<div dir="ltr">Hi, <div>I've followed the recipe (<a href="https://github.com/OpenAttestation/OpenAttestation/wiki/OAT-for-RHEL-Recipe">https://github.com/OpenAttestation/OpenAttestation/wiki/OAT-for-RHEL-Recipe</a>) but didn't get it to run yet;</div>
<div>I think a step is missing -- the AIK is not available is /usr/share/oat-client (it was not available in /var/lig/oat-appraiser/ClientFiles either); </div><div>when I try to run provisioner.sh, I get the following:</div>
<div><div><span class="" style="white-space:pre">        </span></div><div><div>provisioner.sh: line 7: systemctl: command not found</div><div>### ecStorage = NVRAM###</div><div>Performing TPM provisioning...710</div><div>DONE</div>
<div>Successfully initialized TPM</div><div>Performing HIS identity provisioning...FAILED</div><div>java.util.NoSuchElementException</div><div> at java.util.StringTokenizer.nextToken(StringTokenizer.java:349)</div>
<div> at gov.niarl.his.privacyca.TpmModule.executeVer2Command(TpmModule.java:215)</div><div> at gov.niarl.his.privacyca.TpmModule.collateIdentityRequest(TpmModule.java:292)</div><div> at gov.niarl.his.privacyca.HisIdentityProvisioner.main(HisIdentityProvisioner.java:225)</div>
<div>Failed to receive AIC from Privacy CA, error 1</div><div>Registering identity with server...FAILED</div><div>java.io.FileNotFoundException: /usr/share/oat-client/aik.cer (No such file or directory)</div><div> at java.io.FileInputStream.open(Native Method)</div>
<div> at java.io.FileInputStream.<init>(FileInputStream.java:137)</div><div> at java.io.FileInputStream.<init>(FileInputStream.java:96)</div><div> at gov.niarl.his.privacyca.TpmUtils.certFromFile(TpmUtils.java:612)</div>
<div> at gov.niarl.his.privacyca.HisRegisterIdentity.main(HisRegisterIdentity.java:99)</div><div>Failed to register identity with appraiser, error 1</div></div></div><div><br></div><div><br></div><div><br></div><div>
Thanks,</div><div>/Nicolae</div></div><div class="gmail_extra"><br><br><div class="gmail_quote">On 27 October 2013 22:55, Nicolae Paladi <span dir="ltr"><<a href="mailto:n.paladi@gmail.com" target="_blank">n.paladi@gmail.com</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr">Awesome, thanks! <div><br></div><div>I'll try this out in the morning<span class="HOEnZb"><font color="#888888"><div>
<br></div><div>/Nicolae</div></font></span></div></div><div class="HOEnZb"><div class="h5"><div class="gmail_extra"><br><br><div class="gmail_quote">On 27 October 2013 17:03, Wei, Gang <span dir="ltr"><<a href="mailto:gang.wei@intel.com" target="_blank">gang.wei@intel.com</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">Please refer to<br>
<a href="https://github.com/OpenAttestation/OpenAttestation/wiki/OAT-for-RHEL-Recipe" target="_blank">https://github.com/OpenAttestation/OpenAttestation/wiki/OAT-for-RHEL-Recipe</a>.<br>
<br>
Jimmy<br>
<div><div><br>
<br>
> -----Original Message-----<br>
> From: Doron Fediuck [mailto:<a href="mailto:dfediuck@redhat.com" target="_blank">dfediuck@redhat.com</a>]<br>
> Sent: Sunday, October 27, 2013 11:53 PM<br>
> To: Nicolae Paladi<br>
> Cc: <a href="mailto:users@ovirt.org" target="_blank">users@ovirt.org</a>; Wei, Gang<br>
> Subject: Re: [Users] Trusted Pools and CentOS 6 packages<br>
><br>
><br>
><br>
> ----- Original Message -----<br>
> > From: "Nicolae Paladi" <<a href="mailto:n.paladi@gmail.com" target="_blank">n.paladi@gmail.com</a>><br>
> > To: <a href="mailto:users@ovirt.org" target="_blank">users@ovirt.org</a><br>
> > Sent: Friday, October 25, 2013 7:16:30 PM<br>
> > Subject: Re: [Users] Trusted Pools and CentOS 6 packages<br>
> ><br>
> > Doron Fediuck <dfediuck@...> writes:<br>
> ><br>
> > ><br>
> > > ----- Original Message -----<br>
> > > > From: "Gianluca Cecchi" <gianluca.cecchi@...><br>
> > > > To: "Doron Fediuck" <dfediuck@...><br>
> > > > Cc: "Wei D Chen" <wei.d.chen@...>, "users"<br>
> > > <users@...>, "Mei Yu"<br>
> > > <mei.yu@...>, "Ofri Masad"<br>
> > > > <omasad@...>, "Gang Wei" <gang.wei@...><br>
> > > > Sent: Tuesday, June 11, 2013 2:29:54 AM<br>
> > > > Subject: Re: [Users] Trusted Pools and CentOS 6 packages<br>
> > > ><br>
> > > > On Mon, Jun 10, 2013 at 6:36 PM, Doron Fediuck wrote:<br>
> > > ><br>
> > > > ><br>
> > > > > That's nice of Jimmy to assist.<br>
> > > > > Are you trying out the oVirt TCP feature or will you be using OAT<br>
> > > > > for something else?<br>
> > > ><br>
> > > > Actually the need was for OpenStack environment, but I'm going to test<br>
> > > > oVirt node too.<br>
> > > ><br>
> > > > Gianluca<br>
> > > ><br>
> > ><br>
> > > Thanks for the info.<br>
> > > Note that openstack and ovirt are using the same OAT infra,<br>
> > > but implementing the logic in a different way.<br>
> > > Let me know f you have a specific use case so I'll be able to<br>
> > > provide additional details.<br>
> > ><br>
> ><br>
> ><br>
> > Hi,<br>
> ><br>
> > I have an environment where the oat-server is on a Ubuntu, while<br>
> > the compute hosts are CentOS servers.<br>
> ><br>
> > I have installed the packages for the oat-server from the Ubuntu<br>
> > repositories, and there is indeed a "ClientFiles" directory, but<br>
> > but it lacks installation files (just the following:<br>
> > endorsement.p12 install.bat lib OAT.properties<br>
> OATprovisioner.properties<br>
> > PrivacyCA.cer TrustStore.jks)<br>
> ><br>
> ><br>
> > The questions are:<br>
> > * are there packages for centos 6.4 available?<br>
> > * how can the client files be generated by the oat-server?<br>
> ><br>
> > cheers,<br>
> > /Nicolae<br>
> ><br>
><br>
> Hi Nicolae,<br>
> Adding Jimmy for RPM updates.<br>
> Jimmy, are you packaging the OAT for el6 and where can it be found?<br>
><br>
> Also, some of the issues are available here:<br>
> <a href="http://www.ovirt.org/Trusted_compute_pools_deployment" target="_blank">http://www.ovirt.org/Trusted_compute_pools_deployment</a><br>
><br>
> Doron<br>
</div></div></blockquote></div><br></div>
</div></div></blockquote></div><br></div>