On 12/13/18 19:55, Matthew Garrett wrote: > On Thu, Dec 13, 2018 at 01:36:09PM +0100, Laszlo Ersek wrote: > >> (2) EFI_TCG2_FINAL_EVENTS_TABLE is defined with TCG_PCR_EVENT2 entries >> *only*. TCG_PCR_EVENT is not accommodated. >> >> >> That's the contradiction. If a platform is unable to produce >> TCG_PCR_EVENT2 entries in GetEventLog(), it is fairly certainly also >> unable to produce them in the final events table. > > If a platform is unable to produce them in the final events table then > it's violating the spec.
The question is why it's made impossible to comply with the spec if the platform only supports the 1.2 format. > If the platform only offers the 1.2 log format > then it seems reasonable to expect that the events in the final events > table would only contain a SHA1, but a TCG_PCR_EVENT2 structure that > only contains SHA1s isn't significantly more complicated than an old > style event. > OK... I guess that can be a valid interpretation. Would you please file a TianoCore BZ ticket about it, as a feature request? - URL: https://bugzilla.tianocore.org - Product: Tianocore Feature Requests - Component: Code - Package: SecurityPkg (I'm assuming this isn't a regression, i.e., it's not the case that the feature used to work, but commit fd46e831bc33 regressed it.) Thanks, Laszlo _______________________________________________ edk2-devel mailing list [email protected] https://lists.01.org/mailman/listinfo/edk2-devel

