From: Osborn, J. D. <Jus...@jh...> - 2006-09-07 18:18:20
|
Hi everybody, After minimum success with our Dell Optiplex, we bought a Lenovo = ThinkCentre M52. tpm_tis module seems to work (actually it hangs the = first time I run it, it gives send errors, and then if I modprobe again = it works). I installed Trusted GRUB and that seems to be stopping to = hash itself as well as the kernel and initrd (which I configured it to = do in grub.conf). =20 However, once booted, cat /sys/class/misc/tpm0/device/pcrs shows PCRs 8 = and after cleared. Mounting /sys/kernel/security and catting the bios = measurements shows logs of it trying to extend PCR 8 and 9 (I have = grub.conf set to measure the kernel in 8 and the initrd in 9). But PCR = 8 and 9 are still cleared...what's up with that? =20 Here's my PCR output: PCR-00: 2A 0C 5E 27 0C 80 D6 E0 74 A8 8D F9 57 57 9F FE 21 F0 8F 69=20 PCR-01: 8F 20 D8 EE 18 2C 7B 86 54 0B 95 F2 A7 6B 78 92 B0 A9 59 B7=20 PCR-02: 06 93 39 2E 69 12 2E F4 03 AB D1 B7 C7 59 5E 5A A1 3B 71 B0=20 PCR-03: 3A 3F 78 0F 11 A4 B4 99 69 FC AA 80 CD 6E 39 57 C3 3B 22 75=20 PCR-04: C5 87 17 F4 14 30 C3 2A 86 27 24 9E EA C8 C3 DF 4A 4D AC 19=20 PCR-05: 66 17 84 80 BF 53 A1 87 C1 43 EF 81 60 81 34 9F D9 C4 94 88=20 PCR-06: 90 C0 EC 50 5F 4E 65 CD C0 1A 6F 53 45 D4 6A D4 BA 53 B2 90=20 PCR-07: 3A 3F 78 0F 11 A4 B4 99 69 FC AA 80 CD 6E 39 57 C3 3B 22 75=20 PCR-08: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-09: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-10: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-11: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-12: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-13: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-14: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-15: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-16: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 PCR-17: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 PCR-18: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 PCR-19: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 PCR-20: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 PCR-21: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 PCR-22: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 PCR-23: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 And here's my ascii_bios_measurements output: 0 80f1c38c1f1935c3f97c06b10d86bf50914cfc1a 08 [S-CRTM Version] 0 e2c695a3d83f30f0387fcd0d93477f00118d3db4 01 [POST CODE] 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] 0 df22cabc0e09aabf938bcb8ff76853dbcaae670d 01 [POST CODE] 0 4f245549cea327f52f57ff500e96bc70fc22f3ba 01 [POST CODE] 0 38dd128dc93ff91df1291a1c9008dcf251a0ef39 01 [POST CODE] 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] 0 e9c5d7db93a1c17d45c5820daf458224bfa7a725 01 [POST CODE] 0 d1912951d8ead30b934a51b92a75685d4b77b725 01 [POST CODE] 0 503045c7d4e235b4255e97c10148635c69f78e90 01 [POST CODE] 0 7b5cd30b9ff047136477bb5d1d44b254e4635e2e 01 [POST CODE] 0 a88986a4da361a5071a6cd12a1a4600444bcea93 01 [POST CODE] 0 ea3faca69391440d2994f1168cd6513f71e860fe 01 [POST CODE] 0 0986d60ef3e7a856300f747df75ac603bf3cf43f 01 [POST CODE] 0 398ba446d59f564d6c2d561fbd522945f575882e 01 [POST CODE] 0 7c9fb607be0a3cb51d99a9873301fe4a3747185c 01 [POST CODE] 0 ec8367254d56803abd1162ec94df3a109237ef8f 01 [POST CODE] 0 a4528a2d7be639f2bf82d304432e1dca9c7aa1c1 01 [POST CODE] 0 0aa51c0df5cbce5c799dec50f9ca7b255f0e3beb 01 [POST CODE] 0 658828affa2be295242acfac1a548ebcea6ae926 01 [POST CODE] 0 b37889b9568eb5761482001f9636879c1b24df0d 01 [POST CODE] 0 6854574af9e51f029ad264c5ec022990caea09d8 01 [POST CODE] 0 df9d6b3a2875939f03666f2ed4fe6d587c65fa31 01 [POST CODE] 0 df2a8fb50180b6404a35fdebaa650637979bee18 01 [POST CODE] 0 dc483095023035fe815dca0a740363d0fe536e1a 01 [POST CODE] 0 e95d2e6b13c56de79fa935bce766a43880808372 01 [POST CODE] 0 47dd7c3e99df17b6134c14dafdb7fa71e15d8eef 01 [POST CODE] 0 c6af402714759ca5360040ee8a7db6ab49d0f190 01 [POST CODE] 0 ebd613987d7b19ed81b4ed615c50f7aeeb66ec27 01 [POST CODE] 0 004e8fca8ddff54ccc0bd6e5f77477a8faee5c16 01 [POST CODE] 0 1c6597b5a8fb64f2b0a5c87b81f13a442ca4f249 01 [POST CODE] 0 27fdb98241e290e8ebdeb6fdeb5f21a5f4d540e3 01 [POST CODE] 0 af7083bddcf9d7ca678f2f38cc51565ebf2987f5 01 [POST CODE] 0 51ad68d5ea2cecbdc72cb2dca10df929ebb02b61 01 [POST CODE] 0 8ccbd8c3d42358192f5c336693d11cadd5636daa 01 [POST CODE] 0 0ecf162e5a8f5f203ea285a2f033f9dd168a9f44 01 [POST CODE] 0 15bd5c51d294535f14fca657ddfc0af84ba62230 01 [POST CODE] 0 3735f04718933252c2946544f972bf545fee7430 01 [POST CODE] 0 b5a0157c60625151a2806283d16a6b2451476e39 01 [POST CODE] 0 8abb19ebf3e727f9dc6cddaec9775179f5dae69c 01 [POST CODE] 0 8abb19ebf3e727f9dc6cddaec9775179f5dae69c 01 [POST CODE] 0 7c645901fe2ee4921995ab499374f8f6d3843204 01 [POST CODE] 0 7cb8ff6bb5bacfd2c72852ba3d5f0a429283cd0c 01 [POST CODE] 2 7d807a1f4e2aff6f8de553cec81efb03699f6531 09 [CPU Microcode] 2 7d807a1f4e2aff6f8de553cec81efb03699f6531 09 [CPU Microcode] 2 e79e468b1921b2293a80c5917efa6a45c379e810 05 [START OPTION ROM SCAN] 1 7616be230eafa431152b5d486936766f72ea67d0 0a [Platform Config Flags] 1 530f35734bbc377ff797bd6824e6a46330846f23 06 [POST BIOS = 5633f1d7cc933182525a9b6c90d62a685aac312c] 1 fb234e84072b3509041974ce53f8319d75e9e5e3 06 [ESCD = e2ed9767f80a8e173221f0216d6fb856cc147782] 1 9c12c078939fac9c5130a5294856710a831760d8 06 [CMOS] 1 987c9884ab5a2312a3d0c658315dcc89dab89fe3 06 [SMBIOS] 6 d47a1e51f00f46ca173753e715f1f6f3f6c9230d 05 [WAKE EVENT 6] 0 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 1 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 2 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 3 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 4 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 5 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 6 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 7 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=FF=FF=FF=FF] 4 c1e25c3f6b0dc78d57296aa2870ca6f782ccf80f 05 [Calling INT 19h] 4 38f30a0a967fcf2bfee1e3b2971de540115048c8 05 [Returned INT 19h] 4 212ba8fde215955b4ed992538900e6b4ca1bd470 05 [Booting BCV Device 00h] 4 946f78edc9a4c8ad1540d4861c4a3690aa096b42 05 [Booting BCV Device 80h] 4 c40d9d251384f2cc5cf552bfec5cc624271efc78 0d [IPL] 5 55354832e8a1299441c6be3620e2335681f513fa 0e [IPL Partition Data] 4 594254f588d95bb1bde243d8b096520df98b7ddb 01 [POST CODE] 4 70458082bdee8007b03b8a4ca4ff63529b1a7aec 01 [POST CODE] 4 f7dd883645b945ad3acf2e8aaba353018905b120 01 [POST CODE] 5 047a9e20ea5d65dc2119c97ad4f861f45ced0628 01 [POST CODE] 8 30cd06f46206fac6e0b4228983f8b60d9b55ed23 01 [POST CODE] 9 f4c4a32d8e6593011d25ba8e5df4c931802712af 01 [POST CODE] =20 Thanks, Justin |
From: Kylene Jo H. <kj...@us...> - 2006-09-07 18:51:11
|
On Thu, 2006-09-07 at 14:18 -0400, Osborn, Justin D. wrote: > Hi everybody, > After minimum success with our Dell Optiplex, we bought a > Lenovo ThinkCentre M52. tpm_tis module seems to work (actually it > hangs the first time I run it, it gives send errors, and then if I > modprobe again it works). =20 Does the driver actually not work after the first modprobe or do you just see errors in the log from attempting to find a working irq? > I installed Trusted GRUB and that seems to be stopping to hash itself > as well as the kernel and initrd (which I configured it to do in > grub.conf). > =20 > However, once booted, cat /sys/class/misc/tpm0/device/pcrs shows PCRs > 8 and after cleared. Mounting /sys/kernel/security and catting the > bios measurements shows logs of it trying to extend PCR 8 and 9 (I > have grub.conf set to measure the kernel in 8 and the initrd in 9). > But PCR 8 and 9 are still cleared...what's up with that? > =20 Justin- Can you provide the relevant lines from your grub.conf? Seiji- Can you comment on this? > Here's my PCR output: > PCR-00: 2A 0C 5E 27 0C 80 D6 E0 74 A8 8D F9 57 57 9F FE 21 F0 8F 69=20 > PCR-01: 8F 20 D8 EE 18 2C 7B 86 54 0B 95 F2 A7 6B 78 92 B0 A9 59 B7=20 > PCR-02: 06 93 39 2E 69 12 2E F4 03 AB D1 B7 C7 59 5E 5A A1 3B 71 B0=20 > PCR-03: 3A 3F 78 0F 11 A4 B4 99 69 FC AA 80 CD 6E 39 57 C3 3B 22 75=20 > PCR-04: C5 87 17 F4 14 30 C3 2A 86 27 24 9E EA C8 C3 DF 4A 4D AC 19=20 > PCR-05: 66 17 84 80 BF 53 A1 87 C1 43 EF 81 60 81 34 9F D9 C4 94 88=20 > PCR-06: 90 C0 EC 50 5F 4E 65 CD C0 1A 6F 53 45 D4 6A D4 BA 53 B2 90=20 > PCR-07: 3A 3F 78 0F 11 A4 B4 99 69 FC AA 80 CD 6E 39 57 C3 3B 22 75=20 > PCR-08: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-09: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-10: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-11: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-12: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-13: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-14: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-15: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-16: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 > PCR-17: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 > PCR-18: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 > PCR-19: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 > PCR-20: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 > PCR-21: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 > PCR-22: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF=20 > PCR-23: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00=20 >=20 > And here's my ascii_bios_measurements output: > 0 80f1c38c1f1935c3f97c06b10d86bf50914cfc1a 08 [S-CRTM Version] > 0 e2c695a3d83f30f0387fcd0d93477f00118d3db4 01 [POST CODE] > 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] > 0 df22cabc0e09aabf938bcb8ff76853dbcaae670d 01 [POST CODE] > 0 4f245549cea327f52f57ff500e96bc70fc22f3ba 01 [POST CODE] > 0 38dd128dc93ff91df1291a1c9008dcf251a0ef39 01 [POST CODE] > 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] > 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] > 0 9a57305b1d7b256cc164e42492edbfb754e021de 01 [POST CODE] > 0 e9c5d7db93a1c17d45c5820daf458224bfa7a725 01 [POST CODE] > 0 d1912951d8ead30b934a51b92a75685d4b77b725 01 [POST CODE] > 0 503045c7d4e235b4255e97c10148635c69f78e90 01 [POST CODE] > 0 7b5cd30b9ff047136477bb5d1d44b254e4635e2e 01 [POST CODE] > 0 a88986a4da361a5071a6cd12a1a4600444bcea93 01 [POST CODE] > 0 ea3faca69391440d2994f1168cd6513f71e860fe 01 [POST CODE] > 0 0986d60ef3e7a856300f747df75ac603bf3cf43f 01 [POST CODE] > 0 398ba446d59f564d6c2d561fbd522945f575882e 01 [POST CODE] > 0 7c9fb607be0a3cb51d99a9873301fe4a3747185c 01 [POST CODE] > 0 ec8367254d56803abd1162ec94df3a109237ef8f 01 [POST CODE] > 0 a4528a2d7be639f2bf82d304432e1dca9c7aa1c1 01 [POST CODE] > 0 0aa51c0df5cbce5c799dec50f9ca7b255f0e3beb 01 [POST CODE] > 0 658828affa2be295242acfac1a548ebcea6ae926 01 [POST CODE] > 0 b37889b9568eb5761482001f9636879c1b24df0d 01 [POST CODE] > 0 6854574af9e51f029ad264c5ec022990caea09d8 01 [POST CODE] > 0 df9d6b3a2875939f03666f2ed4fe6d587c65fa31 01 [POST CODE] > 0 df2a8fb50180b6404a35fdebaa650637979bee18 01 [POST CODE] > 0 dc483095023035fe815dca0a740363d0fe536e1a 01 [POST CODE] > 0 e95d2e6b13c56de79fa935bce766a43880808372 01 [POST CODE] > 0 47dd7c3e99df17b6134c14dafdb7fa71e15d8eef 01 [POST CODE] > 0 c6af402714759ca5360040ee8a7db6ab49d0f190 01 [POST CODE] > 0 ebd613987d7b19ed81b4ed615c50f7aeeb66ec27 01 [POST CODE] > 0 004e8fca8ddff54ccc0bd6e5f77477a8faee5c16 01 [POST CODE] > 0 1c6597b5a8fb64f2b0a5c87b81f13a442ca4f249 01 [POST CODE] > 0 27fdb98241e290e8ebdeb6fdeb5f21a5f4d540e3 01 [POST CODE] > 0 af7083bddcf9d7ca678f2f38cc51565ebf2987f5 01 [POST CODE] > 0 51ad68d5ea2cecbdc72cb2dca10df929ebb02b61 01 [POST CODE] > 0 8ccbd8c3d42358192f5c336693d11cadd5636daa 01 [POST CODE] > 0 0ecf162e5a8f5f203ea285a2f033f9dd168a9f44 01 [POST CODE] > 0 15bd5c51d294535f14fca657ddfc0af84ba62230 01 [POST CODE] > 0 3735f04718933252c2946544f972bf545fee7430 01 [POST CODE] > 0 b5a0157c60625151a2806283d16a6b2451476e39 01 [POST CODE] > 0 8abb19ebf3e727f9dc6cddaec9775179f5dae69c 01 [POST CODE] > 0 8abb19ebf3e727f9dc6cddaec9775179f5dae69c 01 [POST CODE] > 0 7c645901fe2ee4921995ab499374f8f6d3843204 01 [POST CODE] > 0 7cb8ff6bb5bacfd2c72852ba3d5f0a429283cd0c 01 [POST CODE] > 2 7d807a1f4e2aff6f8de553cec81efb03699f6531 09 [CPU Microcode] > 2 7d807a1f4e2aff6f8de553cec81efb03699f6531 09 [CPU Microcode] > 2 e79e468b1921b2293a80c5917efa6a45c379e810 05 [START OPTION ROM SCAN] > 1 7616be230eafa431152b5d486936766f72ea67d0 0a [Platform Config Flags] > 1 530f35734bbc377ff797bd6824e6a46330846f23 06 [POST BIOS > 5633f1d7cc933182525a9b6c90d62a685aac312c] > 1 fb234e84072b3509041974ce53f8319d75e9e5e3 06 [ESCD > e2ed9767f80a8e173221f0216d6fb856cc147782] > 1 9c12c078939fac9c5130a5294856710a831760d8 06 [CMOS] > 1 987c9884ab5a2312a3d0c658315dcc89dab89fe3 06 [SMBIOS] > 6 d47a1e51f00f46ca173753e715f1f6f3f6c9230d 05 [WAKE EVENT 6] > 0 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 1 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 2 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 3 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 4 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 5 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 6 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 7 d9be6524a5f5047db5866813acf3277892a7a30a 04 [=C3=BF=C3=BF=C3=BF=C3=BF= ] > 4 c1e25c3f6b0dc78d57296aa2870ca6f782ccf80f 05 [Calling INT 19h] > 4 38f30a0a967fcf2bfee1e3b2971de540115048c8 05 [Returned INT 19h] > 4 212ba8fde215955b4ed992538900e6b4ca1bd470 05 [Booting BCV Device > 00h] > 4 946f78edc9a4c8ad1540d4861c4a3690aa096b42 05 [Booting BCV Device > 80h] > 4 c40d9d251384f2cc5cf552bfec5cc624271efc78 0d [IPL] > 5 55354832e8a1299441c6be3620e2335681f513fa 0e [IPL Partition Data] > 4 594254f588d95bb1bde243d8b096520df98b7ddb 01 [POST CODE] > 4 70458082bdee8007b03b8a4ca4ff63529b1a7aec 01 [POST CODE] > 4 f7dd883645b945ad3acf2e8aaba353018905b120 01 [POST CODE] > 5 047a9e20ea5d65dc2119c97ad4f861f45ced0628 01 [POST CODE] > 8 30cd06f46206fac6e0b4228983f8b60d9b55ed23 01 [POST CODE] > 9 f4c4a32d8e6593011d25ba8e5df4c931802712af 01 [POST CODE] > =20 > Thanks, > Justin > -----------------------------------------------------------------------= -- > Using Tomcat but need to do more? Need to support web services, securit= y? > Get stuff done quickly with pre-integrated technology to make your job = easier > Download IBM WebSphere Application Server v.1.0.1 based on Apache Geron= imo > http://sel.as-us.falkag.net/sel?cmd=3Dlnk&kid=3D120709&bid=3D263057&dat= =3D121642 > _______________________________________________ TrouSerS-users mailing = list Tro...@li... https://lists.sourceforge.net/l= ists/listinfo/trousers-users |