Skip to content

F42: Error: Profile could not be applied to an existing TPM 2 instance. #92

@jmarrero

Description

@jmarrero

On Fedora 42 (pre-release) I can't start a VM, I get:

Successfully created NVRAM area 0x1c08000 for platform certificate.
Successfully created ECC EK with handle 0x81010016.
  Invoking /usr/bin/swtpm_localca --type ek --ek x=eb49b30f5e8efd4462d4bab9ab066758255df982cdb97f534cdc8c9519521360f74c46cd99930abbdd15d34aca5cf377,y=f6b4db87c96b71662c84798eba0825cab31bf229f6a27e12ad3d9f09ee9d3a399428e6a4faaf8e1cc45a5e1eb771858e,id=secp384r1 --dir /tmp/swtpm_setup.certs.GLAD32 --logfile /var/home/jmarrero/.cache/libvirt/qemu/log/podman-bootc-e26ef6887d95-swtpm.log --vmid podman-bootc-e26ef6887d95:d5ffba6f-0dc0-4096-9268-c9f93c7dc2d3 --tpm-spec-family 2.0 --tpm-spec-level 0 --tpm-spec-revision 183 --tpm-manufacturer id:00001014 --tpm-model swtpm --tpm-version id:20240125 --tpm2 --configfile /var/home/jmarrero/.config/swtpm-localca.conf --optsfile /var/home/jmarrero/.config/swtpm-localca.options
Successfully created EK certificate locally.
Successfully created NVRAM area 0x1c00016 for ECC EK certificate.
Successfully activated PCR banks sha256 among sha1,sha256,sha384,sha512.
Successfully authored TPM state.
Ending vTPM manufacturing @ Mon 17 Mar 2025 08:27:37 AM EDT
Starting vTPM reconfiguration as jmarrero:jmarrero @ Mon 17 Mar 2025 08:27:37 AM EDT
Apply profile: {"Name":"default-v1"}
Error: Profile could not be applied to an existing TPM 2 instance.
swtpm process terminated unexpectedly.
Could not start the TPM 2.
An error occurred. Authoring the TPM state failed.
Ending vTPM manufacturing @ Mon 17 Mar 2025 08:27:37 AM EDT

Was working before the upgrade, not sure if I need to do something different on F42.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions