>> >> 0x0000F000 TPM_NV_INDEX_EKCert >> >> Reading this NV index should get you the EK Cert if the vendor supports it. > > Thanks! > > Is there any command line tool (perhaps one of the tboot tools) that > could let me read it and save it in a nice format, e.g. x509, so I can > later analyze it using e.g. openssl?
You can use recent tpm-tools' tpm_nvread command to read out the raw data to disk. What format it will be in I don't know. :-) Kent > joanna. > -- IBM LTC Security ------------------------------------------------------------------------------ Live Security Virtual Conference Exclusive live event will cover all the ways today's security and threat landscape has changed and how IT managers can respond. Discussions will include endpoint security, mobile security and the latest in malware threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/ _______________________________________________ tboot-devel mailing list tboot-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/tboot-devel