We need to add a tool that can update Infineon TPM firmware. This can either be:
(1) a custom tool we develop based on documentation and code we have or
(2) Infineon's firmware update tool for Linux.
I've played with the latter and found that it builds and runs at least on Intel hardware. Given that firmware updating is a risky business, I'm leaning towards 2. If we sandbox the updater and make sure it never consumes user-supplied data, this should be safe enough.
Comment 1 by mnissler@chromium.org
, May 31 2017Status: Started (was: Available)