Skip to content

PCR 7 & 14: Improve reference value handling for Mok & Secure Boot keys #20

@travier

Description

@travier

Ideally, we should be able to get the (default) MokList, KEK, PK, db & dbx from the container image. Right now we are reading those values from https://github.com/confidential-clusters/reference-values.

We will have to investigate how those values may evolve during the lifetime of a system (i.e. if we have to compute multiple "combinaisons" of those for a single container).

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions