<feed xmlns='http://www.w3.org/2005/Atom'>
<title>linux/meta-security.git/meta-tpm, branch master-next</title>
<subtitle>Mirror of git.yoctoproject.org/meta-security.git</subtitle>
<id>https://git.enea.com/cgit/linux/meta-security.git/atom?h=master-next</id>
<link rel='self' href='https://git.enea.com/cgit/linux/meta-security.git/atom?h=master-next'/>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/'/>
<updated>2026-05-25T14:11:19+00:00</updated>
<entry>
<title>tpm2-pkcs11: upgrade 1.9.1 -&gt; 1.9.2</title>
<updated>2026-05-25T14:11:19+00:00</updated>
<author>
<name>Peter Marko</name>
<email>peter.marko@siemens.com</email>
</author>
<published>2026-05-05T14:13:53+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=226839ac408223f8041cde1b1d8b762d6fbc8050'/>
<id>urn:sha1:226839ac408223f8041cde1b1d8b762d6fbc8050</id>
<content type='text'>
This contains fix for building native recipe with security flags
enabled:
* https://github.com/tpm2-software/tpm2-pkcs11/commit/be97b21ae641303ce83a8fbb54002701c1aede31

Signed-off-by: Peter Marko &lt;peter.marko@siemens.com&gt;
Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
<entry>
<title>tpm2-tools: make efivar optional</title>
<updated>2026-05-17T14:44:55+00:00</updated>
<author>
<name>Peter Marko</name>
<email>peter.marko@siemens.com</email>
</author>
<published>2026-05-07T08:39:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=cdb4e444acbb2b9df467d716241a206c9ea6d3b0'/>
<id>urn:sha1:cdb4e444acbb2b9df467d716241a206c9ea6d3b0</id>
<content type='text'>
Previous commit made this a hard dependency because it's autodetected.
Instead of that, make it configurable so it can be disabled (roughtly
equivalent to behavior before that commit).

Signed-off-by: Peter Marko &lt;peter.marko@siemens.com&gt;
Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
<entry>
<title>layer.conf: correct WARN_QA</title>
<updated>2026-05-17T14:44:55+00:00</updated>
<author>
<name>Li Zhou</name>
<email>li.zhou@windriver.com</email>
</author>
<published>2026-04-27T02:58:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=07ea3222dbeace90b2ae81a34ca6222aef300d4f'/>
<id>urn:sha1:07ea3222dbeace90b2ae81a34ca6222aef300d4f</id>
<content type='text'>
Fix the typo "tmp-layer" in "WARN_QA:append".
The right name for this layer in OVERRIDES is layer-tpm-layer
by checking "bitbake -e &lt;recipe_name&gt; | grep ^OVERRIDES=".

Signed-off-by: Li Zhou &lt;li.zhou@windriver.com&gt;
Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
<entry>
<title>tpm2-pkcs11: fix build failure</title>
<updated>2026-04-14T21:18:23+00:00</updated>
<author>
<name>Peter Marko</name>
<email>peter.marko@siemens.com</email>
</author>
<published>2026-04-09T13:10:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=d975a55a6594cabed377a8f61a41f867a7e02405'/>
<id>urn:sha1:d975a55a6594cabed377a8f61a41f867a7e02405</id>
<content type='text'>
Use patch submitted upstream to fix build error:
| src/lib/tpm.c: In function ‘tpm_unseal’:
| src/lib/tpm.c:1040:16: error: incompatible types when returning type ‘_Bool’ but ‘twist’ {aka ‘const char *’} was expected
|  1040 |         return false;
|       |                ^~~~~

Signed-off-by: Peter Marko &lt;peter.marko@siemens.com&gt;
Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
<entry>
<title>libtpms: fix build with glibc 2.43</title>
<updated>2026-04-14T19:43:53+00:00</updated>
<author>
<name>Peter Marko</name>
<email>peter.marko@siemens.com</email>
</author>
<published>2026-03-14T13:12:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=62a62bc7c0231c86d9e759a6f976d9b5e410a62c'/>
<id>urn:sha1:62a62bc7c0231c86d9e759a6f976d9b5e410a62c</id>
<content type='text'>
Backport patch stable-0.10 branch (not tagged yet).

Signed-off-by: Peter Marko &lt;peter.marko@siemens.com&gt;
Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
<entry>
<title>layer.conf: Update to wrynose (6.0) release</title>
<updated>2026-03-22T14:24:23+00:00</updated>
<author>
<name>Marta Rybczynska</name>
<email>marta.rybczynska@ygreky.com</email>
</author>
<published>2026-03-19T13:12:19+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=8028c573db6923525c2918724f2bd36d4a420e0b'/>
<id>urn:sha1:8028c573db6923525c2918724f2bd36d4a420e0b</id>
<content type='text'>
Update LAYERSERIES_COMPAT in all layer.conf files with the exception
of meta-parsec to wrynose.  For meta-parsec, added wrynose to the list
of supported versions.

Signed-off-by: Marta Rybczynska &lt;marta.rybczynska@ygreky.com&gt;
</content>
</entry>
<entry>
<title>python3-tpm2-pytss: BBCLASSEXTEND native and nativesdk</title>
<updated>2026-03-04T10:12:48+00:00</updated>
<author>
<name>Peter Marko</name>
<email>peter.marko@siemens.com</email>
</author>
<published>2026-02-12T08:38:35+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=f04f6fede966257d765ccdd22d671f93142afe57'/>
<id>urn:sha1:f04f6fede966257d765ccdd22d671f93142afe57</id>
<content type='text'>
Commit cd729862f68152bc76db02cd4a93ca12a9424f88 added native/nativesdk
possibility to tpm2-pkcs11.
After 784ca4b6584101e971b2d5d76ec7b716ad1301b5 which added rdepends on
python3-tpm2-pytss, there are errors like:

Missing or unbuildable dependency chain was:
['&lt;image&gt;', 'swtpm-native', 'tpm2-pkcs11-tools-native', 'python3-tpm2-pytss-native']

Signed-off-by: Peter Marko &lt;peter.marko@siemens.com&gt;
Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
<entry>
<title>meta-tpm: Small maintainers fix</title>
<updated>2025-10-08T15:34:14+00:00</updated>
<author>
<name>Scott Murray</name>
<email>scott.murray@konsulko.com</email>
</author>
<published>2025-10-07T18:35:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=9f1d763bb17bf105cc313a95eb3b07496b34bacc'/>
<id>urn:sha1:9f1d763bb17bf105cc313a95eb3b07496b34bacc</id>
<content type='text'>
To avoid confusion, remove stray aircrack-ng entry as it is actually
in the main layer and not meta-tpm.

Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
<entry>
<title>tpm2-tss-engine: remove libgcrypt dependency</title>
<updated>2025-09-10T22:08:38+00:00</updated>
<author>
<name>Patrick Wicki</name>
<email>patrick.wicki@siemens.com</email>
</author>
<published>2025-08-28T13:34:42+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=dafceb4ba498bb879af041d431655a9134876177'/>
<id>urn:sha1:dafceb4ba498bb879af041d431655a9134876177</id>
<content type='text'>
There is no hint of libgcrypt in the upstream code and distro packages
like Debian and Fedora do not have this dependency either.

Signed-off-by: Patrick Wicki &lt;patrick.wicki@siemens.com&gt;
</content>
</entry>
<entry>
<title>libhoth: update to latest</title>
<updated>2025-07-04T16:41:20+00:00</updated>
<author>
<name>Scott Murray</name>
<email>scott.murray@konsulko.com</email>
</author>
<published>2025-07-03T20:55:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-security.git/commit/?id=d1d23b0c5c1567ab07571e845a16a06f07ffc5fc'/>
<id>urn:sha1:d1d23b0c5c1567ab07571e845a16a06f07ffc5fc</id>
<content type='text'>
Update libhoth SRCREV to its latest commit, and add patches to fix
gcc 15 and build dependency issues.  Since the last update was
so long ago, the changelog is longer than seems reasonable to
include here, please refer to:

https://github.com/google/libhoth/commits/main/?since=2024-01-16&amp;until=2025-07-03

Signed-off-by: Scott Murray &lt;scott.murray@konsulko.com&gt;
</content>
</entry>
</feed>
