Jason Gunthorpe <[email protected]> wrote on 01/19/2016
12:44:00 PM:
>
> On Thu, Jan 14, 2016 at 11:01:54AM -0500, Stefan Berger wrote:
>
> > The primary goal of this series of patches is enabling vTPM for
containers
> > and hooking them up to a (future) namespaced IMA. However, the driver
can
> > also be used for simulating a hardware TPM on the host.
>
> If we go down the road of doing the kernel-side tpm resource
> management this series seems like a kludgy way to enable tpm
> namespaces? A future resource manager could be name space aware and
> keep everything sane.
This series has absolutely nothing to do with resource management.
Resource management in the kernel would be completely orthogonal to this
series here. Presumably one would do independent resource management per
client TPM device, so hook your resource management to the per client
tpm_chip structure. That way you can have an unlimited number of clients
with independent resource management related to the TPM/vTPM they are
using.
Stefan
------------------------------------------------------------------------------
Site24x7 APM Insight: Get Deep Visibility into Application Performance
APM + Mobile APM + RUM: Monitor 3 App instances at just $35/Month
Monitor end-to-end web transactions and take corrective actions now
Troubleshoot faster and improve end-user experience. Signup Now!
http://pubads.g.doubleclick.net/gampad/clk?id=267308311&iu=/4140
_______________________________________________
tpmdd-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/tpmdd-devel