Re: [Qemu-devel] [PATCH v4] hw/misc: Add simple measurement hardware

2016-09-30 Thread Paolo Bonzini
On 30/09/2016 12:45, Dr. David Alan Gilbert wrote: >> > >> > This version of the implementation depends on port io, but if there's >> > interest I'll add mmio as well. > Other than a couple of nits I'll mention below (and Stefan's comment) > I don't see why we shouldn't have this; although

Re: [Qemu-devel] [PATCH v4] hw/misc: Add simple measurement hardware

2016-09-30 Thread Dr. David Alan Gilbert
* Matthew Garrett (mj...@coreos.com) wrote: > Trusted Boot is based around having a trusted store of measurement data and > a secure communications channel between that store and an attestation > target. In actual hardware, that's a TPM. Since the TPM can only be accessed > via the host system,

Re: [Qemu-devel] [PATCH v4] hw/misc: Add simple measurement hardware

2016-09-11 Thread Stefan Berger
Matthew Garrett wrote on 08/17/2016 03:48:52 PM: > From: Matthew Garrett > To: qemu-devel@nongnu.org > Cc: dgilb...@redhat.com, berra...@redhat.com, Stefan Berger/Watson/ > IBM@IBMUS, Matthew Garrett > Date: 08/17/2016 03:49 PM > Subject:

[Qemu-devel] [PATCH v4] hw/misc: Add simple measurement hardware

2016-08-17 Thread Matthew Garrett
Trusted Boot is based around having a trusted store of measurement data and a secure communications channel between that store and an attestation target. In actual hardware, that's a TPM. Since the TPM can only be accessed via the host system, this in turn requires that the TPM be able to perform