security/intel/txt: Set up TPM in bootblock if using measured boot

Change-Id: I1225757dbc4c6fb5a30d1aa12987661a0a6eb538
Signed-off-by: Arthur Heymans <arthur@aheymans.xyz>
Reviewed-on: https://review.coreboot.org/c/coreboot/+/52969
Tested-by: build bot (Jenkins) <no-reply@coreboot.org>
Reviewed-by: Philipp Deppenwiese <zaolin.daisuki@gmail.com>
Reviewed-by: Angel Pons <th3fanbus@gmail.com>
This commit is contained in:
Arthur Heymans 2021-05-06 10:28:26 +02:00 committed by Patrick Georgi
parent 6c7648d9c1
commit eb73e5f4a4
1 changed files with 1 additions and 0 deletions

View File

@ -6,6 +6,7 @@ config INTEL_TXT
select MRC_SETTINGS_PROTECT if CACHE_MRC_SETTINGS select MRC_SETTINGS_PROTECT if CACHE_MRC_SETTINGS
select ENABLE_VMX if CPU_INTEL_COMMON select ENABLE_VMX if CPU_INTEL_COMMON
select AP_IN_SIPI_WAIT select AP_IN_SIPI_WAIT
select TPM_MEASURED_BOOT_INIT_BOOTBLOCK if TPM_MEASURED_BOOT
depends on (TPM1 || TPM2) depends on (TPM1 || TPM2)
depends on CPU_INTEL_FIRMWARE_INTERFACE_TABLE depends on CPU_INTEL_FIRMWARE_INTERFACE_TABLE
depends on PLATFORM_HAS_DRAM_CLEAR depends on PLATFORM_HAS_DRAM_CLEAR