用的是微软的 TSS.java 开发工具包,做个 TPM 可信模块开发,遇到的问题,源码如下:
public static void main(String[] args) throws IOException {
Tpm tpm = TpmFactory.platformTpm();
byte[] nullVec = new byte[0];
byte[] aesKey = Helpers.RandomBytes(16);
TPMT_PUBLIC aesTemplate = new TPMT_PUBLIC(TPM_ALG_ID.SHA256, new TPMA_OBJECT(new TPMA_OBJECT[]{TPMA_OBJECT.decrypt, TPMA_OBJECT.sign, TPMA_OBJECT.fixedParent, TPMA_OBJECT.fixedTPM, TPMA_OBJECT.userWithAuth}), new byte[0], new TPMS_SYMCIPHER_PARMS(new TPMT_SYM_DEF_OBJECT(TPM_ALG_ID.AES, 128, TPM_ALG_ID.CFB)), new TPM2B_DIGEST_SYMCIPHER());
TPMS_SENSITIVE_CREATE sensCreate = new TPMS_SENSITIVE_CREATE(nullVec, aesKey);
CreatePrimaryResponse aesPrimary = tpm.CreatePrimary(tpm._OwnerHandle, sensCreate, aesTemplate, nullVec, new TPMS_PCR_SELECTION[0]);
TPM_HANDLE aesHandle = aesPrimary.handle;
byte[] toEncrypt = new byte[]{1, 2, 3, 4, 5, 4, 3, 2, 12, 3, 4, 5};
byte[] iv = new byte[16];
EncryptDecryptResponse encrypted = tpm.EncryptDecrypt(aesHandle, (byte) 0, TPM_ALG_ID.CFB, iv, toEncrypt);
EncryptDecryptResponse decrypted = tpm.EncryptDecrypt(aesHandle, (byte) 1, TPM_ALG_ID.CFB, iv, encrypted.outData);
System.out.println("AES128 encryption with key = " + Helpers.toHex(aesKey));
System.out.println(" Input data:" + Helpers.toHex(toEncrypt));
System.out.println(" encrypted data:" + Helpers.toHex(encrypted.outData));
System.out.println(" decrypted data:" + Helpers.toHex(decrypted.outData));
// persistent handle
TPM_HANDLE persistentHandle = TPM_HANDLE.persistent(0x81010001);
tpm.EvictControl(TPM_HANDLE.from(TPM_RH.OWNER), aesHandle, persistentHandle);
if (!Helpers.arraysAreEqual(toEncrypt, decrypted.outData)) {
throw new RuntimeException("encrypt/decrypt failed!");
} else {
tpm.FlushContext(aesHandle);
}
// clean object
if (!Helpers.arraysAreEqual(toEncrypt, decrypted.outData)) {
throw new RuntimeException("encrypt/decrypt failed!");
} else {
tpm.FlushContext(aesHandle);
}
}
错误信息如下:
Exception in thread "main" tss.TpmException: Unexpected response tag {NO_SESSIONS}
at tss.TpmBase.DispatchCommand(TpmBase.java:391)
at tss.Tpm.EvictControl(Tpm.java:1930)
at com.xxx.assist.XXXX.main(XXXX.java:12)
这是一个专为移动设备优化的页面(即为了让你能够在 Google 搜索结果里秒开这个页面),如果你希望参与 V2EX 社区的讨论,你可以继续到 V2EX 上打开本讨论主题的完整版本。
V2EX 是创意工作者们的社区,是一个分享自己正在做的有趣事物、交流想法,可以遇见新朋友甚至新机会的地方。
V2EX is a community of developers, designers and creative people.