FS#53429 - [systemd] enable tpm measured boot
Attached to Project:
Arch Linux
Opened by Max Resch (mxr) - Thursday, 23 March 2017, 12:46 GMT
Last edited by Dave Reisner (falconindy) - Friday, 22 December 2017, 12:47 GMT
Opened by Max Resch (mxr) - Thursday, 23 March 2017, 12:46 GMT
Last edited by Dave Reisner (falconindy) - Friday, 22 December 2017, 12:47 GMT
|
Details
systemd-boot provides a measured boot facility by hashing
loader, kernel and kernel commandline in the TPM's PCR.
It would be nice if this optional feature would be enabled. systemd would have to be compiled with the configure flag --enable-tpm I'm not sure if there is any other distribution that has this enable, nor does there seem to be any documentation on this systemd feature other than source code comments. For reference there is a bug report [1] for Fedora, concerning this feature, which concluded in enabling it. [1] https://bugzilla.redhat.com/show_bug.cgi?id=1411156 |
This task depends upon
Closed by Dave Reisner (falconindy)
Friday, 22 December 2017, 12:47 GMT
Reason for closing: Fixed
Additional comments about closing: This is enabled by default nowadays when building with EFI.
Friday, 22 December 2017, 12:47 GMT
Reason for closing: Fixed
Additional comments about closing: This is enabled by default nowadays when building with EFI.