WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

[Xen-users] vtpm_manager can't run twice in a row

To: xen-users@xxxxxxxxxxxxxxxxxxx
Subject: [Xen-users] vtpm_manager can't run twice in a row
From: Luke <secureboot@xxxxxxxxx>
Date: Wed, 19 Sep 2007 14:17:26 -0400
Delivery-date: Wed, 19 Sep 2007 11:18:10 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
User-agent: Thunderbird 2.0.0.6 (X11/20070830)
I can get vtpm_manager to run if I delete /var/vtpm/VTPM.  However, when
I kill it with control-c, and try to run it again, I get:

INFO[VTPM]: Starting VTPM.
INFO[TCS]: Constructing new TCS:
INFO[TCS]: Calling TCS_OpenContext:
INFO[VTSP]: OIAP.
INFO[VTSP]: Loading Key into TPM.
INFO[VTSP]: Unbinding 256 bytes of data.
ERROR in VTSP_Unbind at vtsp.c:720 code: TPM_BAD_PARAMETER.
ERROR in envelope_decrypt at securestorage.c:156 code: TPM_BAD_PARAMETER.
ERROR[VTPM]: Failed to envelope decrypt data
.ERROR in VTPM_LoadManagerData at securestorage.c:459 code:
TPM_BAD_PARAMETER.
ERROR[VTPM]: Failed to load service data with error = TPM_BAD_PARAMETER
ERROR[VTPM]: Failed to read existing manager file


What's causing this, and how do I fix it?  I need my guest to get the
same VTPM every time it starts, so that keys (signing and SRK) persist
across instances.

-- 
Luke

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users