On Friday, 14 July 2017 16:16:21 UTC+8, Patrik Hagara wrote: > -----BEGIN PGP SIGNED MESSAGE----- > Hash: SHA256 > > On 07/14/2017 09:45 AM, [email protected] wrote: > > On Friday, 30 June 2017 04:17:08 UTC+8, Marek Marczykowski-Górecki > > wrote: > > > >> Oh, it isn't listed in updates-status[1], so I completely forgot. > >> Probably it was uploaded to testing before introducing that > >> system. Of course it should be migrated to current, will do. > > > > I updated to the latest AEM, but after I did that, nothing worked > > anymore. I outlined it in this post, but no one replied to it. Is > > there anything I can do to collect more information? > > > > https://groups.google.com/forum/#!topic/qubes-users/JMipWyv2heU > > > > Regards, Elias > > > > This error means that your AEM setup never worked, even before > updating. The AEM boot would always succeed no matter what, even if a > hundred evil maids tampered with it. > > Did you follow the AEM installation instruction to the letter? Do you > have Intel TXT enabled in BIOS? Did you download the right SINIT > module and add it to the GRUB config as a module loaded last? Does > GRUB load the SINIT module successfully? > > If it still doesn't work, try fully resetting the TPM (usually only > possible from the BIOS) and setting it up again.
Thank you. This explains some of the things I have seen. Unfortunately I have reset the TPM (multiple times, throughout my testing) and I keep getting the same error. I have also double-checked the SINIT module, and it's the correct one. As for Intel TXT, I can't find any option in the BIOS settings to control this specifically. Regards, Elias -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/bb88e664-f384-4dff-aff9-324d44ef943d%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
