Chromium Code Reviews
DescriptionUpdate FWMP in TPM
As part of enrollment, the firmware management parameters (FWMP)
partition from TPM has to be set including the flags to mark if the
devmode is blocked. The update has to be done before the TPM is locked
but after the policy is retrieved.
It is implemented by including additional step in enrollment process
that makes the D-Bus call to cryptohome to set the data in FWMP.
Similarly when the device is deprovisioned, the firmware management
parameters are removed from TPM when it is established that it is a
consumer owned device.
BUG=685144
Review-Url: https://codereview.chromium.org/2727713003
Cr-Commit-Position: refs/heads/master@{#462886}
(cherry picked from commit d6dbbe9a3f1a62bc6ec0414bd4bbd5d4c2d9f833)
Review-Url: https://codereview.chromium.org/2812053004 .
Cr-Commit-Position: refs/branch-heads/3029@{#678}
Cr-Branched-From: 939b32ee5ba05c396eef3fd992822fcca9a2e262-refs/heads/master@{#454471}
Committed: https://chromium.googlesource.com/chromium/src/+/8a9654349f513c585696ad788dcb5b37b1283211
Patch Set 1 #Messages
Total messages: 2 (1 generated)
|