Re: [PATCH v2 1/2] tpm2: add session handle context saving and restoring to the space code

From: Ken Goldman
Date: Sun Jan 29 2017 - 19:45:40 EST


On 1/27/2017 7:32 PM, James Bottomley wrote:

Sessions are also isolated during each instance of a tpm space. This
means that spaces shouldn't be able to see each other's sessions and
is enforced by ensuring that a space user may only refer to sessions
handles that are present in their own chip->session_tbl. Finally when
a space is closed, all the sessions belonging to it should be flushed
so the handles may be re-used by other spaces.

This should be true for transient objects as well.