4 ms·
I have that CPU and I have secure boot. Pretty sure that's a motherboard feature
by undfg 5y ago
I have that CPU and I have secure boot. Pretty sure that's a motherboard feature
- vladvasiliu 5y agoI think they're somewhat separate things. I have an i7-3930k on some Asus MB and it has Secure Boot but no TPM. There's a header for it, but it's empty. My understanding is that the SB keys are known and verified by the BIOS, not by the TPM. The TPM is a mechanism to verify that the BIOS (among other things) hasn't changed from a known state. If it hasn't, the TPM will then release some key, for example to automatically decrypt the root partition at boot. I've also seen it used as a store for SSH keys. This is how the default setup of BitLocker works. On my machine, I have to switch BitLocker to password mode, or type in the key at each boot.