logoalt Hacker News

lrvicklast Saturday at 8:59 PM1 replyview on HN

Yes, and that is a serious security problem because the only way to get trusted PCR values for TPM2 gated secure boot and full disk decryption applications, is with open source full source bootstrapped firmware.

Coreboot is the only option, but it has a hard requirement on Ada because that is what they wrote their intel graphics stack in.

It is a real mess.


Replies

utopiahlast Saturday at 9:12 PM

Interesting, any link I could read to understand a bit more the situation?