On Thu, 2019-12-12 at 12:58 -0500, James Bottomley wrote: > The original code, before it was moved into security/keys/trusted-keys > had a flush after the blob unseal. Without that flush, the volatile > handles increase in the TPM until it becomes unusable and the system > either has to be rebooted or the TPM volatile area manually flushed. > Fix by adding back the lost flush, which we now have to export because > of the relocation of the trusted key code may cause the consumer to be > modular. > > Signed-off-by: James Bottomley <James.Bottomley@xxxxxxxxxxxxxxxxxxxxx> > Fixes: 2e19e10131a0 ("KEYS: trusted: Move TPM2 trusted keys code") Reviewed-by: Jarkko Sakkinen <jarkko.sakkinen@xxxxxxxxxxxxxxx> Will collect to my rc3 PR, thank you. /Jarkko