tpm2-tools icon indicating copy to clipboard operation
tpm2-tools copied to clipboard

All pcr missing

Open kingod98 opened this issue 3 years ago • 4 comments

Hello,

I am relatively new with tpm2 operations. I have tpm2-abrmd version 2.3.3 and tpm2-tools version 5.0-2

Every commands from tpm2-tools work very well but here my result when I do a tpm2_pcrread: Has anyone already experimented this behaviour and know how to fix this ?

sha1: 0 : 0x0000000000000000000000000000000000000000 1 : 0x0000000000000000000000000000000000000000 2 : 0x0000000000000000000000000000000000000000 3 : 0x0000000000000000000000000000000000000000 4 : 0x0000000000000000000000000000000000000000 5 : 0x0000000000000000000000000000000000000000 6 : 0x0000000000000000000000000000000000000000 7 : 0x0000000000000000000000000000000000000000 8 : 0x0000000000000000000000000000000000000000 9 : 0x0000000000000000000000000000000000000000 10: 0x0000000000000000000000000000000000000000 11: 0x0000000000000000000000000000000000000000 12: 0x0000000000000000000000000000000000000000 13: 0x0000000000000000000000000000000000000000 14: 0x0000000000000000000000000000000000000000 15: 0x0000000000000000000000000000000000000000 16: 0x0000000000000000000000000000000000000000

kingod98 avatar Dec 19 '22 10:12 kingod98

You need a system that is extending values into the PCRs. What system are you running on? Is this the simulator?

williamcroberts avatar Dec 19 '22 15:12 williamcroberts

You need a system that is extending values into the PCRs. What system are you running on? Is this the simulator?

Thanks for your reply.

I have Debian and a true physical TPM connected and enable in my machine. No simulator here is used.

What do you mean by "system that is extending values into pcr" ? Or what could it be ?

I have installed the required software stacks, I can't see what could be missing

kingod98 avatar Dec 19 '22 16:12 kingod98

Probably need to enable some bios setting for measured boot.

williamcroberts avatar Dec 20 '22 14:12 williamcroberts

@kingod98 did you try a tpm2_pcrextend on the PCR and see if the values toggle? @williamcroberts is right, does the bios image you have enable measured boot?

idesai avatar Jan 05 '23 17:01 idesai