Re: [PATCH v2 08/10] util/grub-protect: Support NV index mode

2025-01-09 Thread Gary Lin via Grub-devel
On Thu, Jan 09, 2025 at 02:03:47PM -0500, Stefan Berger wrote: > > > On 1/8/25 10:58 PM, Gary Lin wrote: > > This commit implements the missing NV index mode support in > > 'grub-protect'. NV index mode stores the sealed key in the TPM > > non-volatile memory (NVRAM) instead of a file. There are

Re: [PATCH v2 08/10] util/grub-protect: Support NV index mode

2025-01-09 Thread Stefan Berger
On 1/8/25 10:58 PM, Gary Lin wrote: This commit implements the missing NV index mode support in 'grub-protect'. NV index mode stores the sealed key in the TPM non-volatile memory (NVRAM) instead of a file. There are two supported types of TPM handles. 1. Persistent handle (0x8100~0x81F

[PATCH v2 08/10] util/grub-protect: Support NV index mode

2025-01-08 Thread Gary Lin via Grub-devel
This commit implements the missing NV index mode support in 'grub-protect'. NV index mode stores the sealed key in the TPM non-volatile memory (NVRAM) instead of a file. There are two supported types of TPM handles. 1. Persistent handle (0x8100~0x81FF) TPM 2.0 Key File format (--tpm2key