• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /* Microsoft Reference Implementation for TPM 2.0
2  *
3  *  The copyright in this software is being made available under the BSD License,
4  *  included below. This software may be subject to other third party and
5  *  contributor rights, including patent rights, and no such rights are granted
6  *  under this license.
7  *
8  *  Copyright (c) Microsoft Corporation
9  *
10  *  All rights reserved.
11  *
12  *  BSD License
13  *
14  *  Redistribution and use in source and binary forms, with or without modification,
15  *  are permitted provided that the following conditions are met:
16  *
17  *  Redistributions of source code must retain the above copyright notice, this list
18  *  of conditions and the following disclaimer.
19  *
20  *  Redistributions in binary form must reproduce the above copyright notice, this
21  *  list of conditions and the following disclaimer in the documentation and/or
22  *  other materials provided with the distribution.
23  *
24  *  THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS ""AS IS""
25  *  AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
26  *  IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
27  *  DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR
28  *  ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
29  *  (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
30  *  LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON
31  *  ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
32  *  (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
33  *  SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
34  */
35 #include "Tpm.h"
36 #include "PolicyTemplate_fp.h"
37 
38 #if CC_PolicyTemplate  // Conditional expansion of this file
39 
40 /*(See part 3 specification)
41 // Add a cpHash restriction to the policyDigest
42 */
43 //  Return Type: TPM_RC
44 //      TPM_RC_CPHASH           cpHash of 'policySession' has previously been set
45 //                              to a different value
46 //      TPM_RC_SIZE             'templateHash' is not the size of a digest produced
47 //                              by the hash algorithm associated with
48 //                              'policySession'
49 TPM_RC
TPM2_PolicyTemplate(PolicyTemplate_In * in)50 TPM2_PolicyTemplate(
51     PolicyTemplate_In     *in             // IN: input parameter list
52     )
53 {
54     SESSION     *session;
55     TPM_CC      commandCode = TPM_CC_PolicyTemplate;
56     HASH_STATE  hashState;
57 
58 // Input Validation
59 
60     // Get pointer to the session structure
61     session = SessionGet(in->policySession);
62 
63     // If the template is set, make sure that it is the same as the input value
64     if(session->attributes.isTemplateSet)
65     {
66         if(!MemoryEqual2B(&in->templateHash.b, &session->u1.cpHash.b))
67             return TPM_RCS_VALUE + RC_PolicyTemplate_templateHash;
68     }
69     // error if cpHash contains something that is not a template
70     else if(session->u1.templateHash.t.size != 0)
71         return TPM_RC_CPHASH;
72 
73     // A valid templateHash must have the same size as session hash digest
74     if(in->templateHash.t.size != CryptHashGetDigestSize(session->authHashAlg))
75         return TPM_RCS_SIZE + RC_PolicyTemplate_templateHash;
76 
77 // Internal Data Update
78     // Update policy hash
79     // policyDigestnew = hash(policyDigestold || TPM_CC_PolicyCpHash
80     //  || cpHashA.buffer)
81     //  Start hash
82     CryptHashStart(&hashState, session->authHashAlg);
83 
84     //  add old digest
85     CryptDigestUpdate2B(&hashState, &session->u2.policyDigest.b);
86 
87     //  add commandCode
88     CryptDigestUpdateInt(&hashState, sizeof(TPM_CC), commandCode);
89 
90     //  add cpHashA
91     CryptDigestUpdate2B(&hashState, &in->templateHash.b);
92 
93     //  complete the digest and get the results
94     CryptHashEnd2B(&hashState, &session->u2.policyDigest.b);
95 
96     // update cpHash in session context
97     session->u1.templateHash = in->templateHash;
98     session->attributes.isTemplateSet = SET;
99 
100     return TPM_RC_SUCCESS;
101 }
102 
103 #endif // CC_PolicyTemplateHash