Next: Abstract key API, Previous: PKCS 11 API, Up: API reference [Contents][Index]
The following functions are to be used for TPM handling. Their prototypes lie in gnutls/tpm.h.
list: a list to store the keys
This function will get a list of stored keys in the TPM. The uuid of those keys
Returns: On success, GNUTLS_E_SUCCESS
(0) is returned, otherwise a
negative error value.
Since: 3.1.0
list: a list of the keys
This function will deinitialize the list of stored keys in the TPM.
Since: 3.1.0
list: a list of the keys
idx: The index of the key (starting from zero)
url: The URL to be returned
flags: should be zero
This function will return for each given index a URL of
the corresponding key.
If the provided index is out of bounds then GNUTLS_E_REQUESTED_DATA_NOT_AVAILABLE
is returned.
Returns: On success, GNUTLS_E_SUCCESS
(0) is returned, otherwise a
negative error value.
Since: 3.1.0
url: the URL describing the key
srk_password: a password for the SRK key
This function will unregister the private key from the TPM chip.
Returns: On success, GNUTLS_E_SUCCESS
(0) is returned, otherwise a
negative error value.
Since: 3.1.0
pk: the public key algorithm
bits: the security bits
srk_password: a password to protect the exported key (optional)
key_password: the password for the TPM (optional)
format: the format of the private key
pub_format: the format of the public key
privkey: the generated key
pubkey: the corresponding public key (may be null)
flags: should be a list of GNUTLS_TPM_* flags
This function will generate a private key in the TPM
chip. The private key will be generated within the chip
and will be exported in a wrapped with TPM’s master key
form. Furthermore the wrapped key can be protected with
the provided password
.
Note that bits in TPM is quantized value. If the input value is not one of the allowed values, then it will be quantized to one of 512, 1024, 2048, 4096, 8192 and 16384.
Allowed flags are:
Returns: On success, GNUTLS_E_SUCCESS
(0) is returned, otherwise a
negative error value.
Since: 3.1.0
Next: Abstract key API, Previous: PKCS 11 API, Up: API reference [Contents][Index]