[tboot-devel] [ANNOUNCEMENT] PCR Extended Policy - planned DEFEATURING

2021-12-01 Thread Randzio, Pawel
Hello, I would like to inform you that there are plans to defeature TBOOT extpol option and fix it to current default. The change affects TPM2.0 PCR Extended Policy Support. It has two options: * "Maximum Agility" - hashes computed using TPM2.0 * "Maximum Performance" - hashes computed

Re: [tboot-devel] [ANNOUNCEMENT] PCR Extended Policy - planned DEFEATURING

2021-12-01 Thread Dr. G.W. Wettstein
On Dec 1, 9:04am, "Randzio, Pawel" wrote: } Subject: [tboot-devel] [ANNOUNCEMENT] PCR Extended Policy - planned DEFEAT > Hello, Good morning, I hope this note finds the day, or evening, going well for everyone. > I would like to inform you that there are plans to defeature TBOOT > extpol option

[tboot-devel] PCR17 Replay Issue

2021-12-01 Thread Thompson, Kent
Hi, We're encountering an issue in that the event log measurements in PCR17 (see eventlog.json attachment) are not "replaying" with the PCR's final measurement. In other TXT/TBoot environments, the code that produces the event log and performs replay (of PCR17) are reported to work. In this ca