From: Luca Boccassi Date: Wed, 18 Feb 2026 16:20:33 +0000 (+0000) Subject: test: cover both verity verification mechanisms in TEST-70-TPM2-nvpcr X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=refs%2Fpull%2F40737%2Fhead;p=thirdparty%2Fsystemd.git test: cover both verity verification mechanisms in TEST-70-TPM2-nvpcr Follow-up for 521a523ce0cdcf0d529bd566f3d64ae93f10419d --- diff --git a/test/units/TEST-70-TPM2.nvpcr.sh b/test/units/TEST-70-TPM2.nvpcr.sh index ba5d6c9b7f4..c5a6d1c2136 100755 --- a/test/units/TEST-70-TPM2.nvpcr.sh +++ b/test/units/TEST-70-TPM2.nvpcr.sh @@ -54,11 +54,20 @@ DIGEST_MEASURED2="$(echo -n "schnurz" | openssl dgst -sha256 -hex -r | cut -d' ' DIGEST_EXPECTED2="$(echo "$DIGEST_EXPECTED$DIGEST_MEASURED2" | tr '[:lower:]' '[:upper:]' | basenc --base16 -d | openssl dgst -sha256 -hex -r | cut -d' ' -f1)" test "$DIGEST_ACTUAL2" = "$DIGEST_EXPECTED2" -mkdir /tmp/nvpcr +mkdir -p /tmp/nvpcr/tree +touch /tmp/nvpcr/tree/file -OPENSSL_CONFIG="/tmp/nvpcr/opensslconfig" -# Unfortunately OpenSSL insists on reading some config file, hence provide one with mostly placeholder contents -cat >"${OPENSSL_CONFIG:?}" <"${OPENSSL_CONFIG:?}" <