On 11/13/2014 12:08 AM, Mike Pontillo wrote:
> My $0.02,
>
>     It might be better to use the TPM to perform a "seal" operation on
> some key data needed for the system to operate. (that is, seal it to a
> known good PCR value)

That's what Bitlocker does.

There are two different use cases:  Do you want to prevent the system 
from booting if the PCRs change or permit detection of the change?  Both 
are valid, but different.




------------------------------------------------------------------------------
Comprehensive Server Monitoring with Site24x7.
Monitor 10 servers for $9/Month.
Get alerted through email, SMS, voice calls or mobile push notifications.
Take corrective actions from your mobile device.
http://pubads.g.doubleclick.net/gampad/clk?id=154624111&iu=/4140/ostg.clktrk
_______________________________________________
TrouSerS-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/trousers-users

Reply via email to