2022-10-15 02:53:42 +08:00
|
|
|
# SPDX-License-Identifier: LGPL-2.1-or-later
|
|
|
|
#
|
|
|
|
# This file is part of systemd.
|
|
|
|
#
|
|
|
|
# systemd is free software; you can redistribute it and/or modify it
|
|
|
|
# under the terms of the GNU Lesser General Public License as published by
|
|
|
|
# the Free Software Foundation; either version 2.1 of the License, or
|
|
|
|
# (at your option) any later version.
|
|
|
|
|
|
|
|
[Unit]
|
2024-03-14 05:18:13 +08:00
|
|
|
Description=TPM PCR Barrier (Initialization)
|
2022-10-15 02:53:42 +08:00
|
|
|
Documentation=man:systemd-pcrphase-sysinit.service(8)
|
|
|
|
DefaultDependencies=no
|
|
|
|
Conflicts=shutdown.target
|
2023-11-25 01:01:56 +08:00
|
|
|
After=sysinit.target tpm2.target
|
2022-10-15 02:53:42 +08:00
|
|
|
Before=basic.target shutdown.target
|
2023-02-09 07:06:27 +08:00
|
|
|
ConditionPathExists=!/etc/initrd-release
|
2023-09-27 18:13:26 +08:00
|
|
|
ConditionSecurity=measured-uki
|
2022-10-15 02:53:42 +08:00
|
|
|
|
|
|
|
[Service]
|
|
|
|
Type=oneshot
|
|
|
|
RemainAfterExit=yes
|
pcrphase: rename binary to pcrextend
The tool initially just measured the boot phase, but was subsequently
extended to measure file system and machine IDs, too. At AllSystemsGo
there were request to add more, and make the tool generically
accessible.
Hence, let's rename the binary (but not the pcrphase services), to make
clear the tool is not just measureing the boot phase, but a lot of other
things too.
The tool is located in /usr/lib/ and still relatively new, hence let's
just rename the binary and be done with it, while keeping the unit names
stable.
While we are at it, also move the tool out of src/boot/ and into its own
src/pcrextend/ dir, since it's not really doing boot related stuff
anymore.
2023-09-25 16:38:01 +08:00
|
|
|
ExecStart={{LIBEXECDIR}}/systemd-pcrextend --graceful sysinit
|
|
|
|
ExecStop={{LIBEXECDIR}}/systemd-pcrextend --graceful final
|