[pkg-gnupg-maint] Bug#1058571: Bug#1058571: Bug#1058571: gnupg2: please enable TPM2 support

Daniel Kahn Gillmor dkg at fifthhorseman.net
Tue Jan 28 23:31:30 GMT 2025


On Sun 2025-01-12 16:48:19 +0000, Jonathan McDowell wrote:
> It would be nice to have the TPM support in Trixie. Enabling it isn't
> hard, I've put up a simple patch at:
>
> https://salsa.debian.org/noodles/gnupg2/-/tree/enable-tpm

Thanks for this, Jonathan.  I think we should try to merge this patch,
or at least a slight variant of it.

> The problem is that the testsuite no longer runs in parallel mode with
> the TPM support enabled; the SW TPM emulator used for the tests is
> configured to use TCP ports and so can't parallelise.

Ugh, disappointing.  The GnuPG test suite is already incredibly slow,
which makes working on the package pretty time-consuming.

> It should be possible to use Unix sockets instead, but AFAICT that's
> going to require patching tpm2d/intel-tss.h to set the appropriate
> parameters on TCTI setup, and hacking up the Scheme test files to pass
> those through to the tests.

I've reported this over on https://dev.gnupg.org/T7494

     --dkg
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 324 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-gnupg-maint/attachments/20250128/35fcf965/attachment.sig>


More information about the pkg-gnupg-maint mailing list