24f7579130
Earlier, attestation properties didn't match on GSI images, hence EcdsaAttestationIdTags VTS test case was skipped on GSI images. Recently attestation properties reading priority changed as ro.product.*_for_attestation -> ro.product.vendor.* -> ro.product.* that means on GSI images ro.product.vendor.* properties could be used and hence attestation should work. Incase ro.product.vendor.* properties are not same as provisioned values to KM. They should be set as ro.product.*_for_attestation on base build. Bug: 298586194 Test: atest VtsAidlKeyMintTargetTest:PerInstance/NewKeyGenerationTest#EcdsaAttestationIdTags/0_android_hardware_security_keymint_IKeyMintDevice_default Change-Id: Ie945bd8f7060e0e768daf9681d121ea5f170a6e1 |
||
---|---|---|
.. | ||
aidl | ||
support | ||
README.md | ||
TEST_MAPPING |
KeyMint HAL
This directory contains the HAL definition for KeyMint. KeyMint provides cryptographic services in a hardware-isolated environment.
Note that the IRemotelyProvisionedComponent
HAL, and it's associated types,
used to also be defined in this directory. As of Android U, this HAL has been
moved to a different directory (../rkp). This move is ABI compatible, as the
interfaces have been maintained. The build is split so that the generated
code may be built with different options.