You must log in or register to comment.
Say it with me now: LUUUUUKS
deleted by creator
CPU communicates with TPM in plaintext
Because of course
CPU doesn’t have any secure storage, so it can’t encrypt or authenticate comms to the TPM. The on-CPU fTPMs are the solution, the CPU then has the secure storage.
deleted by creator
deleted by creator
I wondered why LUUUUUKS didnt use the TPM, why do i have to put my password in… this is absolutely why.
Edit: fixed spelling of LUUUUUKS
Also yes you can, I wouldn’t recommend it though. Maybe in addition to your password though.
Wait until you see Dracut and Tang.
What exactly is the point of full disk encryption if the system auto-unlocks on boot?
Protection against tampering, maybe?
Bad excuse, but that is the logic I’ve heard.