WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xense-devel

[Xense-devel] Run vTPM in its own VM?

To: <Xense-devel@xxxxxxxxxxxxxxxxxxx>
Subject: [Xense-devel] Run vTPM in its own VM?
From: "Fischer, Anna" <anna.fischer@xxxxxx>
Date: Thu, 14 Sep 2006 10:00:56 +0100
Delivery-date: Thu, 14 Sep 2006 02:01:17 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
List-help: <mailto:xense-devel-request@lists.xensource.com?subject=help>
List-id: "A discussion list for those developing security enhancements for Xen." <xense-devel.lists.xensource.com>
List-post: <mailto:xense-devel@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=unsubscribe>
Sender: xense-devel-bounces@xxxxxxxxxxxxxxxxxxx
Thread-index: AcbX3EoolAtZZWC7TRa8j7zH3lWkJg==
Thread-topic: Run vTPM in its own VM?
The README of the current Xen unstable version says that setting
VTPM_MULTI_VM allows running each vTPM in its own VM. However, compiling
with this option doesn't work on my machine and the code doesn't seem to
be complete for this option.

Did I miss to configure something or is the current implementation in
Xen not really ready for running a vTPM in a separate VM?

Can you explain to me how a communication will look like for the planned
implementation in Xen? Will all communication continue to go through the
vTPM manager and the vTPM manager talks to a kind of FE that transmits
TPM commands to a BE running in a separate domain? Or is it possible to
set up direct connections between a user domain TPM FE and the vTPM
running in an isolated VM?

Regards,
Anna

_______________________________________________
Xense-devel mailing list
Xense-devel@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xense-devel