Tspi_TPM_CMKSetRestrictions - tified Migratable Keys
#include <tss/tspi.h> TSS_RESULT Tspi_TPM_CMKSetRestrictions(TSS_HTPM hTPM, TSS_CMK_DELEGATE CmkDelegate);
Library Functions Manual Tspi_TPM_CMKSetRestrictions(3) TCG Software Stack Developer's Reference NAME Tspi_TPM_CMKSetRestrictions - set restrictions on use of delegated Cer- tified Migratable Keys SYNOPSIS #include <tss/tspi.h> TSS_RESULT Tspi_TPM_CMKSetRestrictions(TSS_HTPM hTPM, TSS_CMK_DELEGATE CmkDelegate); DESCRIPTION Tspi_TPM_CMKSetRestrictions is used to set restrictions on the delegat- ed use of Certified Migratable Keys (CMKs). Use of this command cannot itself be delegated. PARAMETERS hTPM The hTPM parameter is used to specify the handle of the TPM object. CmkDelegate The CmkDelegate parameter is a bitmask describing the kinds of CMKs that can be used in a delegated auth session. Each bit represents a type of key. If the bit of a key type is set, then the CMK can be used in a delegated authorization session, otherwise use of that key will result in a TPM_E_INVALID_KEYUSAGE return code from the TPM. The possible values of CmkDelegate are any combination of the following flags logically OR'd together: TSS_CMK_DELEGATE_SIGNING Allow use of signing keys. TSS_CMK_DELEGATE_STORAGE Allow use of storage keys. TSS_CMK_DELEGATE_BIND Allow use of binding keys. TSS_CMK_DELEGATE_LEGACY Allow use of legacy keys. TSS_CMK_DELEGATE_MIGRATE Allow use of migratable keys. RETURN CODES Tspi_TPM_CMKSetRestrictions returns TSS_SUCCESS on success, otherwise one of the following values is returned: TSS_E_INVALID_HANDLE hTPM is not a valid handle. TSS_E_INTERNAL_ERROR An internal SW error has been detected. CONFORMING TO Tspi_TPM_CMKSetRestrictions conforms to the Trusted Computing Group Software Specification version 1.2 Errata A ATTRIBUTES See attributes(7) for descriptions of the following attributes: +---------------+---------------------------+ |ATTRIBUTE TYPE | ATTRIBUTE VALUE | +---------------+---------------------------+ |Availability | library/security/trousers | +---------------+---------------------------+ |Stability | Uncommitted | +---------------+---------------------------+ SEE ALSO Tspi_TPM_CMKApproveMA(3), Tspi_TPM_CMKCreateTicket(3), Tspi_Key_CMKCre- ateBlob(3) NOTES Source code for open source software components in Oracle Solaris can be found at https://www.oracle.com/downloads/opensource/solaris-source- code-downloads.html. This software was built from source available at https://github.com/or- acle/solaris-userland. The original community source was downloaded from https://source- forge.net/projects/trousers/files/trousers/0.3.15/trousers-0.3.15.tar.gz. Further information about this software can be found on the open source community website at http://trousers.sourceforge.net/. TSS 1.2 2007-12-13 Tspi_TPM_CMKSetRestrictions(3)