-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

On 07/20/2017 10:09 AM, Elias Mårtenson wrote:
> On 20 July 2017 at 15:58, Patrik Hagara <[email protected] 
> <mailto:[email protected]>> wrote:
> 
> 
> This looks to me like tboot either wasn't loaded at all or memory 
> logging is disabled.
> 
> Check the tboot cmdline used -- search for the following in 
> /boot/grub2/grub.cfg:
> 
> multiboot /tboot.gz placeholder logging=memory,serial
> 
> If memory logging is enabled, try adding vga there too (plus a
> delay to be able to read the output):
> 
> multiboot /tboot.gz placeholder logging=memory,serial,vga
> vga_delay=10
> 
> You'll have 10 seconds per screenfull of tboot log messages, may
> as well take photos. :)
> 
> 
> Thanks. I got three screenfuls of information. I've shared the
> pictures here: https://photos.app.goo.gl/xNaxca5fxviwmfw12
> 
> The error "failed to get public data of 0x40000001 in TPM NV"
> seems interesting, but I have no idea how to deal with it.
> 
> Regards, Elias

That's a non-fatal error, I have that in my log too.

What's more interesting is the last photo, in particular the line:

  ERR: SENTER disabled by feature control MSR (5)

I _think_ this means that your motherboard/BIOS does not support Intel
TXT as it seems to be deliberately disabled in the CPU's
Model-Specific Register (MSR).

Maybe try searching for the TXT-enabling option in BIOS again (it may
be hidden until you turn on something else, eg. Intel VT-d/IOMMU like
on my Lenovo laptop). Check whether there's a BIOS update available, too
.


Cheers,
Patrik
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQIcBAEBCAAGBQJZcGgzAAoJEFwecd8DH5rldX4P/3oMCuGLbS2tgSqu5VGerZ9w
o4G8vBqKqANF9jusTEFdT/8dOLrrwOwsJDpFUWyBQS92PYgCl5nQzCcyi5X6u+Ek
bJsoGDRk574/B3j0yeuJVzAzCqD96Tse/3/XUGu6Jz996lSW+++77sTGLPZGR9yC
q3xmRtWy+DSV+3HbK75aVe+vzpNmmH4kMDtOJGcAm8LBEMmjNF/LNVVfs/VnS16q
wW2GN51EANmtbStpGzZ9wklfkWDUTF3Nzrk2h37n12MiD0esVtuIjIUEOc04eFLL
UoSGygv5hYWzLIretjmBXMZINic4od/+xiHxNku01CbPVkvr4nRl/xwH4UnAQncn
HqQtiXRkKhCXxYJnyinDJV7Lqaiskppg4W0YdPUrRgjO5vlBL1wGET7DOytJYsmc
YxNvAz4Yz3Cbp2atnFI4LkoGNnGUwymWNSBPNh4izSckO3jRw0ebfoObRXfC+p1g
1FiZtCQgsftV3oKz7FVReAUbOkqDqFtbGUNh/Uqo3kQZhq/VSkYbVOglz72h7NWq
mSkNSY4VXAPJEPj0+cI4K6mTtHiWPEQYFq6BOLU6znX/W4X9qruUemRD7UYx9DPY
HYP4O4rd9A/dHj4m+p048WjrH6e1yg6OoLPh7oduUlXb0CU9yE/KYPvoOVj6lJp6
1xuEE7bRyPdUEZ70dZXB
=Nyes
-----END PGP SIGNATURE-----

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/a0e746ce-ee44-cd14-8154-24fb62cf248e%40gmail.com.
For more options, visit https://groups.google.com/d/optout.

Attachment: 0x031F9AE5.asc
Description: application/pgp-keys

Attachment: 0x031F9AE5.asc.sig
Description: PGP signature

Reply via email to