#!/bin/bash # For the license, see the LICENSE file in the root directory. #set -x ROOT=${abs_top_builddir:-$(pwd)/..} TESTDIR=${abs_top_testdir:-$(dirname "$0")} VTPM_NAME="vtpm-test-locality" SWTPM_DEV_NAME="/dev/${VTPM_NAME}" export TPM_PATH=$(mktemp -d) STATE_FILE=$TPM_PATH/tpm-00.permall VOLATILE_STATE_FILE=$TPM_PATH/tpm-00.volatilestate SWTPM_CMD_UNIX_PATH=${TPM_PATH}/unix-cmd.sock SWTPM_CTRL_UNIX_PATH=${TPM_PATH}/unix-ctrl.sock SWTPM_INTERFACE=${SWTPM_INTERFACE:-cuse} function cleanup() { pid=${SWTPM_PID} if [ -n "$pid" ]; then kill -9 $pid fi rm -rf $TPM_PATH } trap "cleanup" EXIT [ "${SWTPM_INTERFACE}" == cuse ] && source ${TESTDIR}/test_cuse source ${TESTDIR}/common rm -f $STATE_FILE $VOLATILE_STATE_FILE 2>/dev/null run_swtpm ${SWTPM_INTERFACE} ps aux | grep $SWTPM | grep -v grep kill -0 ${SWTPM_PID} if [ $? -ne 0 ]; then echo "Error: ${SWTPM_INTERFACE} TPM did not start." exit 1 fi # Init the TPM run_swtpm_ioctl ${SWTPM_INTERFACE} -i if [ $? -ne 0 ]; then echo "Error: Could not initialize the ${SWTPM_INTERFACE} TPM." exit 1 fi kill -0 ${SWTPM_PID} 2>/dev/null if [ $? -ne 0 ]; then echo "Error: ${SWTPM_INTERFACE} TPM not running anymore after INIT." exit 1 fi # Set locality 4 on the TPM run_swtpm_ioctl ${SWTPM_INTERFACE} -l 4 if [ $? -ne 0 ]; then echo "Error: ${SWTPM_INTERFACE} TPM did not accept locality 4." exit 1 fi # Set illegal locality 5 on the TPM run_swtpm_ioctl ${SWTPM_INTERFACE} -l 5 if [ $? -eq 0 ]; then echo "Error: ${SWTPM_INTERFACE} TPM accepted locality 5." exit 1 fi # Set locality 0 on the TPM run_swtpm_ioctl ${SWTPM_INTERFACE} -l 0 if [ $? -ne 0 ]; then echo "Error: ${SWTPM_INTERFACE} TPM did not accept locality 0." exit 1 fi # In locality 2 we can reset PCR 20 run_swtpm_ioctl ${SWTPM_INTERFACE} -l 2 if [ $? -ne 0 ]; then echo "Error: ${SWTPM_INTERFACE} TPM did not accept locality 2." exit 1 fi # Startup the TPM swtpm_open_cmddev ${SWTPM_INTERFACE} 100 RES=$(swtpm_cmd_tx ${SWTPM_INTERFACE} '\x00\xC1\x00\x00\x00\x0C\x00\x00\x00\x99\x00\x01') exp=' 00 c4 00 00 00 0a 00 00 00 00' if [ "$RES" != "$exp" ]; then echo "Error: Did not get expected result from TPM_Startup(ST_Clear)" echo "expected: $exp" echo "received: $RES" exit 1 fi # Reset PCR 20 swtpm_open_cmddev ${SWTPM_INTERFACE} 100 RES=$(swtpm_cmd_tx ${SWTPM_INTERFACE} '\x00\xC1\x00\x00\x00\x0F\x00\x00\x00\xC8\x00\x03\x00\x00\x10') exp=' 00 c4 00 00 00 0a 00 00 00 00' if [ "$RES" != "$exp" ]; then echo "Error: Could not reset PCR 20 in locality 2" echo "expected: $exp" echo "received: $RES" exit 1 fi # Shut down TPM run_swtpm_ioctl ${SWTPM_INTERFACE} -s if [ $? -ne 0 ]; then echo "Error: Could not shut down the ${SWTPM_INTERFACE} TPM." exit 1 fi if wait_process_gone ${SWTPM_PID} 1; then echo "Error: ${SWTPM_INTERFACE} TPM should not be running anymore." exit 1 fi if [ ! -e $STATE_FILE ]; then echo "Error: TPM state file $STATE_FILE does not exist." exit 1 fi echo "OK" exit 0