aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorJames Bottomley <James.Bottomley@HansenPartnership.com>2018-11-12 08:04:18 -0800
committerJames Bottomley <James.Bottomley@HansenPartnership.com>2018-11-12 08:04:18 -0800
commit1b6fde3fae5242fb5216afb2bd61c8d359b70d7a (patch)
tree5610030e99ae57707f316f5c44b2297b6a360804
parent24ef282ee4d94cac5adbbfd2e825e4996afb1762 (diff)
downloadopenssl_tpm2_engine-1b6fde3fae5242fb5216afb2bd61c8d359b70d7a.tar.gz
e_tpm2-ecc.c: enable response encryption for ecda decryption
The response payload could be sensitive, so protect with encryption like the RSA case. Signed-off-by: James Bottomley <James.Bottomley@HansenPartnership.com>
-rw-r--r--e_tpm2-ecc.c2
1 files changed, 1 insertions, 1 deletions
diff --git a/e_tpm2-ecc.c b/e_tpm2-ecc.c
index e35b730..dcb951e 100644
--- a/e_tpm2-ecc.c
+++ b/e_tpm2-ecc.c
@@ -280,7 +280,7 @@ static int tpm2_ecc_compute_key(unsigned char **psec, size_t *pseclen,
(COMMAND_PARAMETERS *)&in,
NULL,
TPM_CC_ECDH_ZGen,
- authHandle, auth, 0,
+ authHandle, auth, TPMA_SESSION_ENCRYPT,
TPM_RH_NULL, NULL, 0);
if (rc) {
tpm2_error(rc, "TPM2_ECDH_ZGen");