Bug 1873296
| Summary: | [tboot] system stops after register dump after updating to version 1.9.12 | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 8 | Reporter: | Joachim Frieben <jfrieben> |
| Component: | tboot | Assignee: | Tony Camuso <tcamuso> |
| Status: | CLOSED ERRATA | QA Contact: | Release Test Team <release-test-team-automation> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | CentOS Stream | CC: | bstinson, carl, darcari, jdonohue, jfeeney, jwboyer, pjanda, pkotvan, pm-rhel, release-test-team-automation |
| Target Milestone: | rc | Keywords: | OtherQA, Triaged |
| Target Release: | 8.5 | Flags: | pm-rhel:
mirror+
|
| Hardware: | x86_64 | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | tboot-1.10.2-1.el8 | Doc Type: | If docs needed, set a value |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2021-11-09 19:57:37 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Joachim Frieben
2020-08-27 19:01:36 UTC
(In reply to Joachim Frieben from comment #0) > Description of problem: > For current CentOS Stream, Intel TXT based verified boot hangs after dumping > the register map after updating package tboot from version 1.9.10 to 1.9.12. > > Version-Release number of selected component (if applicable): > 1.9.12 > > How reproducible: > Always. > > Steps to Reproduce: > 1. Update CentOS Stream including tboot 1.9.10. Specifically, which CentOS stream? RHEL-8.? > 2. Update boot loader configuration. > 3. Reboot. > > Actual results: > System hangs after dumping the register map. tboot-1.9.12 has been tested successfully by intel on RHEL-8.3.0 beta. Please provide the specific hardware, vendor, model, etc, as well as the firmware version. > Expected results: > System boots successfully. > > Additional info: > - The system behaves as expected as long as package tboot is kept at version > 1.9.10. > - The system is a GM45 based Lenovo Thinkpad T400. > - Recent Fedora releases sporting tboot 1.9.12 behaved as expected (maybe a > kernel issue? The latest one is 4.18.0-227.el8.x86_64). (In reply to Tony Camuso from comment #1) 1. There is only one CentOS Stream as a particular version of Red Hat Enterprise Linux 8 (see version "CentOS Stream" of product tag "Red Hat Enterprise Linux" hereabove). 2. Red Hat Enterprise Linux 8.3 Beta only includes package tboot-1.9.10-1.el8. I therefore wonder how version 1.9.12 has been tested (successfully). 3. In contrast with my initial comment, Fedora 32 and Fedora 33 only sport versions of tboot lower than or equal to version 1.9.11 instead of version 1.9.12. 4. System properties include: BIOS Information Vendor: LENOVO Version: 7UET94WW (3.24) Release Date: 10/17/2012 Address: 0xE0000 Runtime Size: 128 kB ROM Size: 8 MB .. BIOS Revision: 3.36 Firmware Revision: 1.6 System Information Manufacturer: LENOVO Product Name: 2768W9J Version: ThinkPad T400 .. Family: ThinkPad T400 (In reply to Joachim Frieben from comment #2) Thank you for the additional information, it will be useful. tboot-1.9.12 was tested successfully on RHEL-8.3.0-20200616.0-x86_64 by Lenovo. See comment #15 and comment #16 in bugzilla #1790169 I notice that they used TPM 1.2 for their test. Are you using TMP 2.0 ? > (In reply to Tony Camuso from comment #1) > 1. There is only one CentOS Stream as a particular version of Red Hat > Enterprise Linux 8 (see version "CentOS Stream" of product tag "Red Hat > Enterprise Linux" hereabove). > 2. Red Hat Enterprise Linux 8.3 Beta only includes package > tboot-1.9.10-1.el8. I therefore wonder how version 1.9.12 has been tested > (successfully). > 3. In contrast with my initial comment, Fedora 32 and Fedora 33 only sport > versions of tboot lower than or equal to version 1.9.11 instead of version > 1.9.12. > 4. System properties include: > BIOS Information > Vendor: LENOVO > Version: 7UET94WW (3.24) > Release Date: 10/17/2012 > Address: 0xE0000 > Runtime Size: 128 kB > ROM Size: 8 MB > .. > BIOS Revision: 3.36 > Firmware Revision: 1.6 > > System Information > Manufacturer: LENOVO > Product Name: 2768W9J > Version: ThinkPad T400 > .. > Family: ThinkPad T400 (In reply to Tony Camuso from comment #3) 1. After upgrading to package tboot-1.9.12-2.el8 from CentOS 8 Stream, Red Hat Enterprise Linux 8.3 Beta fails to boot just as CentOS 8 Stream does. Downgrading to tboot-1.9.10-1.el8 restores normal operation. 2. This notebook Lenovo ThinkPad T400 is a fairly old system which only supports TPM 1.2. 3. Unfortunately, I am not authorized to open bug 1790169. For current Fedora 33 including package tboot-1.9.11-2.fc3, the system boots reliably as expected. The issue may therefore be due to a regression introduced between versions 1.9.11 and 1.9.12. (In reply to Joachim Frieben from comment #6) > For current Fedora 33 including package tboot-1.9.11-2.fc3, the system boots > reliably as expected. The issue may therefore be due to a regression > introduced between versions 1.9.11 and 1.9.12. The regression must be related to this specific product (2768W9J), because yehs1 of Lenovo said that tboot-1.9.12-2 passed his testing. See https://bugzilla.redhat.com/show_bug.cgi?id=1790169#c15 I will conduct my own tests on systems I have available to me to see if I can reproduce the problem on them. Please try tboot 1.10.0, which you can download from the following link. https://people.redhat.com/tcamuso/tboot/tboot-1.10.0-1.el8.x86_64.rpm (In reply to Tony Camuso from comment #9) Current CentOS 8 Stream boots correctly again after upgrading to tboot-1.10.0-1.el8. (In reply to Tony Camuso from comment #9) Please note that the latest tboot-1.10.1 was released on 2021-03-30. This issue also affects Red Hat Enterprise Linux 8.4 GA including released updates. The issue gets resolved by upgrading to package tboot-1.10.0-1.el8. Please try https://people.redhat.com/tcamuso/tboot/el8/tboot-1.10.1-1.el8.x86_64.rpm I want to be sure it's working for you before I commit it. (In reply to Tony Camuso from comment #13) The latest update tboot-1.10.1-1.el8 works well for both of CentOS 8.4 and current CentOS 8 Stream just as its predecessor tboot-1.10.0-1.el8. Hello Joachim, are you willing to test a final tboot package for RHEL-8.5 when we have one? Best Regards Petr Janda (In reply to Petr Janda from comment #16) > Hello Joachim, > > are you willing to test a final tboot package for RHEL-8.5 when we have one? > > Best Regards > Petr Janda tboot-1.10.2-1 can be downloaded from ... https://people.redhat.com/tcamuso/tboot/el8/tboot-1.10.2-1.el8.x86_64.rpm (In reply to Petr Janda from comment #16) Of course I will, since I am using it by default with my ThinkPad T400. Hello Joachim, If you aren't using tboot version 1.10.2-1.el8 already, can you try it, please? http://download.eng.bos.redhat.com/brewroot/vol/rhel-8/packages/tboot/1.10.2/1.el8/x86_64/tboot-1.10.2-1.el8.x86_64.rpm In case you've tested it already, just let me know the result. Best Regards Petr Janda (In reply to Petr Janda from comment #26) Package tboot-1.10.2-1.el8 as included in current CentOS 8 Stream works great for me! (In reply to Petr Janda from comment #26) This update is still missing for CentOS 8. Do I need to clone the bug report for version 8.4? (In reply to Joachim Frieben from comment #31) > (In reply to Petr Janda from comment #26) > This update is still missing for CentOS 8. Do I need to clone the bug report > for version 8.4? CentOS Linux 8 is a rebuild of released RHEL content. This has not been released in RHEL yet. You do not need to open a separate bug. It will show up in CentOS Linux 8 in due course. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (tboot bug fix and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2021:4471 This BZ has been closed |