grub-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: TPM support status ?


From: Michael Gorven
Subject: Re: TPM support status ?
Date: Wed, 19 Aug 2009 21:53:10 +0200
User-agent: Mutt/1.5.18 (2008-05-17)

On Wed, Aug 19, 2009 at 04:01:39PM +0200, Robert Millan wrote:
Can you give a reason not to provide the owner with any of:

 - A printed copy of the private key corresponding to the chip he paid for.

Not really, although not having any trace of the private key reduces the chance of it being stolen. I find this point kind of moot though because the chip can be reset completely -- you don't need the private key.

 - A button in the back of the chip that disables "hostile mode" and makes
   it sign everything that was asked for (so-called "owner override")

Because that would not make it secure from physical access.

Michael

--
http://michael.gorven.za.net/
PGP Key ID 6612FE85
S/MIME Key ID AAF09E0E

Attachment: signature.asc
Description: Digital signature


reply via email to

[Prev in Thread] Current Thread [Next in Thread]