Ecosyste.ms: OpenCollective

An open API service for software projects hosted on Open Collective.

github.com/PitchBlackRecoveryProject/android_system_security


https://github.com/PitchBlackRecoveryProject/android_system_security

Merge "Handle key parameter conversion for FBE_ICE tag" into android-12.1

14737db1429b8eebc15568bc748b2cd79ccad5c2 authored over 2 years ago by bigbiff <[email protected]>
Handle key parameter conversion for FBE_ICE tag

FBE_ICE tag needs to be converted to KM 4.0 KeyParameter
before passing params to generate key.
...

e23f478f7002bad5137e2c9eab0bd1ad60449f07 authored over 2 years ago by Phanindra Babu Pabba <[email protected]>
keystore2: don't update the sqlite db in twrp

Change-Id: I2856e3cd1f7936e508b8a7fd38ef6a0599365392

5386744a5ed022260461b7371884af60b201afef authored almost 3 years ago by bigbiff <[email protected]>
Snap for 8068644 from d6a6bba0d2bf53e33b32fc9e03481221a81bc89b to sc-v2-release

Change-Id: Ic30be788e1b289ddf715a95017f32019a01b2a67

1ec90ab2b40236b6641f754ef73e0ff2761c0aad authored almost 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "Keystore2: Delete all super keys." into sc-v2-dev

d6a6bba0d2bf53e33b32fc9e03481221a81bc89b authored almost 3 years ago by TreeHugger Robot <[email protected]>
Snap for 8055317 from 4b5af7ff7c6f57448f9b063da7fb0a6f3f2effed to sc-v2-release

Change-Id: I17c995c07bef9a9e34d891ce909c26493b48c4a7

8c83a41e62f67cabee0f4035560ca6ea66ad37dc authored about 3 years ago by Android Build Coastguard Worker <[email protected]>
Keystore2: Delete all super keys.

When a user was deleted, only the per boot key was deleted, but not the
lock screen bound wrappi...

1f2e265679d27d6197d1f82981ffe06bf4fa6b81 authored about 3 years ago by Janis Danisevskis <[email protected]>
Snap for 8050481 from b7809d011aff1b46231c79d4f15d811d0858589a to sc-v2-release

Change-Id: Id63ffaa182657413d00dc926a264b2fc92a1cdf2

ed93a9c2f9838302e9711b6b65cd5ac281cbf170 authored about 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "To initialize StrongBox KM with TEE KM" into sc-v2-dev

4b5af7ff7c6f57448f9b063da7fb0a6f3f2effed authored about 3 years ago by TreeHugger Robot <[email protected]>
[automerger skipped] Validate artifacts before calling odrefresh --compile. am: 9a374680df -s ours am: e757cdcb87 -s ours

am skip reason: Merged-In I347794f456b9809f25489156a2370d1be93d40cd with SHA-1 3469908edc is alr...

b7809d011aff1b46231c79d4f15d811d0858589a authored about 3 years ago by Martijn Coenen <[email protected]>
[automerger skipped] Validate artifacts before calling odrefresh --compile. am: 9a374680df -s ours

am skip reason: Merged-In I347794f456b9809f25489156a2370d1be93d40cd with SHA-1 3469908edc is alr...

e757cdcb872eb012e1381650efd9ec3d4ed6ce28 authored about 3 years ago by Martijn Coenen <[email protected]>
[automerger skipped] Validate artifacts before calling odrefresh --compile. am: 3469908edc -s ours

am skip reason: Merged-In I347794f456b9809f25489156a2370d1be93d40cd with SHA-1 7bf6e0a053 is alr...

1209f86da0f9b1da664a7020ccf7df8dd193d86c authored about 3 years ago by Martijn Coenen <[email protected]>
To initialize StrongBox KM with TEE KM

Ignore-AOSP-First: Cherry-picked from AOSP.
Test: Run Keystore CTS tests
Bug: b/191171542
Merged...

f22057545d10e6a515722fdbf23c757ee5a1d68b authored about 3 years ago by Manish Dwivedi <[email protected]>
Validate artifacts before calling odrefresh --compile.

Odrefresh supports partial compilation, by only re-generating the files
that are needed. This me...

9a374680df1912fb983bf174d88ddeb71932cec1 authored about 3 years ago by Martijn Coenen <[email protected]>
Validate artifacts before calling odrefresh --compile.

Odrefresh supports partial compilation, by only re-generating the files
that are needed. This me...

3469908edcceda6ac900f191b82c3a3e1e64a97c authored about 3 years ago by Martijn Coenen <[email protected]>
Snap for 8005451 from e2dac5e29747c1ae2d714341c0ca9e397be70e3f to sc-v2-release

Change-Id: I3b481ed1154fd108fddba96477e6ac0afc447ce7

25a419e0e0383378f5fb032f7d7e83491d722fd5 authored about 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "Keystore 2.0: Add CREATE_DATETIME unconditionally." into sc-v2-dev

e2dac5e29747c1ae2d714341c0ca9e397be70e3f authored about 3 years ago by TreeHugger Robot <[email protected]>
Set expired_by to be three days from now, when querying rkp_pool_state.

When collecting metrics about RKP pool status, we currently query
the remote_provisioning module...

026868e35dfca441af535f8a4f011a50a9e8a851 authored about 3 years ago by Hasini Gunasinghe <[email protected]>
Keystore 2.0: Add CREATE_DATETIME unconditionally.

Add CREATE_DATETIME unconditionally on generation and import.

Ignore-AOSP-First: Cherry-picked ...

b6bff12bafc19f44d8cfd1897603523362c62929 authored about 3 years ago by Janis Danisevskis <[email protected]>
Snap for 7968112 from 7bf6e0a053307a0918965da9be6560e77d6cfe59 to sc-v2-release

Change-Id: Ia61d3f3155c7016aaa522ece5c8cb327fa1b95d7

337d8188161033ce86b90270307ab31417695048 authored about 3 years ago by Android Build Coastguard Worker <[email protected]>
Snap for 7956453 from 90ade2f491d5662a2e3ab91c4a0e4faecd7fa10b to sc-v2-release

Change-Id: Ibee393548cd4793966082d9e5a398d46875bd0f0

6c80d537058bcd23a4ea4baaa3c1093af6658778 authored about 3 years ago by Android Build Coastguard Worker <[email protected]>
Validate artifacts before calling odrefresh --compile.

Odrefresh supports partial compilation, by only re-generating the files
that are needed. This me...

7bf6e0a053307a0918965da9be6560e77d6cfe59 authored about 3 years ago by Martijn Coenen <[email protected]>
Allow previously signed fs-verity files.

AddFilesToVerityRecursive() would fail if any of the files considered
was already in fs-verity. ...

9ac0c4047643de5bfb73d2a51942f9fff0d1332c authored about 3 years ago by Martijn Coenen <[email protected]>
Merge "Fix logic for token searching on authorize_create" into sc-v2-dev

90ade2f491d5662a2e3ab91c4a0e4faecd7fa10b authored about 3 years ago by Seth Moore <[email protected]>
Fix logic for token searching on authorize_create

We only need to check that a token with a given auth type exists if
a key has a timeout bound po...

cae8f35307df5a921b853776a3800dd9bc09f975 authored about 3 years ago by Seth Moore <[email protected]>
Snap for 7932843 from b9f9bfac86184bd466ee9aa6d9fcaadf9acd7510 to sc-v2-release

Change-Id: If4dc8677e1698fb209406236ae642175e10d1a4f

62150b9f79abb627a85222cf89169b44e5122f5d authored about 3 years ago by Android Build Coastguard Worker <[email protected]>
Keystore 2.0 engine: Handle legacy PEM certificates.

Keystore 2.0 in Android S requires all new certificates to be stored in
DER format, however, whe...

b9f9bfac86184bd466ee9aa6d9fcaadf9acd7510 authored about 3 years ago by Janis Danisevskis <[email protected]>
Snap for 7803374 from 89f78e98d30b14ec8d9681529bd1c747a76cb404 to sc-v2-release

Change-Id: Ic3e918a36c0a0f6a7cf9a4747470a0059fc55a4b

a864c8427176e4a5fa9e74c312dc621e50032dd1 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Keystore 2.0 km_compat: Buffer incomplete updates. am: b7f303146f am: d20c31e6cd

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

89f78e98d30b14ec8d9681529bd1c747a76cb404 authored over 3 years ago by Janis Danisevskis <[email protected]>
Keystore 2.0 km_compat: Buffer incomplete updates. am: b7f303146f

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

d20c31e6cdeab7e46ddf85a4e965cf8e8839c5ff authored over 3 years ago by Janis Danisevskis <[email protected]>
Keystore 2.0 km_compat: Buffer incomplete updates.

Older KM implementations do not consume data if in certain block modes
when too little data is p...

b7f303146fecc166260aced8de677dfc7322f7a3 authored over 3 years ago by Janis Danisevskis <[email protected]>
Snap for 7639977 from 2058a874976ff476178f06b282dab227d4036337 to sc-v2-release

Change-Id: Ic5155d09eb8da79664053a863c49214a8adc396e

6313359a750611f7ad163cc0b80b51be29711d75 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Revert^2 "Add deleteAllKeys to IKeystoreMaintenance" am: 93b6f681e5 am: c5d4b5da6f

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

2058a874976ff476178f06b282dab227d4036337 authored over 3 years ago by Paul Crowley <[email protected]>
Revert^2 "Add deleteAllKeys to IKeystoreMaintenance" am: 93b6f681e5

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

c5d4b5da6f9ca287fe34e1ab932ea31127f8f27f authored over 3 years ago by Paul Crowley <[email protected]>
Revert^2 "Add deleteAllKeys to IKeystoreMaintenance"

Revert submission 15536724-revert-15521094-vold-deleteAllKeys-GDJSMLXRVZ

Reason for revert: Und...

93b6f681e5ea604e035fabf68849b9f87c01cf68 authored over 3 years ago by Paul Crowley <[email protected]>
Snap for 7636897 from 97f05d0e4b2e3926fe5c16e542665354095948ca to sc-v2-release

Change-Id: I993eeee8fd0072fc2e48a2f931841aad298b2418

d5464dffa4f93cc2fb1f60867d24144944bd058f authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Revert "Add deleteAllKeys to IKeystoreMaintenance" am: 5ba41aa836 am: 1c7821bd75

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

97f05d0e4b2e3926fe5c16e542665354095948ca authored over 3 years ago by Shawn Willden <[email protected]>
Revert "Add deleteAllKeys to IKeystoreMaintenance" am: 5ba41aa836

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

1c7821bd750dd3b0fa5e3561e46f4d2d71488190 authored over 3 years ago by Shawn Willden <[email protected]>
Revert "Add deleteAllKeys to IKeystoreMaintenance"

Revert "Enable deleteAllKeys from vold"

Revert "Allow vold to deleteAllKeys in Keystore"

Rever...

5ba41aa8365083afcde31ed0872e03a87f78206f authored over 3 years ago by Shawn Willden <[email protected]>
Add deleteAllKeys to IKeystoreMaintenance am: be7cc653e6 am: 4e61e0332b

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

d2360fcff16ae93e0600b6c54a27e6e907640d36 authored over 3 years ago by Paul Crowley <[email protected]>
Add deleteAllKeys to IKeystoreMaintenance am: be7cc653e6

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

4e61e0332be686f605be045f59cfc5b9b025a787 authored over 3 years ago by Paul Crowley <[email protected]>
Add deleteAllKeys to IKeystoreMaintenance

Add a method to IKeystoreMaintenance which calls deleteAllKeys on every
KM instance. This method...

be7cc653e60252cf38ea77bf11caac5952b19a67 authored over 3 years ago by Paul Crowley <[email protected]>
Snap for 7618979 from b90a0c8680e26f05fe25456fe00dfa5a43e01f37 to sc-v2-release

Change-Id: If8fe66b5219cc18f708c3ade34a8ca1ba6760ebf

1809e79517d2972a6665244792795be584febde0 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Log metrics for RKP fallback event. am: ac057d3a99

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

b90a0c8680e26f05fe25456fe00dfa5a43e01f37 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Log metrics for RKP fallback event.

This CL adds metrics logging for fallback during RKP hybrid mode.

Ignore-AOSP-First: No merge p...

ac057d3a9945bf2f0c7ce3ad06eb969d67db0d17 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Snap for 7592414 from e546e8a78bd27c5c730c65bc13a442b25c2a8b1b to sc-v2-release

Change-Id: Ie94067f35f4a82b647934787f1de505a06604b99

b9b75ff6a7a670a03d11da293d6742a33fcbf3e7 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "Don't mark odsign as oneshot." into sc-dev am: 301d13c4ce

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

e546e8a78bd27c5c730c65bc13a442b25c2a8b1b authored over 3 years ago by Martijn Coenen <[email protected]>
Merge "Don't mark odsign as oneshot." into sc-dev

301d13c4ce39390538d2b604b7d72f858a112252 authored over 3 years ago by Martijn Coenen <[email protected]>
Don't mark odsign as oneshot.

If odsign is marked as oneshot, and it crashes (eg due to a coding
error), the device will not b...

22a13c378a86f458f70ef4f58e31573b4aa55f5b authored over 3 years ago by Martijn Coenen <[email protected]>
Snap for 7579269 from 89dfe8190d80c4a134d71dea0bea8112b86955f4 to sc-v2-release

Change-Id: I03ae592eb1b27ad146cce4ba0a9aeae862cb5351

31ddfb60786801abb4ce462036cb8c0dd55dedf7 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "Fix ill-formed certificate request" into sc-dev am: a9b1547411

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

89dfe8190d80c4a134d71dea0bea8112b86955f4 authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Fix ill-formed certificate request" into sc-dev

a9b154741131482fcb19f0fc95d211a8a3daf3a3 authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge changes from topic "full_spec_upgrade_sc" into sc-dev am: 060ba1e6ec

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

be9dcb85eb7f978ebd8776865a2ebb7d2da0f387 authored over 3 years ago by TreeHugger Robot <[email protected]>
Always fall back to factory key on any RKP error am: 7361b10ce3

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

8491916cf971058b539a3d6ea33c48f513c5d0ff authored over 3 years ago by Max Bires <[email protected]>
Merge changes from topic "full_spec_upgrade_sc" into sc-dev

* changes:
Adding plumbing for supported EC curve on impl
Always fall back to factory key on...

060ba1e6ece145dbc1a5a8bb4d687d00cd38a95c authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Keystore 2.0: Fix convertStorageKeyToEphemenral" into sc-dev am: 7e9dfba159

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

6a35826a5385499299492bd9e9ba79064889a7f3 authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Keystore 2.0: Fix convertStorageKeyToEphemenral" into sc-dev

7e9dfba159a681823700b82cea60ff03ecc0b413 authored over 3 years ago by TreeHugger Robot <[email protected]>
Fix ill-formed certificate request

1. The MAC tag value was not being included in the uploaded data, so
it was previosly impossi...

80ec4ac7847144ea6b4764d8eea08fb91d5d49e6 authored over 3 years ago by Seth Moore <[email protected]>
Keystore 2.0: Fix convertStorageKeyToEphemenral

Version binding of storage keys was broken in that the old keyblob was
passed to the KM backed i...

e204f3d1fef7c25499b6108f58fa005766e4b78e authored over 3 years ago by Janis Danisevskis <[email protected]>
Snap for 7574908 from f6731f6f2e33286cace4ae599af98ea1e00fd9f1 to sc-v2-release

Change-Id: I6987d21ac69e6f0fc0ba420dd45f3cb80c8790af

f7b772e86bbc2e5c60865e630cf5850f56625048 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Fix makeUniqueWithTrailingData. am: 2ac2bbb546

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

f6731f6f2e33286cace4ae599af98ea1e00fd9f1 authored over 3 years ago by Martijn Coenen <[email protected]>
Fix makeUniqueWithTrailingData.

And do some additional checking on the generated verity digest size.

Bug: 194334498
Test: TH, a...

2ac2bbb546b8028c2c7f5a9a7567a477eaa6ce64 authored over 3 years ago by Martijn Coenen <[email protected]>
Adding plumbing for supported EC curve on impl

This change replaces getSecurityLevels() with getImplementationInfo().
Instead of returning an a...

bb013481a25230b92a88e0b1786c1da856258527 authored over 3 years ago by Max Bires <[email protected]>
Always fall back to factory key on any RKP error

This change cuts off the error propagation from attempting to assign or
fetch a remotely provisi...

7361b10ce363ad66c90d940a2682ac84f3c9642d authored over 3 years ago by Max Bires <[email protected]>
Snap for 7537202 from 50508b56eb6e61d0a78ea608df7f495b96914bf4 to sc-v2-release

Change-Id: I6a9cf649eea705aa237ccb00434600dffef77d62

ce323b229c4885256700d01d275412b546294815 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Log keystore2 crash events. am: 4791ea8bed

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

50508b56eb6e61d0a78ea608df7f495b96914bf4 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Log keystore2 crash events.

Ignore-AOSP-First: No mergepath to AOSP.
Bug: 188590587
Test: statsd TestDrive script.
Change-Id...

4791ea8bed6db8bfbd80f662e6344a25de18d4e7 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Snap for 7521319 from 5bb06ef484af7381ef5d93cd606d1e33b7ff7b4c to sc-v2-release

Change-Id: Iefb680624b736b085160a78749b68664ad75e9f6

12398b76a1481268fdc230b9fc033ca1a3ec7a83 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Snap for 7518237 from 70aa5b0825425b57f33870d3c50ab7cb035a878c to sc-v2-release

Change-Id: I522fa575731c1b4b030b4b8a57489d6af031b98f

27eb240df62ba5a0437a22277039a3eee87dfe42 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "Optimize dependencies in rkp_factory_extraction_tool" into sc-dev am: 83e228eef2

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

5bb06ef484af7381ef5d93cd606d1e33b7ff7b4c authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Optimize dependencies in rkp_factory_extraction_tool" into sc-dev

83e228eef2431a3a1744452ced436347153d42d7 authored over 3 years ago by TreeHugger Robot <[email protected]>
Optimize dependencies in rkp_factory_extraction_tool

The binary depended on a number of shared libs, but now uses static
linking where possible.

Sto...

7a278e55ab099b9f2549ad776d1d7bbfabce60b8 authored over 3 years ago by Seth Moore <[email protected]>
Merge "Keystore 2.0 legacy Keystore: Cleanup when app/user removed." into sc-dev am: d76e8e1c98

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

70aa5b0825425b57f33870d3c50ab7cb035a878c authored over 3 years ago by Janis Danisevskis <[email protected]>
Merge "Keystore 2.0 legacy Keystore: Cleanup when app/user removed." into sc-dev

d76e8e1c98708a79a25026819a8e0fe24ab8d93e authored over 3 years ago by Janis Danisevskis <[email protected]>
Keystore 2.0 legacy Keystore: Cleanup when app/user removed.

Without this patch apps may leave the legacy keystore in an undefined
state when uninstalled and...

cbc2860dd42f0b7bc0b1af2323696524183f4866 authored over 3 years ago by Janis Danisevskis <[email protected]>
Snap for 7513903 from cc6f9ba063c6c0ab0290c081793dc8922ab09bcb to sc-v2-release

Change-Id: I7ec8b4ba1a998d79cfdacb98fcbaf4513332db86

77a9cd54fa0ff3980353e7ce566e596c5695327a authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "Log metrics related to Remote Key Provisioning (RKP)." into sc-dev am: 691d4d4dfb

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

683f05700a82217ac2878d5dd9aa5361297ccb26 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Merge "Log metrics related to Remote Key Provisioning (RKP)." into sc-dev

691d4d4dfb8fb174c336761b66c6b79fb08dbac4 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Log metrics related to Remote Key Provisioning (RKP).

This CL adds metrics related to attestation pool status and out of key
error, from keystore side...

a3444f867b8ee07dcbc911de22fc3804bb83cf87 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Merge "Use P521 curve instead of P256" into sc-dev am: 664ea465c2

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

cc6f9ba063c6c0ab0290c081793dc8922ab09bcb authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Only fetch an attestation key if challenge present" into sc-dev am: 43a43af46a

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

50970c4ae92ff1575b0d3738b73ac5712e23c6fa authored over 3 years ago by Max Bires <[email protected]>
Merge "Use P521 curve instead of P256" into sc-dev

664ea465c24f19118fb9deedb24d2cf2675885b8 authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Only fetch an attestation key if challenge present" into sc-dev

43a43af46a99983957fe43ffc07d141090d132f7 authored over 3 years ago by Max Bires <[email protected]>
Snap for 7509579 from 79db4864ef01a88a8688b7a280b4047df7b855a3 to sc-v2-release

Change-Id: I4095abe36ace0ba5e92c6d6e6b355d1ad246b61e

f5bda8b9418bb725fb3073cde173fcfae49ce61c authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge "Keystore 2.0: Extend the functionality of the Vpn profile store." into sc-dev am: 0855263453

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

e69bad63958e6c97c3bf7dcfb13b3953584bffa4 authored over 3 years ago by Janis Danisevskis <[email protected]>
Merge "Keystore 2.0: Extend the functionality of the Vpn profile store." into sc-dev

0855263453f9921bfce0384991be5d6713c0e2e1 authored over 3 years ago by Janis Danisevskis <[email protected]>
Use P521 curve instead of P256

Certification may require the use of a larger elliptic curve.

Devices that took a dogfood/beta ...

31eebb3d0a47bac333add59a77ce3b9d3e5df293 authored over 3 years ago by Paul Crowley <[email protected]>
Merge "Add JSON output to the RKP factory tool" into sc-dev am: 90a2b2780f

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

41f96125e5205dc1026473b51da1c1e724cd70b0 authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Add JSON output to the RKP factory tool" into sc-dev

90a2b2780fe1c88935e5614c3c6c34c54e266c79 authored over 3 years ago by TreeHugger Robot <[email protected]>
Merge "Add keystore API for metrics re-routing." into sc-dev am: ff8321a2ef

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

79db4864ef01a88a8688b7a280b4047df7b855a3 authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Merge "Add keystore API for metrics re-routing." into sc-dev

ff8321a2efa2b9abdf1ef6009af99b9737f5717b authored over 3 years ago by Hasini Gunasinghe <[email protected]>
Snap for 7505545 from fe1e4c978d9060767febc1dfda8cde77ff89ef05 to sc-v2-release

Change-Id: Ib85ae6800f97654356db611fc55a66e4181f2f0e

2e2a432faaefd4fa13dbb8482a6d55d168dc0ad5 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Keystore 2.0: Extend the functionality of the Vpn profile store.

It turns out there are more clients that use Keystore in a creative
way. This patch renames the ...

7f65223b4eb8c7edb0b3f816b60cb3219756a568 authored over 3 years ago by Janis Danisevskis <[email protected]>
Add keystore API for metrics re-routing.

Keystore2 atoms need to be routed to statsd via a proxy.
The proxy needs to call this API in ord...

8dc9d42c832c74cea17a9786069b5cf409bae57e authored over 3 years ago by Hasini Gunasinghe <[email protected]>
On-device signing: reject everything that's not a regular file/dir. am: 15b7f67665

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

fe1e4c978d9060767febc1dfda8cde77ff89ef05 authored over 3 years ago by Martijn Coenen <[email protected]>
Only fetch an attestation key if challenge present

Currently, KS2 will always fetch and provide an attestation key for a
key being generated. This ...

31b42b486d71d78baf8423b58980991b6f33f8a8 authored over 3 years ago by Max Bires <[email protected]>
On-device signing: reject everything that's not a regular file/dir.

We shouldn't allow anything else in the artifacts output directory.

Bug: 192061595
Test: TEST_M...

15b7f67665997f1d138e44812ac3edb17b204f6c authored over 3 years ago by Martijn Coenen <[email protected]>
Add JSON output to the RKP factory tool

The JSON format is suitable for uploading as test data. It also
includes the build fingerprint, ...

c76cd824fd767e6fad40594ca83b35f4e6a7a403 authored over 3 years ago by Seth Moore <[email protected]>
Snap for 7493928 from d71d4020768949a0e8b6ac893de4883d3866b63a to sc-v2-release

Change-Id: I129c82b00f02f27ee601438a19e11f90ce8f3ef5

475c1fd6bf5f7c05684221ce195c8edc3befe313 authored over 3 years ago by Android Build Coastguard Worker <[email protected]>
Merge changes from topic "rkp-factory-tool-redux" into sc-dev am: fabece8c06

Original change: https://googleplex-android-review.googlesource.com/c/platform/system/security/+...

d71d4020768949a0e8b6ac893de4883d3866b63a authored over 3 years ago by Seth Moore <[email protected]>