From af9a5121a17771f6683272aa661db607a33fe34c Mon Sep 17 00:00:00 2001 From: Luca Boccassi Date: Wed, 18 Feb 2026 16:20:33 +0000 Subject: [PATCH] test: cover both verity verification mechanisms in TEST-70-TPM2-nvpcr Follow-up for 521a523ce0cdcf0d529bd566f3d64ae93f10419d --- test/units/TEST-70-TPM2.nvpcr.sh | 43 +++++++++++++++++++------------- 1 file changed, 25 insertions(+), 18 deletions(-) diff --git a/test/units/TEST-70-TPM2.nvpcr.sh b/test/units/TEST-70-TPM2.nvpcr.sh index ba5d6c9b7f4..c5a6d1c2136 100755 --- a/test/units/TEST-70-TPM2.nvpcr.sh +++ b/test/units/TEST-70-TPM2.nvpcr.sh @@ -54,11 +54,20 @@ DIGEST_MEASURED2="$(echo -n "schnurz" | openssl dgst -sha256 -hex -r | cut -d' ' DIGEST_EXPECTED2="$(echo "$DIGEST_EXPECTED$DIGEST_MEASURED2" | tr '[:lower:]' '[:upper:]' | basenc --base16 -d | openssl dgst -sha256 -hex -r | cut -d' ' -f1)" test "$DIGEST_ACTUAL2" = "$DIGEST_EXPECTED2" -mkdir /tmp/nvpcr +mkdir -p /tmp/nvpcr/tree +touch /tmp/nvpcr/tree/file -OPENSSL_CONFIG="/tmp/nvpcr/opensslconfig" -# Unfortunately OpenSSL insists on reading some config file, hence provide one with mostly placeholder contents -cat >"${OPENSSL_CONFIG:?}" <"${OPENSSL_CONFIG:?}" <