-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 On 07/20/2017 07:32 AM, [email protected] wrote: > On Friday, 14 July 2017 16:16:21 UTC+8, Patrik Hagara wrote: >> -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 >> >> On 07/14/2017 09:45 AM, [email protected] wrote: >>> On Friday, 30 June 2017 04:17:08 UTC+8, Marek >>> Marczykowski-Górecki wrote: >>> >>>> Oh, it isn't listed in updates-status[1], so I completely >>>> forgot. Probably it was uploaded to testing before >>>> introducing that system. Of course it should be migrated to >>>> current, will do. >>> >>> I updated to the latest AEM, but after I did that, nothing >>> worked anymore. I outlined it in this post, but no one replied >>> to it. Is there anything I can do to collect more information? >>> >>> https://groups.google.com/forum/#!topic/qubes-users/JMipWyv2heU >>> >>> >>> Regards, Elias >>> >> >> This error means that your AEM setup never worked, even before >> updating. The AEM boot would always succeed no matter what, even >> if a hundred evil maids tampered with it. >> >> Did you follow the AEM installation instruction to the letter? Do >> you have Intel TXT enabled in BIOS? Did you download the right >> SINIT module and add it to the GRUB config as a module loaded >> last? Does GRUB load the SINIT module successfully? >> >> If it still doesn't work, try fully resetting the TPM (usually >> only possible from the BIOS) and setting it up again. > > Thank you. This explains some of the things I have seen. > > Unfortunately I have reset the TPM (multiple times, throughout my > testing) and I keep getting the same error. > > I have also double-checked the SINIT module, and it's the correct > one. > > As for Intel TXT, I can't find any option in the BIOS settings to > control this specifically. > > Regards, Elias >
Try checking the tboot log (from dom0) for any obvious error messages: sudo txt-stat Cheers, Patrik -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBCAAGBQJZcFk4AAoJEFwecd8DH5rl6xEQAIh0giBQUHatOGRkw8Q0mkdh QVseDFR7sacWB15Zb9cYqnwg4grSpO/dazVh8ZH6xYaZFS3EZrBWwFwQ4hItWqzh /TQ02i8IGLoa2LyVrNhYefXprPtzwBt9zz7KPpxqyzyol9i1E672GgJlq/P3FCjv 5asn0k//5WeNsgY6PRV7BMXaXVnLWWFeucEi4FE7uOcmyKHBpViIGrL3CM69Sqll xNm/Rpy/n20gxNyQF2BbYaj+elV9LU4gw/8hH36TRtSaMpxNMOX/hZcHz5W+FKec /DZxeLEJq+CSPLsGckLhV6rn1SzH3Y9eCc67VNP+wbjgjDdWeFiufmTT4nNzJnsF ruMP4nvdJQ0g4APBQYk3GkpSOfgLqUlRC2WFdq8/acO2ht0vcEWFsNGq54XeZoxe MQjRhXXQskpTApmcBOEUWzbNA2c3kLd7pYO+0J3/CLvmytnN+TKIbcq+iBO+Co2a kgSgViJUQevzL+IAQ7qh12xFuGcth/Dfkj/BU4PQa0itwF9muOqeabcxW0eMyvU0 jrkr27lnppbVkm+V48jDYio1tOYykLAoIyd1XnzeLXdSWzPPhGtSUH54CDxJrsXk jD91eYd11B64AkZi4d4iN1AlwriQjPGiXaSh+cvKtTmIs/d6PH0APA1bLl1tbtzJ PWAqakWrXj/0wHI4Mk7g =ZGT9 -----END PGP SIGNATURE----- -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/7c15748e-4296-28e7-af91-6681df234b10%40gmail.com. For more options, visit https://groups.google.com/d/optout.
0x031F9AE5.asc
Description: application/pgp-keys
0x031F9AE5.asc.sig
Description: PGP signature
