]> git.ipfire.org Git - thirdparty/systemd.git/commit
cryptenroll: don't try to get PCR bank if we know the device key
authorLennart Poettering <lennart@poettering.net>
Wed, 11 Sep 2024 15:28:43 +0000 (17:28 +0200)
committerLennart Poettering <lennart@poettering.net>
Wed, 11 Sep 2024 19:07:53 +0000 (21:07 +0200)
commit8d647ed2ff10b1bd02ca0775e76371314954bf37
tree89e7afa700c263c9a3237f4fe7d47fa2e757f3bf
parentc3563dc6d999cbc0da30c15e6e9d109021d2bd8e
cryptenroll: don't try to get PCR bank if we know the device key

If we operate in "offline" mode, i.e. know the device key, then we will
not have a TPM2 connection, hence don't try to read the PCR bank to use form
it.

We don't need it anyway because we are not going to test unseal things.

Fixes: #33855
src/cryptenroll/cryptenroll-tpm2.c