Go to main content

man pages section 3: Library Interfaces and Headers

Exit Print View

Updated: Wednesday, July 27, 2022
 
 

Tspi_TPM_CMKSetRestrictions (3)

Name

Tspi_TPM_CMKSetRestrictions - tified Migratable Keys

Synopsis

#include <tss/tspi.h>

TSS_RESULT Tspi_TPM_CMKSetRestrictions(TSS_HTPM hTPM, TSS_CMK_DELEGATE CmkDelegate);

Description

Library Functions Manual                        Tspi_TPM_CMKSetRestrictions(3)



                   TCG Software Stack Developer's Reference

NAME
       Tspi_TPM_CMKSetRestrictions - set restrictions on use of delegated Cer-
       tified Migratable Keys

SYNOPSIS
       #include <tss/tspi.h>

       TSS_RESULT Tspi_TPM_CMKSetRestrictions(TSS_HTPM hTPM, TSS_CMK_DELEGATE CmkDelegate);



DESCRIPTION
       Tspi_TPM_CMKSetRestrictions is used to set restrictions on the delegat-
       ed use of Certified Migratable Keys (CMKs).  Use of this command cannot
       itself be delegated.


PARAMETERS
   hTPM
       The hTPM parameter is used to specify the handle of the TPM object.

   CmkDelegate
       The CmkDelegate parameter is a bitmask describing  the  kinds  of  CMKs
       that  can  be  used in a delegated auth session.  Each bit represents a
       type of key.  If the bit of a key type is set, then the CMK can be used
       in  a  delegated  authorization session, otherwise use of that key will
       result in a TPM_E_INVALID_KEYUSAGE return code from the TPM.

       The possible values of CmkDelegate are any combination of the following
       flags logically OR'd together:


       TSS_CMK_DELEGATE_SIGNING
              Allow use of signing keys.


       TSS_CMK_DELEGATE_STORAGE
              Allow use of storage keys.


       TSS_CMK_DELEGATE_BIND
              Allow use of binding keys.


       TSS_CMK_DELEGATE_LEGACY
              Allow use of legacy keys.


       TSS_CMK_DELEGATE_MIGRATE
              Allow use of migratable keys.


RETURN CODES
       Tspi_TPM_CMKSetRestrictions  returns  TSS_SUCCESS on success, otherwise
       one of the following values is returned:

       TSS_E_INVALID_HANDLE
              hTPM is not a valid handle.


       TSS_E_INTERNAL_ERROR
              An internal SW error has been detected.


CONFORMING TO
       Tspi_TPM_CMKSetRestrictions conforms to  the  Trusted  Computing  Group
       Software Specification version 1.2 Errata A



ATTRIBUTES
       See attributes(7) for descriptions of the following attributes:


       +---------------+---------------------------+
       |ATTRIBUTE TYPE |     ATTRIBUTE VALUE       |
       +---------------+---------------------------+
       |Availability   | library/security/trousers |
       +---------------+---------------------------+
       |Stability      | Uncommitted               |
       +---------------+---------------------------+

SEE ALSO
       Tspi_TPM_CMKApproveMA(3), Tspi_TPM_CMKCreateTicket(3), Tspi_Key_CMKCre-
       ateBlob(3)




NOTES
       Source code for open source software components in Oracle  Solaris  can
       be found at https://www.oracle.com/downloads/opensource/solaris-source-
       code-downloads.html.

       This software was built from source available at https://github.com/or-
       acle/solaris-userland.   The  original  community source was downloaded
       from                                                    https://source-
       forge.net/projects/trousers/files/trousers/0.3.15/trousers-0.3.15.tar.gz.

       Further information about this software can be found on the open source
       community website at http://trousers.sourceforge.net/.



TSS 1.2                           2007-12-13
                                                Tspi_TPM_CMKSetRestrictions(3)