With due respect, no this is not the same at all. They may provide the same
functionality but the technical implementation is entirely different as are
the security guarantees and the complexity of the TPM module operations. It
appears that we have very different use cases.
The notion of allowing
Phill:
This is really a description of IDevID certificates that are installed by a
factory, and then replaced by LDevID certificates that are issed by the device
owner at the time of installation. NETCONF already supports that model.What am
I missing?
Russ
> On Mar 16, 2025, at 11:31 PM, Phi