]> git.proxmox.com Git - mirror_edk2.git/commitdiff
SecurityPkg/SecurityPkg.dec: Change BlockSID default policy
authorEric Dong <eric.dong@intel.com>
Fri, 16 Nov 2018 08:14:30 +0000 (16:14 +0800)
committerEric Dong <eric.dong@intel.com>
Thu, 9 May 2019 06:32:46 +0000 (14:32 +0800)
https://bugzilla.tianocore.org/show_bug.cgi?id=1782

Change BlockSID default policy, default enable BlockSid.

Signed-off-by: Eric Dong <eric.dong@intel.com>
Reviewed-by: Hao A Wu <hao.a.wu@intel.com>
SecurityPkg/Include/Library/Tcg2PhysicalPresenceLib.h
SecurityPkg/SecurityPkg.dec

index d9eee7f3e8c49fe92ebe44731b507684142865f2..8da3deaf86d12af507dd2f617d03827ac76067c3 100644 (file)
@@ -51,7 +51,8 @@ SPDX-License-Identifier: BSD-2-Clause-Patent
 // Default value\r
 //\r
 #define TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_DEFAULT (TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_PP_REQUIRED_FOR_ENABLE_BLOCK_SID | \\r
 // Default value\r
 //\r
 #define TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_DEFAULT (TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_PP_REQUIRED_FOR_ENABLE_BLOCK_SID | \\r
-                                                   TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_PP_REQUIRED_FOR_DISABLE_BLOCK_SID)\r
+                                                   TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_PP_REQUIRED_FOR_DISABLE_BLOCK_SID |\\r
+                                                   TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_ENABLE_BLOCK_SID)\r
 \r
 /**\r
   Check and execute the pending TPM request.\r
 \r
 /**\r
   Check and execute the pending TPM request.\r
index 6e4c4c3a0275d0dcc4a4de24a3d6f518adccb00a..3314f1854be474034a3a855ad3abde1b3faca54d 100644 (file)
   # PCD can be configured for different settings in different scenarios\r
   # Default setting is TCG2_BIOS_TPM_MANAGEMENT_FLAG_DEFAULT | TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_DEFAULT\r
   # @Prompt Initial setting of TCG2 Persistent Firmware Management Flags\r
   # PCD can be configured for different settings in different scenarios\r
   # Default setting is TCG2_BIOS_TPM_MANAGEMENT_FLAG_DEFAULT | TCG2_BIOS_STORAGE_MANAGEMENT_FLAG_DEFAULT\r
   # @Prompt Initial setting of TCG2 Persistent Firmware Management Flags\r
-  gEfiSecurityPkgTokenSpaceGuid.PcdTcg2PhysicalPresenceFlags|0x300E2|UINT32|0x0001001B\r
+  gEfiSecurityPkgTokenSpaceGuid.PcdTcg2PhysicalPresenceFlags|0x700E2|UINT32|0x0001001B\r
 \r
   ## Indicate current TPM2 Interrupt Number reported by _CRS control method.<BR><BR>\r
   # TPM2 Interrupt feature is disabled If the pcd is set to 0.<BR>\r
 \r
   ## Indicate current TPM2 Interrupt Number reported by _CRS control method.<BR><BR>\r
   # TPM2 Interrupt feature is disabled If the pcd is set to 0.<BR>\r