1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
|
/* Copyright (c) 2010 The Chromium OS Authors. All rights reserved.
* Use of this source code is governed by a BSD-style license that can be
* found in the LICENSE file.
*/
/* Test of protection from space redefinition.
*
* This test is actually not that interesting because, if I am right, space
* redefinition is not allowed with PP only. It requires
* TPM_TAG_RQU_AUTH1_COMMAND with owner authentication.
*/
#include <stdio.h>
#include <stdint.h>
#include <stdlib.h>
#include <tss/tcs.h>
#include "tlcl.h"
#include "utility.h"
#define INDEX0 0xcafe
#define INDEX1 0xcaff
int main(int argc, char** argv) {
uint32_t perm;
uint32_t result;
uint32_t x;
TlclLibInit();
TlclStartup();
TlclSelftestfull();
TlclAssertPhysicalPresence();
result = TlclRead(INDEX0, (uint8_t*) &x, sizeof(x));
if (result == TPM_E_BADINDEX) {
VBDEBUG(("creating INDEX0\n"));
} else {
VBDEBUG(("redefining INDEX0\n"));
}
perm = TPM_NV_PER_PPWRITE | TPM_NV_PER_GLOBALLOCK;
TlclDefineSpace(INDEX0, perm, sizeof(uint32_t));
result = TlclRead(INDEX0, (uint8_t*) &x, sizeof(x));
if (result == TPM_E_BADINDEX) {
VBDEBUG(("redefining INDEX1\n"));
} else {
VBDEBUG(("creating INDEX1\n"));
}
perm = TPM_NV_PER_PPWRITE;
TlclDefineSpace(INDEX1, perm, sizeof(uint32_t));
// Sets the global lock.
TlclSetGlobalLock();
// Verifies that index0 cannot be redefined.
result = TlclDefineSpace(INDEX0, perm, sizeof(uint32_t));
if (result == TPM_SUCCESS) {
error("unexpected success redefining INDEX0\n");
exit(1);
}
// Turns off PP.
TlclLockPhysicalPresence();
// Verifies that neither index0 nor index1 cannot be redefined.
result = TlclDefineSpace(INDEX0, perm, sizeof(uint32_t));
if (result == TPM_SUCCESS) {
error("unexpected success redefining INDEX0\n");
exit(1);
}
result = TlclDefineSpace(INDEX1, perm, sizeof(uint32_t));
if (result == TPM_SUCCESS) {
error("unexpected success redefining INDEX1\n");
exit(1);
}
printf("Test completed successfully\n");
exit(0);
}
|