3 ms·
Anyone interested in leveraging a TPM, it's worth a look at the open source project https://keylime.dev https://keylime.dev In regards to dane-pgp highlighting
by decodebytes 5y ago
Anyone interested in leveraging a TPM, it's worth a look at the open source project https://keylime.dev https://keylime.dev
In regards to dane-pgp highlighting Intel TXT / tboot, Keylime does not use this. It measures via grub and a uefi shim (for measure boot) for run time file monitoring, it uses the Linux Kernels IMA.