Linux and UNIX Man Pages

Linux & Unix Commands - Search Man Pages

tspi_tpm_cmksetrestrictions(3) [centos man page]

Tspi_TPM_CMKSetRestrictions(3)				     Library Functions Manual				    Tspi_TPM_CMKSetRestrictions(3)

						     TCG Software Stack Developer's Reference

NAME
Tspi_TPM_CMKSetRestrictions - set restrictions on use of delegated Certified Migratable Keys SYNOPSIS
#include <tss/tspi.h> TSS_RESULT Tspi_TPM_CMKSetRestrictions(TSS_HTPM hTPM, TSS_CMK_DELEGATE CmkDelegate); DESCRIPTION
Tspi_TPM_CMKSetRestrictions is used to set restrictions on the delegated use of Certified Migratable Keys (CMKs). Use of this command can- not itself be delegated. PARAMETERS
hTPM The hTPM parameter is used to specify the handle of the TPM object. CmkDelegate The CmkDelegate parameter is a bitmask describing the kinds of CMKs that can be used in a delegated auth session. Each bit represents a type of key. If the bit of a key type is set, then the CMK can be used in a delegated authorization session, otherwise use of that key will result in a TPM_E_INVALID_KEYUSAGE return code from the TPM. The possible values of CmkDelegate are any combination of the following flags logically OR'd together: TSS_CMK_DELEGATE_SIGNING Allow use of signing keys. TSS_CMK_DELEGATE_STORAGE Allow use of storage keys. TSS_CMK_DELEGATE_BIND Allow use of binding keys. TSS_CMK_DELEGATE_LEGACY Allow use of legacy keys. TSS_CMK_DELEGATE_MIGRATE Allow use of migratable keys. RETURN CODES
Tspi_TPM_CMKSetRestrictions returns TSS_SUCCESS on success, otherwise one of the following values is returned: TSS_E_INVALID_HANDLE hTPM is not a valid handle. TSS_E_INTERNAL_ERROR An internal SW error has been detected. CONFORMING TO
Tspi_TPM_CMKSetRestrictions conforms to the Trusted Computing Group Software Specification version 1.2 Errata A SEE ALSO
Tspi_TPM_CMKApproveMA(3), Tspi_TPM_CMKCreateTicket(3), Tspi_Key_CMKCreateBlob(3) TSS 1.2 2007-12-13 Tspi_TPM_CMKSetRestrictions(3)

Check Out this Related Man Page

Tspi_TPM_AuthorizeMigrationTicket(3)		     TCG Software Stack Developer's Reference		      Tspi_TPM_AuthorizeMigrationTicket(3)

NAME
Tspi_TPM_AuthorizeMigrationTicket- create the migration ticket required for the migration process. SYNOPSIS
#include <tss/platform.h> #include <tss/tcpa_defines.h> #include <tss/tcpa_typedef.h> #include <tss/tcpa_struct.h> #include <tss/tss_typedef.h> #include <tss/tss_structs.h> #include <tss/tspi.h> TSS_RESULT Tspi_TPM_AuthorizeMigrationTicket(TSS_HTPM hTPM, TSS_HKEY hMigrationKey, TSS_MIGRATE_SCHEME migrationScheme, UINT32* pulMigTicketLength, BYTE** prgbMigTicket); DESCRIPTION
Tspi_TPM_AuthorizeMigrationTicket is used by the owner to authorize a target public key for migration. This mean sthat when a system is set up, the owner can decide that all archives should be done on a particular server. Then as keys are created, the user can pick one of these servers for the target of the migration of their keys, if they wish. This provides one of the two authorizations necessary to migrate a key. PARAMETERS
hTPM Handle of the TPM object hMigrationKey Handle of the object representing the migration key. migrationScheme Flag indiating the migration scheme to be used. pulMigTicketLength Recieves the length (in bytes) of the prgbMigTicket parameter. prgbMigTicket Recieves a pointer to thememory block containing the migration ticket blob. RETURN CODES
Tspi_TPM_AuthorizeMigrationTicket returns TSS_SUCCESS on success, otherwise one of the following values are returned: TSS_E_INVALID_HANDLE Either hTPM or hMigrationKey is not a valid handle. TSS_E_INTERNAL_ERROR An error occurred internal to the TSS. CONFORMING TO
Tspi_TPM_AuthorizeMigrationTicket conforms to the Trusted Computing Group Software Specification version 1.1 Golden SEE ALSO
(none). TSS 1.1 2004-05-26 Tspi_TPM_AuthorizeMigrationTicket(3)
Man Page