DO NOT MERGE: Set TEE RootOfTrust fields in Attestation Extension
Sets RootOfTrust fields in the TEE enforced AuthorizationList of the
Attestation Extension. Previously, there was no generic way to get
get verified boot state from a TEE-based Keymaster implementation.
Test: Passes keystore attestation CTS tests on a device with a KM2 TEE
implementation. Software KM still passes attestation CTS tests.
Bug: 64949951
Change-Id: I24fc0485d5c6aed7cf5b3665cbef12e627123c70
(cherry-picked from commit a4cd5b96750ade8a606d34623982432a96b8fe2a)
2 files changed