[Bug 1971000] [NEW] EC keys do not provide OSSL_PKEY_PARAM_MANDATORY_DIGEST

2022-04-29 Thread Jim Sievert
Public bug reported: $ lsb_release -rd Description: Ubuntu 22.04 LTS Release: 22.04 $ apt-cache policy tpm2-openssl tpm2-openssl: Installed: 1.0.1-1 Candidate: 1.0.1-1 Version table: *** 1.0.1-1 500 500 http://archive.ubuntu.com/ubuntu jammy/universe amd64 Packages 100

[Bug 1970999] [NEW] Cannot load certificate stored in NVM

2022-04-29 Thread Jim Sievert
Public bug reported: $ lsb_release -rd Description:Ubuntu 22.04 LTS Release:22.04 $ apt-cache policy tpm2-openssl tpm2-openssl: Installed: 1.0.1-1 Candidate: 1.0.1-1 Version table: *** 1.0.1-1 500 500 http://archive.ubuntu.com/ubuntu jammy/universe amd64 Packages

[Bug 1962549] [NEW] openssl cms -decrypt doesn't work properly when using an engine

2022-03-01 Thread Jim Sievert
Public bug reported: I'm using: bsci@ip-10-132-42-225:~/test$ lsb_release -rd Description:Ubuntu 20.04.3 LTS Release:20.04 bsci@ip-10-132-42-225:~/test$ apt-cache policy openssl openssl: Installed: 1.1.1f-1ubuntu2.10 Candidate: 1.1.1f-1ubuntu2.10 Version table: ***

[Bug 1951314] Re: [BPO] Please backport tpm2-tss-engine 1.1.0-2 (universe) from jammy

2021-12-07 Thread Jim Sievert
Having this functionality in Focal would be an asset to our organization too. We maintain a local compilation of a different OpenSSL TPM engine. Having _any_ OpenSSL TPM engine as part of Focal would eliminate the use of this local build and maintenance. -- You received this bug notification

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-29 Thread Jim Sievert
On my Focal ipsec client machine, I added the following PPA: deb http://archive.ubuntu.com/ubuntu/ focal-proposed restricted main multiverse universe I installed various strongswan packages: charon-systemd/focal-proposed,now 5.8.2-1ubuntu3.2 amd64 [installed]

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-21 Thread Jim Sievert
Hi Paride, I added your Focal PPA and installed the various strongswan packages on my client machine: strongswan, strongswan-swanctl, libstrongswan-extra- plugins, libstrongswan-standard-plugins, and strongswan-pki. I am able to confirm the ability to read TPM nvram keys and certificates

[Bug 1940079] Re: Strongswan doesn't support TPM 2.0 through the TSS2 interface

2021-09-17 Thread Jim Sievert
Paride, Thank you for all your diligence. I will try to provide focal testing results by early next week. Jim -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1940079 Title: Strongswan doesn't

[Bug 1940079] Re: Strongswan in Focal doesn't support TPM 2.0 through the TSS2 interface...

2021-08-19 Thread Jim Sievert
I need to jump into this one... Right now, a number of our projects are dependent on the Focal LTS release. These projects cannot wait for 22.04 as they will go to market over the course of the next several months. These same projects make heavy use of TPM 2.0. They do use the TSS 2.0

[Bug 1940079] Re: Strongswan in Focal doesn't support TPM 2.0 through TSS2 interface...

2021-08-16 Thread Jim Sievert
** Summary changed: - Strongswan in Focal doesn't support TPM 2.0... + Strongswan in Focal doesn't support TPM 2.0 through TSS2 interface... ** Description changed: The Strongswan 5.8.2 (5.8.2-1ubuntu3) for Focal configuration elides the - --enable-tss-tss2 option. Without this option, TPM

[Bug 1940079] [NEW] Strongswan in Focal doesn't support TPM 2.0...

2021-08-16 Thread Jim Sievert
Public bug reported: The Strongswan 5.8.2 (5.8.2-1ubuntu3) for Focal configuration elides the --enable-tss-tss2 option. Without this option, TPM 2.0 is effectively unavailable. ** Affects: strongswan (Ubuntu) Importance: Undecided Status: New -- You received this bug