| 19 Jul 2021 |
Mic92 (Old) | I put this on my long-term TODO list. For the next months I have enought other VM stuff to solve | 12:02:07 |
Mic92 (Old) | I don't think it would be very complicated | 12:02:25 |
@grahamc:nixos.org | cool | 13:14:11 |
@grahamc:nixos.org | I was watching a talk from mjg59 where he mentioned the code quality of tpm2 and tss2 and that it was ... interesting ... inspiring them to make their own pure Go implementation for https://github.com/google/go-attestation | 13:20:40 |
andi- | But their tool only focues on attestation basically leaving us with an even more clustered situation if you want to use the TPM for more than just verified boots? | 13:29:44 |
andi- | Not to sound too negative: I think it is great that that option exists and looks much nicer than the alternatives. | 13:31:54 |
@grahamc:nixos.org | oh of course | 13:34:37 |
@grahamc:nixos.org | that tool is just a tiny piece of the puzzle | 13:34:44 |
@grahamc:nixos.org | just mentioning it to note some confirmation of our sniff test's results | 13:36:25 |
andi- | Weren't we looking for https://github.com/fedora-iot/clevis-pin-tpm2 the other day? | 14:04:21 |
| 29 Jul 2021 |
| ryantm joined the room. | 13:39:51 |
| 30 Jul 2021 |
andi- | https://dolosgroup.io/blog/2021/7/9/from-stolen-laptop-to-inside-the-company-network | 22:14:52 |
andi- | So fTPM over hardware? | 22:15:11 |
| 3 Aug 2021 |
| Florian | W3F joined the room. | 12:25:21 |
| 6 Aug 2021 |
@grahamc:nixos.org | is the event log plausibly at another location than /sys/class/tpm/tpm0/device ? | 13:16:52 |