fwupd/plugins/tpm-eventlog
Mario Limonciello b87d48a042 When TPM PCR0 measurements fail, query if secure boot is available and enabled
If the measurements are missing but it's a UEFI system, it's a good indication
that the user has secure boot turned off.
Notify the user on the UEFI device through a non-fatal `UpdateMessage`

To accomplish this, move fu-uefi-vars into the plugin library for other plugins to use
2020-03-05 07:54:15 -06:00
..
tests Add a new plugin that can parse the TPM event log 2019-12-06 15:05:16 +00:00
fu-plugin-tpm-eventlog.c When TPM PCR0 measurements fail, query if secure boot is available and enabled 2020-03-05 07:54:15 -06:00
fu-self-test.c tpm-eventlog: Replay the TPM event log to get the PCRx values 2020-02-04 11:54:27 +00:00
fu-tpm-eventlog-common.c tpm-eventlog: Replay the TPM event log to get the PCRx values 2020-02-04 11:54:27 +00:00
fu-tpm-eventlog-common.h tpm-eventlog: Replay the TPM event log to get the PCRx values 2020-02-04 11:54:27 +00:00
fu-tpm-eventlog-device.c tpm-eventlog: Replay the TPM event log to get the PCRx values 2020-02-04 11:54:27 +00:00
fu-tpm-eventlog-device.h tpm-eventlog: Replay the TPM event log to get the PCRx values 2020-02-04 11:54:27 +00:00
fu-tpm-eventlog-parser.c tpm-eventlog: Store the eventlog hashes in binary form 2020-02-04 11:54:27 +00:00
fu-tpm-eventlog-parser.h tpm-eventlog: Store the eventlog hashes in binary form 2020-02-04 11:54:27 +00:00
fu-tpm-eventlog.c Improve the description of fwupdtpmevlog for man page 2020-02-20 09:02:11 -06:00
meson.build trivial: add some better descriptions for man pages 2020-02-20 09:34:10 -06:00
README.md trivial: Document the use of vendor-id in each plugin 2019-12-11 18:10:44 +00:00

TPM Event Log Support

Introduction

The TPM Event Log records which events are registered for the PCR0 hash, which may help in explaining why PCR0 values are differing for some firmware.

The device exposed is not upgradable in any way and is just for debugging. The created device will be a child device of the system TPM device, which may or may not be upgradable.

Vendor ID Security

The device is not upgradable and thus requires no vendor ID set.