[PATCH v4 06/11] security: keys: trusted: Verify creation data

Kees Cook keescook at chromium.org
Fri Nov 4 18:35:28 UTC 2022


On Thu, Nov 03, 2022 at 11:01:14AM -0700, Evan Green wrote:
> If a loaded key contains creation data, ask the TPM to verify that
> creation data. This allows users like encrypted hibernate to know that
> the loaded and parsed creation data has not been tampered with.
> 
> Suggested-by: Matthew Garrett <mjg59 at google.com>
> Signed-off-by: Evan Green <evgreen at chromium.org>

Reviewed-by: Kees Cook <keescook at chromium.org>

-- 
Kees Cook



More information about the Linux-security-module-archive mailing list