mirror of
https://github.com/systemd/systemd.git
synced 2025-01-11 09:18:07 +03:00
fundemental: split out UKI defines into its own header
The UKI sections have little to do with the PCRs, hence give them their own header.
This commit is contained in:
parent
2099cd6289
commit
46c5a1383a
@ -14,6 +14,7 @@
|
||||
#include "shim.h"
|
||||
#include "splash.h"
|
||||
#include "tpm-pcr.h"
|
||||
#include "uki.h"
|
||||
#include "util.h"
|
||||
#include "version.h"
|
||||
#include "vmm.h"
|
||||
|
@ -20,6 +20,7 @@
|
||||
#include "terminal-util.h"
|
||||
#include "tpm-pcr.h"
|
||||
#include "tpm2-util.h"
|
||||
#include "uki.h"
|
||||
#include "verbs.h"
|
||||
|
||||
/* Tool for pre-calculating expected TPM PCR values based on measured resources. This is intended to be used
|
||||
|
@ -7,5 +7,5 @@ fundamental_sources = files(
|
||||
'efivars-fundamental.c',
|
||||
'sha256.c',
|
||||
'string-util-fundamental.c',
|
||||
'tpm-pcr.c',
|
||||
'uki.c',
|
||||
)
|
||||
|
@ -43,27 +43,3 @@ enum {
|
||||
TPM2_PCR_DEBUG = 16,
|
||||
TPM2_PCR_APPLICATION_SUPPORT = 23,
|
||||
};
|
||||
|
||||
/* List of PE sections that have special meaning for us in unified kernels. This is the canonical order in
|
||||
* which we measure the sections into TPM PCR 11 (see above). PLEASE DO NOT REORDER! */
|
||||
typedef enum UnifiedSection {
|
||||
UNIFIED_SECTION_LINUX,
|
||||
UNIFIED_SECTION_OSREL,
|
||||
UNIFIED_SECTION_CMDLINE,
|
||||
UNIFIED_SECTION_INITRD,
|
||||
UNIFIED_SECTION_SPLASH,
|
||||
UNIFIED_SECTION_DTB,
|
||||
UNIFIED_SECTION_UNAME,
|
||||
UNIFIED_SECTION_SBAT,
|
||||
UNIFIED_SECTION_PCRSIG,
|
||||
UNIFIED_SECTION_PCRPKEY,
|
||||
_UNIFIED_SECTION_MAX,
|
||||
} UnifiedSection;
|
||||
|
||||
extern const char* const unified_sections[_UNIFIED_SECTION_MAX + 1];
|
||||
|
||||
static inline bool unified_section_measure(UnifiedSection section) {
|
||||
/* Don't include the PCR signature in the PCR measurements, since they sign the expected result of
|
||||
* the measurement, and hence shouldn't be input to it. */
|
||||
return section >= 0 && section < _UNIFIED_SECTION_MAX && section != UNIFIED_SECTION_PCRSIG;
|
||||
}
|
||||
|
@ -2,7 +2,7 @@
|
||||
|
||||
#include <stddef.h>
|
||||
|
||||
#include "tpm-pcr.h"
|
||||
#include "uki.h"
|
||||
|
||||
const char* const unified_sections[_UNIFIED_SECTION_MAX + 1] = {
|
||||
[UNIFIED_SECTION_LINUX] = ".linux",
|
28
src/fundamental/uki.h
Normal file
28
src/fundamental/uki.h
Normal file
@ -0,0 +1,28 @@
|
||||
/* SPDX-License-Identifier: LGPL-2.1-or-later */
|
||||
#pragma once
|
||||
|
||||
#include "macro-fundamental.h"
|
||||
|
||||
/* List of PE sections that have special meaning for us in unified kernels. This is the canonical order in
|
||||
* which we measure the sections into TPM PCR 11. PLEASE DO NOT REORDER! */
|
||||
typedef enum UnifiedSection {
|
||||
UNIFIED_SECTION_LINUX,
|
||||
UNIFIED_SECTION_OSREL,
|
||||
UNIFIED_SECTION_CMDLINE,
|
||||
UNIFIED_SECTION_INITRD,
|
||||
UNIFIED_SECTION_SPLASH,
|
||||
UNIFIED_SECTION_DTB,
|
||||
UNIFIED_SECTION_UNAME,
|
||||
UNIFIED_SECTION_SBAT,
|
||||
UNIFIED_SECTION_PCRSIG,
|
||||
UNIFIED_SECTION_PCRPKEY,
|
||||
_UNIFIED_SECTION_MAX,
|
||||
} UnifiedSection;
|
||||
|
||||
extern const char* const unified_sections[_UNIFIED_SECTION_MAX + 1];
|
||||
|
||||
static inline bool unified_section_measure(UnifiedSection section) {
|
||||
/* Don't include the PCR signature in the PCR measurements, since they sign the expected result of
|
||||
* the measurement, and hence shouldn't be input to it. */
|
||||
return section >= 0 && section < _UNIFIED_SECTION_MAX && section != UNIFIED_SECTION_PCRSIG;
|
||||
}
|
Loading…
Reference in New Issue
Block a user