WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xense-devel

RE: [Xense-devel] [Q] about vTPM

To: "Atsushi SAKAI" <sakaia@xxxxxxxxxxxxxx>, <xense-devel@xxxxxxxxxxxxxxxxxxx>
Subject: RE: [Xense-devel] [Q] about vTPM
From: "Scarlata, Vincent R" <vincent.r.scarlata@xxxxxxxxx>
Date: Thu, 29 Jun 2006 10:27:35 -0700
Delivery-date: Thu, 29 Jun 2006 10:28:56 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
List-help: <mailto:xense-devel-request@lists.xensource.com?subject=help>
List-id: "A discussion list for those developing security enhancements for Xen." <xense-devel.lists.xensource.com>
List-post: <mailto:xense-devel@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=unsubscribe>
Sender: xense-devel-bounces@xxxxxxxxxxxxxxxxxxx
Thread-index: AcabQBxpYGFp/t+lTd6CvSUQgEtdygAUkdeg
Thread-topic: [Xense-devel] [Q] about vTPM
 

>-----Original Message-----
>From: Atsushi SAKAI
>Sent: Wednesday, June 28, 2006 10:51 PM
>To: xense-devel@xxxxxxxxxxxxxxxxxxx
>Subject: [Xense-devel] [Q] about vTPM
>
>I have several questions on vTPM implementation on Xen.
>I would be appreciated if you answer the questions.
>
>1.GVTPM is seems like ideal model of current vTPM implementaion.
>  Is this true?
>  (for example, securestorege.c is in vtpm_manager)

Certain parts of the implementation are not specific to any model.
Specifically the driver pair that IBM contributed and the common portion
of the vtpm management scripts. However, you are correct in the
observation that the vtpm_managerd contributed by Intel is an
implementations of the GVTPM model.

>2.I think vTPM key functionality is migration of vTPM instance.
>  But It seems not implemented. Is this true?
>  It seems like the migration key is the builtin HW-TPM function only.

VTPM Migration support in the vtpm_managerd is nearly complete and I
will be submitted to the tree soon.

>3.Currently vTPM implementaion is only ParaVM.
>  Is there any plan to support FullVM?
>
>4.vtpm document(docs/misc/vtpm.txt) is little bit old.
>  So the documentation does not infar the Infineon chip.
>  I think Infineon chip is supported.
>
>Related Links
> vTPM: Virtualizing the Trusted Platform Module
>http://domino.research.ibm.com/library/cyberdig.nsf/1e4115aea78b6e7c852
56b360066f0d4/a0163fff5b1a61fe85257178004eee39?OpenDocument&Highlight=0,
RC23879
>
>Intel's Presentation on Xen Security
>http://www.xensource.com/files/XenSecurity_Intel_CRozas.pdf

_______________________________________________
Xense-devel mailing list
Xense-devel@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xense-devel

<Prev in Thread] Current Thread [Next in Thread>