Ubuntu server 18.04.5 txt-stat is false at whitley platform

Bug #1908497 reported by shangsong
14
This bug affects 2 people
Affects Status Importance Assigned to Milestone
tboot (Ubuntu)
Confirmed
Undecided
Unassigned

Bug Description

Steps:
1.Fresh install ubuntu 18.04.5 with HWE kernel at whitley platform under legacy mode;
2.Install tboot package and boot from tboot kernel;
3.Check the status of tboot via the command "txt-stat":
 TXT measured launch: FALSE
 secrets flag set: FALSE
4.Compile the latest tboot(1.9.12) from "https://sourceforge.net/projects/tboot/files/";
5.Boot from tboot 1.9.12 and check the tboot status is TRUE:
  TXT measured launch: TRUE
  secrets flag set: TRUE

Expected result:
After update the tboot package and the txt-stat status can be true.

Revision history for this message
shangsong (shangsong) wrote :
Revision history for this message
shangsong (shangsong) wrote :

For the latest UEFI, only latest tboot(1.10.0) can pass.

Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in tboot (Ubuntu):
status: New → Confirmed
Revision history for this message
Jeff Lane  (bladernr) wrote :

Please test this with 20.04 (tboot version 1.9.7-0ubuntu2) to see if the issue persists in 1.9.7).

I would presume that the 21.04 daily image (tboot version 1.9.12+hg20200718-1) will work correctly as it uses the same version you tried from sourceforge, but it would be nice if you could also test that 21.04 image to verify.

As this is a userspace package, you should also understand that to resolve this in either Bionic or Focal would require a SRU. Additionally, this is a Universe package which is not maintained by Canonical but rather is a community maintained project.

This would need a backport, as noted above, and that is a pretty strict process, so it may also be worth checking on the ubuntu-devel-discuss mailing list as noted under the "Maintainer" section of the tboot page on packages.ubuntu.com:

 https://packages.ubuntu.com/bionic/tboot

Revision history for this message
Jeff Lane  (bladernr) wrote :

Additionally¸ it could help if you could reformat the summarty to match the SRU template as noted here:

https://wiki.ubuntu.com/StableReleaseUpdates#SRU_Bug_Template

Revision history for this message
shangsong (shangsong) wrote :

Hi Jeff,
  1.It still fail on 20.04 with tboot version 1.9.7-0ubuntu2;
  2.Download the 21.04 daily build,it will reboot automatically when boot from tboot 1.9.12,
but it can pass after "apt-get upgrade".

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.