This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
Home Products Support Community News


RE: [Xen-users] vtpm_manager can't run twice in a row

To: "Luke" <secureboot@xxxxxxxxx>
Subject: RE: [Xen-users] vtpm_manager can't run twice in a row
From: "Fischer, Anna" <anna.fischer@xxxxxx>
Date: Thu, 20 Sep 2007 20:56:55 +0100
Cc: xen-users@xxxxxxxxxxxxxxxxxxx, xense-devel@xxxxxxxxxxxxxxxxxxx
Delivery-date: Thu, 20 Sep 2007 12:57:46 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
In-reply-to: <46F2B885.2060000@xxxxxxxxx>
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
References: <46F167B6.4080704@xxxxxxxxx> <46F2B885.2060000@xxxxxxxxx>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
Thread-index: Acf7sjkDyBbLcSU8SLGmHZGrZ51UGAADCwTw
Thread-topic: [Xen-users] vtpm_manager can't run twice in a row
> Luke wrote:
> > I can get vtpm_manager to run if I delete /var/vtpm/VTPM.  However, 
> > when I kill it with control-c, and try to run it again, I get:
> > 
> > INFO[VTPM]: Starting VTPM.
> > INFO[TCS]: Constructing new TCS:
> > INFO[TCS]: Calling TCS_OpenContext:
> > INFO[VTSP]: Loading Key into TPM.
> > INFO[VTSP]: Unbinding 256 bytes of data.
> > ERROR in VTSP_Unbind at vtsp.c:720 code: TPM_BAD_PARAMETER.
> > ERROR in envelope_decrypt at securestorage.c:156 code: 
> > ERROR[VTPM]: Failed to envelope decrypt data .ERROR in 
> > VTPM_LoadManagerData at securestorage.c:459 code:
> > ERROR[VTPM]: Failed to load service data with error = 
> > ERROR[VTPM]: Failed to read existing manager file
> > 
> > 
> > What's causing this, and how do I fix it?  I need my guest 
> to get the 
> > same VTPM every time it starts, so that keys (signing and 
> SRK) persist 
> > across instances.
> > 
> Just to add a bit of information - this happens after I let 
> vtpm_managerd take ownership of the tpm.
> Is it just that no one uses this program?  

I have been using the vtpm_manager without any problems, and it works
fine to kill it with control-c (see my attached log file). I can start
and stop it frequently like that, and it never shows me any errors.

> Or is this an 
> error specific to me?

It would eventually be helpful to know some more details on what you're
actually doing, how you've taken ownership of the TPM, what TPM you're
using, and also what Xen and what vtpm_manager version you run. Also, I
would recommend to forward this problem to the xense-devel list, as you
would be much more likely to find help from people on that list.

Attachment: vtpm.log
Description: vtpm.log

Xen-users mailing list