > > > > MinPlatformPkg/Tcg2PlatformPei: Use TpmPlatformHierarchyLib
> > > > > MinPlatformPkg/TpmPlatformHierarchyLib: Add disable support
> > > > >
> > > > >
> > > >
> > > Platform/Intel/MinPlatformPkg/Tcg/Library/{TpmPlatformHierarchyLib/TpmPlat
> > > > formHierarchyLib.c =>
> > > > PeiDxeTpmPlatformHierarchyLib/PeiDxeTpmPlatformHierarchyLib.c} | 72
> > > > +++++++++--
> > > > > Platform/Intel/MinPlatformPkg/Tcg/Tcg2PlatformPei/Tcg2PlatformPei.c
> > > > | 130 +-------------------
> > > > > Platform/Intel/MinPlatformPkg/Include/Library/TpmPlatformHierarchyLib.h
> > > > | 4 +-
> > > > > Platform/Intel/MinPlatformPkg/MinPlatformPkg.dec
> > > > | 1 +
> > > > > Platform/Intel/MinPlatformPkg/MinPlatformPkg.dsc
> > > > | 4 +-
> > > > >
> > > >
> > > Platform/Intel/MinPlatformPkg/Tcg/Library/{TpmPlatformHierarchyLib/TpmPlat
> > > > formHierarchyLib.inf =>
> > > > PeiDxeTpmPlatformHierarchyLib/PeiDxeTpmPlatformHierarchyLib.inf} | 22
> > > ++--
> > > > > Platform/Intel/MinPlatformPkg/Tcg/Tcg2PlatformPei/Tcg2PlatformPei.inf
> > > > | 2 +
> > > > > 7 files changed, 85 insertions(+), 150 deletions(-)
> > > > > rename
> > > >
> > > Platform/Intel/MinPlatformPkg/Tcg/Library/{TpmPlatformHierarchyLib/TpmPlat
> > > > formHierarchyLib.c =>
> > > > PeiDxeTpmPlatformHierarchyLib/PeiDxeTpmPlatformHierarchyLib.c} (70%)
> > > > > rename
> > > >
> > > Platform/Intel/MinPlatformPkg/Tcg/Library/{TpmPlatformHierarchyLib/TpmPlat
> > > > formHierarchyLib.inf =>
> > > > PeiDxeTpmPlatformHierarchyLib/PeiDxeTpmPlatformHierarchyLib.inf} (66%)
> > > > >
> > > >
> > > >
> > > >
> > > >
> > >
> > >
> > >
> > >
> > >
> >
> >
> >
> >
> >
prev parent reply other threads:[~2021-07-15 3:35 UTC|newest]
Thread overview: 6+ messages / expand[flat|nested] mbox.gz Atom feed top
[not found] <1686586931DF02F0.1698@groups.io>
2021-06-15 20:57 ` [edk2-devel] [edk2-platforms][PATCH v2 0/4] MinPlatformPkg: Add TPM platform hier disable support Michael Kubacki
2021-06-16 0:41 ` Yao, Jiewen
2021-06-17 23:30 ` Michael Kubacki
[not found] ` <1688E931E41361AA.19105@groups.io>
2021-07-15 3:14 ` Yao, Jiewen
2021-07-15 3:28 ` Michael D Kinney
2021-07-15 3:35 ` Michael D Kinney [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-list from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=CO1PR11MB4929F05A9DEBAE03F9D3EDAFD2129@CO1PR11MB4929.namprd11.prod.outlook.com \
--to=devel@edk2.groups.io \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox