!agkXCfUrgbadYlQXRj:kack.it

NixOS + TPMs

189 Members
44 Servers

You have reached the beginning of time (for this room).


SenderMessageTime
16 Jul 2021
@andi:kack.itandi-Yeah12:42:10
@grahamc:nixos.org@grahamc:nixos.org:)12:42:14
@spacesbot:nixos.devspacesbot - keeps a log of public NixOS channels 13:00:04
@andi:kack.itandi- So yesterday I was able to wipe my state without th ecorrect password IIRC. All I did was call tpm2_clear. 13:16:47
@andi:kack.itandi-How do you protect against that?13:17:04
@andi:kack.itandi-IIRC I did set two passwords when I first setup secrets.13:17:24
@grahamc:nixos.org@grahamc:nixos.orginteresting13:21:19
@grahamc:nixos.org@grahamc:nixos.orgnot sure you can actually13:21:38
@grahamc:nixos.org@grahamc:nixos.orgmaybe you can13:21:44
@grahamc:nixos.org@grahamc:nixos.orgbut I'm thinking about how the bios can wipe it too13:24:08
@andi:kack.itandi-That would mean that I must lock the tpm device away and only let root / a special user interact with it.13:24:25
@andi:kack.itandi-I read some text that said that there are some hardware keys to adjust it13:24:38

Show newer messages


Back to Room ListRoom Version: 6