Add oat-client element

This element installs oat-client on the image, that's necessary for
trusted boot feature in Ironic to work. This element only works on Fedora.

Intel TXT will measure BIOS, Option Rom and Kernel/Ramdisk during trusted
boot, the oat-client will securely fetch the hash values from TPM.

Change-Id: I0f1221b5708e9a5792df62ee6e73034f8bf1577c
This commit is contained in:
Lin Tan 2015-06-16 16:20:15 +08:00
parent ba6959bb92
commit 59f83ef37b
4 changed files with 30 additions and 0 deletions

View File

@ -0,0 +1,19 @@
==========
oat-client
==========
This element installs oat-client on the image, that's necessary for
trusted boot feature in Ironic to work.
Intel TXT will measure BIOS, Option Rom and Kernel/Ramdisk during trusted
boot, the oat-client will securely fetch the hash values from TPM.
.. note::
This element only works on Fedora.
Put `fedora-oat.repo` into `/etc/yum.repos.d/`::
export DIB_YUM_REPO_CONF=/etc/yum.repos.d/fedora-oat.repo
.. note::
OAT Repo is lack of a GPG signature check on packages, which can be
tracked on: https://github.com/OpenAttestation/OpenAttestation/issues/26

View File

@ -0,0 +1 @@
package-installs

View File

@ -0,0 +1,2 @@
oat-client:
oat-commandtool:

View File

@ -0,0 +1,8 @@
# Place this file in your /etc/yum.repos.d/ directory
[oat]
name=oat 2.2 packages and dependencies
baseurl=http://repos.fedorapeople.org/repos/gwei3/oat/fedora-$releasever/$basearch/
enabled=1
skip_if_unavailable=1
gpgcheck=0