On 10/22/21 11:01 AM, James Bottomley wrote:
On Fri, 2021-10-22 at 10:52 -0400, Stefan Berger wrote:
along with the quote on the sha1 bank.
The validator shouldn't accept that quote ... it should require a quote
covering all banks. This is the point: you can't fake the quote and
the quote should cover all banks to assure you that unextended banks
really are.
Unfortunately this seems to be flawed on the TPM2_Quote level...
Stefan
-=-=-=-=-=-=-=-=-=-=-=-
Groups.io Links: You receive all messages sent to this group.
View/Reply Online (#82540): https://edk2.groups.io/g/devel/message/82540
Mute This Topic: https://groups.io/mt/86487987/21656
Group Owner: devel+ow...@edk2.groups.io
Unsubscribe: https://edk2.groups.io/g/devel/unsub [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-