Measure MRC cache into separate PCR #150

Open
osresearch opened this Issue Apr 1, 2017 · 1 comment

Comments

Projects
None yet
1 participant
@osresearch
Owner

osresearch commented Apr 1, 2017

The MRC cache is measured into the RAM stage PCR, which pollutes the otherwise deterministic value. It should go into its own PCR (which should be documented in issue #146 )

@osresearch osresearch added this to the measuredboot milestone Apr 1, 2017

@osresearch

This comment has been minimized.

Show comment
Hide comment
@osresearch

osresearch Apr 2, 2017

Owner

This also requires two reboots to properly initialize the MRC and the TPM PCR; the PCR should be updated after the MRC is written to avoid this problem.

Owner

osresearch commented Apr 2, 2017

This also requires two reboots to properly initialize the MRC and the TPM PCR; the PCR should be updated after the MRC is written to avoid this problem.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment