Merge "Require keymaster4 attestations to contain the right version." into pi-dev

This commit is contained in:
TreeHugger Robot
2018-08-02 21:20:10 +00:00
committed by Android (Google) Code Review

View File

@@ -308,7 +308,7 @@ bool verify_attestation_record(const string& challenge, const string& app_id,
expected_sw_enforced.push_back(TAG_ATTESTATION_APPLICATION_ID, HidlBuf(app_id));
EXPECT_GE(att_keymaster_version, 3U);
EXPECT_EQ(att_keymaster_version, 4U);
EXPECT_EQ(security_level, att_keymaster_security_level);
EXPECT_EQ(security_level, att_attestation_security_level);