1 #ifndef __TRUSTED_KEY_H
2 #define __TRUSTED_KEY_H
4 /* implementation specific TPM constants */
5 #define MAX_PCRINFO_SIZE 64
6 #define MAX_BUF_SIZE 512
7 #define TPM_GETRANDOM_SIZE 14
8 #define TPM_OSAP_SIZE 36
9 #define TPM_OIAP_SIZE 10
10 #define TPM_SEAL_SIZE 87
11 #define TPM_UNSEAL_SIZE 104
12 #define TPM_SIZE_OFFSET 2
13 #define TPM_RETURN_OFFSET 6
14 #define TPM_DATA_OFFSET 10
16 #define LOAD32(buffer, offset) (ntohl(*(uint32_t *)&buffer[offset]))
17 #define LOAD32N(buffer, offset) (*(uint32_t *)&buffer[offset])
18 #define LOAD16(buffer, offset) (ntohs(*(uint16_t *)&buffer[offset]))
22 unsigned char data
[MAX_BUF_SIZE
];
25 #define INIT_BUF(tb) (tb->len = 0)
29 unsigned char secret
[SHA1_DIGEST_SIZE
];
30 unsigned char enonce
[TPM_NONCE_SIZE
];
33 /* discrete values, but have to store in uint16_t for TPM use */
39 struct trusted_key_options
{
42 unsigned char keyauth
[SHA1_DIGEST_SIZE
];
43 unsigned char blobauth
[SHA1_DIGEST_SIZE
];
45 unsigned char pcrinfo
[MAX_PCRINFO_SIZE
];
52 static inline void dump_options(struct trusted_key_options
*o
)
54 pr_info("trusted_key: sealing key type %d\n", o
->keytype
);
55 pr_info("trusted_key: sealing key handle %0X\n", o
->keyhandle
);
56 pr_info("trusted_key: pcrlock %d\n", o
->pcrlock
);
57 pr_info("trusted_key: pcrinfo %d\n", o
->pcrinfo_len
);
58 print_hex_dump(KERN_INFO
, "pcrinfo ", DUMP_PREFIX_NONE
,
59 16, 1, o
->pcrinfo
, o
->pcrinfo_len
, 0);
62 static inline void dump_payload(struct trusted_key_payload
*p
)
64 pr_info("trusted_key: key_len %d\n", p
->key_len
);
65 print_hex_dump(KERN_INFO
, "key ", DUMP_PREFIX_NONE
,
66 16, 1, p
->key
, p
->key_len
, 0);
67 pr_info("trusted_key: bloblen %d\n", p
->blob_len
);
68 print_hex_dump(KERN_INFO
, "blob ", DUMP_PREFIX_NONE
,
69 16, 1, p
->blob
, p
->blob_len
, 0);
70 pr_info("trusted_key: migratable %d\n", p
->migratable
);
73 static inline void dump_sess(struct osapsess
*s
)
75 print_hex_dump(KERN_INFO
, "trusted-key: handle ", DUMP_PREFIX_NONE
,
76 16, 1, &s
->handle
, 4, 0);
77 pr_info("trusted-key: secret:\n");
78 print_hex_dump(KERN_INFO
, "", DUMP_PREFIX_NONE
,
79 16, 1, &s
->secret
, SHA1_DIGEST_SIZE
, 0);
80 pr_info("trusted-key: enonce:\n");
81 print_hex_dump(KERN_INFO
, "", DUMP_PREFIX_NONE
,
82 16, 1, &s
->enonce
, SHA1_DIGEST_SIZE
, 0);
85 static inline void dump_tpm_buf(unsigned char *buf
)
89 pr_info("\ntrusted-key: tpm buffer\n");
90 len
= LOAD32(buf
, TPM_SIZE_OFFSET
);
91 print_hex_dump(KERN_INFO
, "", DUMP_PREFIX_NONE
, 16, 1, buf
, len
, 0);
94 static inline void dump_options(struct trusted_key_options
*o
)
98 static inline void dump_payload(struct trusted_key_payload
*p
)
102 static inline void dump_sess(struct osapsess
*s
)
106 static inline void dump_tpm_buf(unsigned char *buf
)
111 static inline void store8(struct tpm_buf
*buf
, const unsigned char value
)
113 buf
->data
[buf
->len
++] = value
;
116 static inline void store16(struct tpm_buf
*buf
, const uint16_t value
)
118 *(uint16_t *) & buf
->data
[buf
->len
] = htons(value
);
119 buf
->len
+= sizeof value
;
122 static inline void store32(struct tpm_buf
*buf
, const uint32_t value
)
124 *(uint32_t *) & buf
->data
[buf
->len
] = htonl(value
);
125 buf
->len
+= sizeof value
;
128 static inline void storebytes(struct tpm_buf
*buf
, const unsigned char *in
,
131 memcpy(buf
->data
+ buf
->len
, in
, len
);