-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On 07/20/2017 07:32 AM, [email protected] wrote:
> On Friday, 14 July 2017 16:16:21 UTC+8, Patrik Hagara  wrote:
>> -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256
>> 
>> On 07/14/2017 09:45 AM, [email protected] wrote:
>>> On Friday, 30 June 2017 04:17:08 UTC+8, Marek
>>> Marczykowski-Górecki wrote:
>>> 
>>>> Oh, it isn't listed in updates-status[1], so I completely
>>>> forgot. Probably it was uploaded to testing before
>>>> introducing that system. Of course it should be migrated to
>>>> current, will do.
>>> 
>>> I updated to the latest AEM, but after I did that, nothing
>>> worked anymore. I outlined it in this post, but no one replied
>>> to it. Is there anything I can do to collect more information?
>>> 
>>> https://groups.google.com/forum/#!topic/qubes-users/JMipWyv2heU
>>>
>>>
>>> 
Regards, Elias
>>> 
>> 
>> This error means that your AEM setup never worked, even before 
>> updating. The AEM boot would always succeed no matter what, even
>> if a hundred evil maids tampered with it.
>> 
>> Did you follow the AEM installation instruction to the letter? Do
>> you have Intel TXT enabled in BIOS? Did you download the right
>> SINIT module and add it to the GRUB config as a module loaded
>> last? Does GRUB load the SINIT module successfully?
>> 
>> If it still doesn't work, try fully resetting the TPM (usually
>> only possible from the BIOS) and setting it up again.
> 
> Thank you. This explains some of the things I have seen.
> 
> Unfortunately I have reset the TPM (multiple times, throughout my
> testing) and I keep getting the same error.
> 
> I have also double-checked the SINIT module, and it's the correct
> one.
> 
> As for Intel TXT, I can't find any option in the BIOS settings to
> control this specifically.
> 
> Regards, Elias
> 

Try checking the tboot log (from dom0) for any obvious error messages:
  sudo txt-stat


Cheers,
Patrik
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQIcBAEBCAAGBQJZcFk4AAoJEFwecd8DH5rl6xEQAIh0giBQUHatOGRkw8Q0mkdh
QVseDFR7sacWB15Zb9cYqnwg4grSpO/dazVh8ZH6xYaZFS3EZrBWwFwQ4hItWqzh
/TQ02i8IGLoa2LyVrNhYefXprPtzwBt9zz7KPpxqyzyol9i1E672GgJlq/P3FCjv
5asn0k//5WeNsgY6PRV7BMXaXVnLWWFeucEi4FE7uOcmyKHBpViIGrL3CM69Sqll
xNm/Rpy/n20gxNyQF2BbYaj+elV9LU4gw/8hH36TRtSaMpxNMOX/hZcHz5W+FKec
/DZxeLEJq+CSPLsGckLhV6rn1SzH3Y9eCc67VNP+wbjgjDdWeFiufmTT4nNzJnsF
ruMP4nvdJQ0g4APBQYk3GkpSOfgLqUlRC2WFdq8/acO2ht0vcEWFsNGq54XeZoxe
MQjRhXXQskpTApmcBOEUWzbNA2c3kLd7pYO+0J3/CLvmytnN+TKIbcq+iBO+Co2a
kgSgViJUQevzL+IAQ7qh12xFuGcth/Dfkj/BU4PQa0itwF9muOqeabcxW0eMyvU0
jrkr27lnppbVkm+V48jDYio1tOYykLAoIyd1XnzeLXdSWzPPhGtSUH54CDxJrsXk
jD91eYd11B64AkZi4d4iN1AlwriQjPGiXaSh+cvKtTmIs/d6PH0APA1bLl1tbtzJ
PWAqakWrXj/0wHI4Mk7g
=ZGT9
-----END PGP SIGNATURE-----

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/7c15748e-4296-28e7-af91-6681df234b10%40gmail.com.
For more options, visit https://groups.google.com/d/optout.

Attachment: 0x031F9AE5.asc
Description: application/pgp-keys

Attachment: 0x031F9AE5.asc.sig
Description: PGP signature

Reply via email to