On 11/13/2014 12:08 AM, Mike Pontillo wrote: > My $0.02, > > It might be better to use the TPM to perform a "seal" operation on > some key data needed for the system to operate. (that is, seal it to a > known good PCR value)
That's what Bitlocker does. There are two different use cases: Do you want to prevent the system from booting if the PCRs change or permit detection of the change? Both are valid, but different. ------------------------------------------------------------------------------ Comprehensive Server Monitoring with Site24x7. Monitor 10 servers for $9/Month. Get alerted through email, SMS, voice calls or mobile push notifications. Take corrective actions from your mobile device. http://pubads.g.doubleclick.net/gampad/clk?id=154624111&iu=/4140/ostg.clktrk _______________________________________________ TrouSerS-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/trousers-users
