[PATCH 1/3] tpm: Disable TCG_TPM2_HMAC by default

James Bottomley James.Bottomley at HansenPartnership.com
Tue May 21 12:33:14 UTC 2024


On Tue, 2024-05-21 at 10:10 +0300, Jarkko Sakkinen wrote:
> This benchmark could be done in user space using /dev/tpm0.

Let's actually try that.  If you have the ibmtss installed, the command
to time primary key generation from userspace on your tpm is

time tsscreateprimary -hi n -ecc nistp256


And just for chuckles and grins, try it in the owner hierarchy as well
(sometimes slow TPMs cache this)

time tsscreateprimary -hi o -ecc nistp256

And if you have tpm2 tools, the above commands should be:

time tpm2_createprimary -C n -G ecc256
time tpm2_createprimary -C o -G ecc256

James





More information about the Linux-security-module-archive mailing list