From eb73e5f4a4db631957acbb7bf5f9721f2d297439 Mon Sep 17 00:00:00 2001 From: Arthur Heymans Date: Thu, 6 May 2021 10:28:26 +0200 Subject: security/intel/txt: Set up TPM in bootblock if using measured boot Change-Id: I1225757dbc4c6fb5a30d1aa12987661a0a6eb538 Signed-off-by: Arthur Heymans Reviewed-on: https://review.coreboot.org/c/coreboot/+/52969 Tested-by: build bot (Jenkins) Reviewed-by: Philipp Deppenwiese Reviewed-by: Angel Pons --- src/security/intel/txt/Kconfig | 1 + 1 file changed, 1 insertion(+) (limited to 'src/security/intel/txt') diff --git a/src/security/intel/txt/Kconfig b/src/security/intel/txt/Kconfig index c1442c86ee..14b4f6a722 100644 --- a/src/security/intel/txt/Kconfig +++ b/src/security/intel/txt/Kconfig @@ -6,6 +6,7 @@ config INTEL_TXT select MRC_SETTINGS_PROTECT if CACHE_MRC_SETTINGS select ENABLE_VMX if CPU_INTEL_COMMON select AP_IN_SIPI_WAIT + select TPM_MEASURED_BOOT_INIT_BOOTBLOCK if TPM_MEASURED_BOOT depends on (TPM1 || TPM2) depends on CPU_INTEL_FIRMWARE_INTERFACE_TABLE depends on PLATFORM_HAS_DRAM_CLEAR -- cgit v1.2.3