Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1 | # |
| 2 | # TPM device configuration |
| 3 | # |
| 4 | |
Jan Engelhardt | 7126b75 | 2007-07-15 23:39:31 -0700 | [diff] [blame] | 5 | menuconfig TCG_TPM |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 6 | tristate "TPM Hardware Support" |
Jan Engelhardt | 7126b75 | 2007-07-15 23:39:31 -0700 | [diff] [blame] | 7 | depends on HAS_IOMEM |
Eric Paris | da31894 | 2008-08-22 11:35:57 -0400 | [diff] [blame] | 8 | select SECURITYFS |
Nayna Jain | c1f92b4 | 2017-01-30 04:59:41 -0500 | [diff] [blame^] | 9 | select CRYPTO_HASH_INFO |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 10 | ---help--- |
| 11 | If you have a TPM security chip in your system, which |
| 12 | implements the Trusted Computing Group's specification, |
| 13 | say Yes and it will be accessible from within Linux. For |
| 14 | more information see <http://www.trustedcomputinggroup.org>. |
| 15 | An implementation of the Trusted Software Stack (TSS), the |
| 16 | userspace enablement piece of the specification, can be |
| 17 | obtained at: <http://sourceforge.net/projects/trousers>. To |
| 18 | compile this driver as a module, choose M here; the module |
| 19 | will be called tpm. If unsure, say N. |
Rajiv Andrade | 7f2ab00 | 2010-05-13 17:37:54 -0300 | [diff] [blame] | 20 | Notes: |
| 21 | 1) For more TPM drivers enable CONFIG_PNP, CONFIG_ACPI |
James Morris | ec4a162 | 2010-05-07 09:19:29 +1000 | [diff] [blame] | 22 | and CONFIG_PNPACPI. |
Rajiv Andrade | 7f2ab00 | 2010-05-13 17:37:54 -0300 | [diff] [blame] | 23 | 2) Without ACPI enabled, the BIOS event log won't be accessible, |
| 24 | which is required to validate the PCR 0-7 values. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 25 | |
Jan Engelhardt | 7126b75 | 2007-07-15 23:39:31 -0700 | [diff] [blame] | 26 | if TCG_TPM |
| 27 | |
Christophe Ricard | 41a5e1c | 2016-05-19 00:35:52 +0200 | [diff] [blame] | 28 | config TCG_TIS_CORE |
| 29 | tristate |
| 30 | ---help--- |
| 31 | TCG TIS TPM core driver. It implements the TPM TCG TIS logic and hooks |
| 32 | into the TPM kernel APIs. Physical layers will register against it. |
| 33 | |
Leendert van Doorn | 27084ef | 2006-04-22 02:38:03 -0700 | [diff] [blame] | 34 | config TCG_TIS |
Peter Huewe | 4450643 | 2015-03-15 00:54:43 +0100 | [diff] [blame] | 35 | tristate "TPM Interface Specification 1.2 Interface / TPM 2.0 FIFO Interface" |
Jason Gunthorpe | 420d439 | 2016-11-07 15:44:31 -0700 | [diff] [blame] | 36 | depends on X86 || OF |
Christophe Ricard | 41a5e1c | 2016-05-19 00:35:52 +0200 | [diff] [blame] | 37 | select TCG_TIS_CORE |
Leendert van Doorn | 27084ef | 2006-04-22 02:38:03 -0700 | [diff] [blame] | 38 | ---help--- |
| 39 | If you have a TPM security chip that is compliant with the |
Peter Huewe | 4450643 | 2015-03-15 00:54:43 +0100 | [diff] [blame] | 40 | TCG TIS 1.2 TPM specification (TPM1.2) or the TCG PTP FIFO |
| 41 | specification (TPM2.0) say Yes and it will be accessible from |
| 42 | within Linux. To compile this driver as a module, choose M here; |
| 43 | the module will be called tpm_tis. |
Leendert van Doorn | 27084ef | 2006-04-22 02:38:03 -0700 | [diff] [blame] | 44 | |
Christophe Ricard | 0edbfea | 2016-05-19 00:35:53 +0200 | [diff] [blame] | 45 | config TCG_TIS_SPI |
| 46 | tristate "TPM Interface Specification 1.3 Interface / TPM 2.0 FIFO Interface - (SPI)" |
| 47 | depends on SPI |
| 48 | select TCG_TIS_CORE |
| 49 | ---help--- |
| 50 | If you have a TPM security chip which is connected to a regular, |
| 51 | non-tcg SPI master (i.e. most embedded platforms) that is compliant with the |
| 52 | TCG TIS 1.3 TPM specification (TPM1.2) or the TCG PTP FIFO |
| 53 | specification (TPM2.0) say Yes and it will be accessible from |
| 54 | within Linux. To compile this driver as a module, choose M here; |
| 55 | the module will be called tpm_tis_spi. |
| 56 | |
Jason Gunthorpe | a2871c6 | 2013-10-06 12:43:36 -0600 | [diff] [blame] | 57 | config TCG_TIS_I2C_ATMEL |
| 58 | tristate "TPM Interface Specification 1.2 Interface (I2C - Atmel)" |
| 59 | depends on I2C |
| 60 | ---help--- |
| 61 | If you have an Atmel I2C TPM security chip say Yes and it will be |
| 62 | accessible from within Linux. |
| 63 | To compile this driver as a module, choose M here; the module will |
| 64 | be called tpm_tis_i2c_atmel. |
| 65 | |
Peter Huewe | aad628c | 2012-08-07 11:42:32 +0200 | [diff] [blame] | 66 | config TCG_TIS_I2C_INFINEON |
| 67 | tristate "TPM Interface Specification 1.2 Interface (I2C - Infineon)" |
| 68 | depends on I2C |
| 69 | ---help--- |
| 70 | If you have a TPM security chip that is compliant with the |
| 71 | TCG TIS 1.2 TPM specification and Infineon's I2C Protocol Stack |
| 72 | Specification 0.20 say Yes and it will be accessible from within |
| 73 | Linux. |
| 74 | To compile this driver as a module, choose M here; the module |
Peter Huewe | b3f2436 | 2013-10-22 01:12:15 +0200 | [diff] [blame] | 75 | will be called tpm_i2c_infineon. |
Peter Huewe | aad628c | 2012-08-07 11:42:32 +0200 | [diff] [blame] | 76 | |
Jason Gunthorpe | 4c336e4 | 2013-10-06 12:43:13 -0600 | [diff] [blame] | 77 | config TCG_TIS_I2C_NUVOTON |
| 78 | tristate "TPM Interface Specification 1.2 Interface (I2C - Nuvoton)" |
| 79 | depends on I2C |
| 80 | ---help--- |
| 81 | If you have a TPM security chip with an I2C interface from |
| 82 | Nuvoton Technology Corp. say Yes and it will be accessible |
| 83 | from within Linux. |
| 84 | To compile this driver as a module, choose M here; the module |
| 85 | will be called tpm_i2c_nuvoton. |
| 86 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 87 | config TCG_NSC |
| 88 | tristate "National Semiconductor TPM Interface" |
Rajiv Andrade | 2f592f2 | 2011-11-01 09:42:58 -0200 | [diff] [blame] | 89 | depends on X86 |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 90 | ---help--- |
David Sterba | 3dde6ad | 2007-05-09 07:12:20 +0200 | [diff] [blame] | 91 | If you have a TPM security chip from National Semiconductor |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 92 | say Yes and it will be accessible from within Linux. To |
| 93 | compile this driver as a module, choose M here; the module |
| 94 | will be called tpm_nsc. |
| 95 | |
| 96 | config TCG_ATMEL |
| 97 | tristate "Atmel TPM Interface" |
Uwe Kleine-König | ce816fa | 2014-04-07 15:39:19 -0700 | [diff] [blame] | 98 | depends on PPC64 || HAS_IOPORT_MAP |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 99 | ---help--- |
| 100 | If you have a TPM security chip from Atmel say Yes and it |
| 101 | will be accessible from within Linux. To compile this driver |
| 102 | as a module, choose M here; the module will be called tpm_atmel. |
| 103 | |
Marcel Selhorst | ebb81fd | 2005-07-27 11:45:12 -0700 | [diff] [blame] | 104 | config TCG_INFINEON |
Marcel Selhorst | f9abb02 | 2005-08-05 11:59:33 -0700 | [diff] [blame] | 105 | tristate "Infineon Technologies TPM Interface" |
Bjorn Helgaas | cedb27d | 2008-04-29 01:03:25 -0700 | [diff] [blame] | 106 | depends on PNP |
Marcel Selhorst | ebb81fd | 2005-07-27 11:45:12 -0700 | [diff] [blame] | 107 | ---help--- |
| 108 | If you have a TPM security chip from Infineon Technologies |
Marcel Selhorst | f9abb02 | 2005-08-05 11:59:33 -0700 | [diff] [blame] | 109 | (either SLD 9630 TT 1.1 or SLB 9635 TT 1.2) say Yes and it |
| 110 | will be accessible from within Linux. |
| 111 | To compile this driver as a module, choose M here; the module |
Marcel Selhorst | ebb81fd | 2005-07-27 11:45:12 -0700 | [diff] [blame] | 112 | will be called tpm_infineon. |
| 113 | Further information on this driver and the supported hardware |
Justin P. Mattock | 631dd1a | 2010-10-18 11:03:14 +0200 | [diff] [blame] | 114 | can be found at http://www.trust.rub.de/projects/linux-device-driver-infineon-tpm/ |
Marcel Selhorst | ebb81fd | 2005-07-27 11:45:12 -0700 | [diff] [blame] | 115 | |
Ashley Lai | 132f762 | 2012-08-22 16:17:43 -0500 | [diff] [blame] | 116 | config TCG_IBMVTPM |
| 117 | tristate "IBM VTPM Interface" |
Kent Yoder | 5b26603 | 2013-02-11 14:36:44 -0500 | [diff] [blame] | 118 | depends on PPC_PSERIES |
Ashley Lai | 132f762 | 2012-08-22 16:17:43 -0500 | [diff] [blame] | 119 | ---help--- |
| 120 | If you have IBM virtual TPM (VTPM) support say Yes and it |
| 121 | will be accessible from within Linux. To compile this driver |
| 122 | as a module, choose M here; the module will be called tpm_ibmvtpm. |
| 123 | |
Daniel De Graaf | e268395 | 2013-07-30 13:29:47 -0400 | [diff] [blame] | 124 | config TCG_XEN |
| 125 | tristate "XEN TPM Interface" |
| 126 | depends on TCG_TPM && XEN |
Konrad Rzeszutek Wilk | 713efca | 2013-08-30 09:02:27 -0400 | [diff] [blame] | 127 | select XEN_XENBUS_FRONTEND |
Daniel De Graaf | e268395 | 2013-07-30 13:29:47 -0400 | [diff] [blame] | 128 | ---help--- |
| 129 | If you want to make TPM support available to a Xen user domain, |
| 130 | say Yes and it will be accessible from within Linux. See |
| 131 | the manpages for xl, xl.conf, and docs/misc/vtpm.txt in |
| 132 | the Xen source repository for more details. |
| 133 | To compile this driver as a module, choose M here; the module |
| 134 | will be called xen-tpmfront. |
| 135 | |
Jarkko Sakkinen | 30fc8d1 | 2014-12-12 11:46:39 -0800 | [diff] [blame] | 136 | config TCG_CRB |
| 137 | tristate "TPM 2.0 CRB Interface" |
| 138 | depends on X86 && ACPI |
| 139 | ---help--- |
| 140 | If you have a TPM security chip that is compliant with the |
| 141 | TCG CRB 2.0 TPM specification say Yes and it will be accessible |
| 142 | from within Linux. To compile this driver as a module, choose |
| 143 | M here; the module will be called tpm_crb. |
| 144 | |
Stefan Berger | 6f99612 | 2016-04-18 13:26:15 -0400 | [diff] [blame] | 145 | config TCG_VTPM_PROXY |
| 146 | tristate "VTPM Proxy Interface" |
| 147 | depends on TCG_TPM |
Arnd Bergmann | a6885a5 | 2016-04-28 12:46:13 +0200 | [diff] [blame] | 148 | select ANON_INODES |
Stefan Berger | 6f99612 | 2016-04-18 13:26:15 -0400 | [diff] [blame] | 149 | ---help--- |
| 150 | This driver proxies for an emulated TPM (vTPM) running in userspace. |
| 151 | A device /dev/vtpmx is provided that creates a device pair |
| 152 | /dev/vtpmX and a server-side file descriptor on which the vTPM |
| 153 | can receive commands. |
| 154 | |
| 155 | |
Christophe Ricard | bf38b87 | 2015-03-08 11:17:14 +0100 | [diff] [blame] | 156 | source "drivers/char/tpm/st33zp24/Kconfig" |
Jan Engelhardt | 7126b75 | 2007-07-15 23:39:31 -0700 | [diff] [blame] | 157 | endif # TCG_TPM |