create_certs_tool= @BINDIR@/swtpm_localca
create_certs_tool_config = @SYSCONFDIR@/swtpm-localca.conf
create_certs_tool_options = @SYSCONFDIR@/swtpm-localca.options
+# Comma-separated list (no spaces) of PCR banks to activate by default
+active_pcr_banks = @DEFAULT_PCR_BANKS@
filedata[SWTPM_SETUP_CONF] = g_strdup_printf(
"create_certs_tool = %s\n"
"create_certs_tool_config = %s\n"
- "create_certs_tool_options = %s\n",
+ "create_certs_tool_options = %s\n"
+ "# Comma-separated list (no spaces) of PCR banks to activate by default\n"
+ "active_pcr_banks = %s\n",
create_certs_tool,
configfiles[SWTPM_LOCALCA_CONF],
- configfiles[SWTPM_LOCALCA_OPTIONS]
+ configfiles[SWTPM_LOCALCA_OPTIONS],
+ DEFAULT_PCR_BANKS
);
/* swtpm-localca.conf */