home.social

#trustedplatformmodule — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #trustedplatformmodule, aggregated by home.social.

  1. #physicalsecurity #cybersecurity #trustedplatformmodule #tpm #fujitsu secured! The tpm is only plugged and the only defense against simply unplugging it and taking it away together with the mass storage is a strategically dremeled screw. Well, it is a rather cheap system, but still...

  2. #physicalsecurity #cybersecurity #trustedplatformmodule #tpm #fujitsu secured! The tpm is only plugged and the only defense against simply unplugging it and taking it away together with the mass storage is a strategically dremeled screw. Well, it is a rather cheap system, but still...

  3. #physicalsecurity #cybersecurity #trustedplatformmodule #tpm #fujitsu secured! The tpm is only plugged and the only defense against simply unplugging it and taking it away together with the mass storage is a strategically dremeled screw. Well, it is a rather cheap system, but still...

  4. #physicalsecurity #cybersecurity #trustedplatformmodule #tpm #fujitsu secured! The tpm is only plugged and the only defense against simply unplugging it and taking it away together with the mass storage is a strategically dremeled screw. Well, it is a rather cheap system, but still...

  5. The same progress is with disk encryption using #TrustedPlatformModule.
    Now it's just systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+2+7 /dev/nvme0n1p2

    6 years ago I needed to deploy disk keyfile, then manually seal it to TPM, and setp up initramfs to work with the sealed key.

  6. The same progress is with disk encryption using #TrustedPlatformModule.
    Now it's just systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+2+7 /dev/nvme0n1p2

    6 years ago I needed to deploy disk keyfile, then manually seal it to TPM, and setp up initramfs to work with the sealed key.

  7. The same progress is with disk encryption using #TrustedPlatformModule.
    Now it's just systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+2+7 /dev/nvme0n1p2

    6 years ago I needed to deploy disk keyfile, then manually seal it to TPM, and setp up initramfs to work with the sealed key.

  8. The same progress is with disk encryption using #TrustedPlatformModule.
    Now it's just systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+2+7 /dev/nvme0n1p2

    6 years ago I needed to deploy disk keyfile, then manually seal it to TPM, and setp up initramfs to work with the sealed key.

  9. The same progress is with disk encryption using #TrustedPlatformModule.
    Now it's just systemd-cryptenroll --tpm2-device=auto --tpm2-pcrs=0+2+7 /dev/nvme0n1p2

    6 years ago I needed to deploy disk keyfile, then manually seal it to TPM, and setp up initramfs to work with the sealed key.

  10. Windows 11 23H2 bug causes “end of service”, “get the newer version of Windows” alerts
    windowslatest.com/2024/11/13/w

    "Get the newer version of Windows to stay up to date. Your version of Windows has reached the end of service."
    Have you been getting that message and wondering what it's about? Have you seen the update notification dot but then there's nothing new on the "Windows Update" screen? Yeah, you and possibly millions of other people.

    I think this happens if you're running Windows 11 on a PC without TPM. Some computers are more than 4-5 years old and don't have this option, and some people choose not to switch on TPM because they don't want it used against them for DRM or other malfeatures at a BIOS/UEFI level.

    #Microsoft #Windows #MicrosoftWindows #Windows11 #Windows1123H2 #TPM #TrustedPlatformModule

  11. Windows 11 23H2 bug causes “end of service”, “get the newer version of Windows” alerts
    windowslatest.com/2024/11/13/w

    "Get the newer version of Windows to stay up to date. Your version of Windows has reached the end of service."
    Have you been getting that message and wondering what it's about? Have you seen the update notification dot but then there's nothing new on the "Windows Update" screen? Yeah, you and possibly millions of other people.

    I think this happens if you're running Windows 11 on a PC without TPM. Some computers are more than 4-5 years old and don't have this option, and some people choose not to switch on TPM because they don't want it used against them for DRM or other malfeatures at a BIOS/UEFI level.

    #Microsoft #Windows #MicrosoftWindows #Windows11 #Windows1123H2 #TPM #TrustedPlatformModule

  12. Windows 11 23H2 bug causes “end of service”, “get the newer version of Windows” alerts
    windowslatest.com/2024/11/13/w

    "Get the newer version of Windows to stay up to date. Your version of Windows has reached the end of service."
    Have you been getting that message and wondering what it's about? Have you seen the update notification dot but then there's nothing new on the "Windows Update" screen? Yeah, you and possibly millions of other people.

    I think this happens if you're running Windows 11 on a PC without TPM. Some computers are more than 4-5 years old and don't have this option, and some people choose not to switch on TPM because they don't want it used against them for DRM or other malfeatures at a BIOS/UEFI level.

    #Microsoft #Windows #MicrosoftWindows #Windows11 #Windows1123H2 #TPM #TrustedPlatformModule

  13. Windows 11 23H2 bug causes “end of service”, “get the newer version of Windows” alerts
    windowslatest.com/2024/11/13/w

    "Get the newer version of Windows to stay up to date. Your version of Windows has reached the end of service."
    Have you been getting that message and wondering what it's about? Have you seen the update notification dot but then there's nothing new on the "Windows Update" screen? Yeah, you and possibly millions of other people.

    I think this happens if you're running Windows 11 on a PC without TPM. Some computers are more than 4-5 years old and don't have this option, and some people choose not to switch on TPM because they don't want it used against them for DRM or other malfeatures at a BIOS/UEFI level.

    #Microsoft #Windows #MicrosoftWindows #Windows11 #Windows1123H2 #TPM #TrustedPlatformModule

  14. Windows 11 23H2 bug causes “end of service”, “get the newer version of Windows” alerts
    windowslatest.com/2024/11/13/w

    "Get the newer version of Windows to stay up to date. Your version of Windows has reached the end of service."
    Have you been getting that message and wondering what it's about? Have you seen the update notification dot but then there's nothing new on the "Windows Update" screen? Yeah, you and possibly millions of other people.

    I think this happens if you're running Windows 11 on a PC without TPM. Some computers are more than 4-5 years old and don't have this option, and some people choose not to switch on TPM because they don't want it used against them for DRM or other malfeatures at a BIOS/UEFI level.

    #Microsoft #Windows #MicrosoftWindows #Windows11 #Windows1123H2 #TPM #TrustedPlatformModule

  15. CW: Long thread/8

    As far as this #TrustedPlatformModule was concerned, you're the enemy. The "trust" in trusted computing is about *other people* being able to trust your *computer*, even if they don''t trust *you*.

    So that TPM does all kinds of tricks. It can observe and produce a cryptographically signed manifest of your computer's entire boot-chain, meant to be an unforgeable certificate attesting to which kind of computer you were running and what software you were running on it.

    8/

  16. CW: Long thread/8

    As far as this #TrustedPlatformModule was concerned, you're the enemy. The "trust" in trusted computing is about *other people* being able to trust your *computer*, even if they don''t trust *you*.

    So that TPM does all kinds of tricks. It can observe and produce a cryptographically signed manifest of your computer's entire boot-chain, meant to be an unforgeable certificate attesting to which kind of computer you were running and what software you were running on it.

    8/

  17. CW: Long thread/8

    As far as this #TrustedPlatformModule was concerned, you're the enemy. The "trust" in trusted computing is about *other people* being able to trust your *computer*, even if they don''t trust *you*.

    So that TPM does all kinds of tricks. It can observe and produce a cryptographically signed manifest of your computer's entire boot-chain, meant to be an unforgeable certificate attesting to which kind of computer you were running and what software you were running on it.

    8/

  18. CW: Long thread/8

    As far as this #TrustedPlatformModule was concerned, you're the enemy. The "trust" in trusted computing is about *other people* being able to trust your *computer*, even if they don''t trust *you*.

    So that TPM does all kinds of tricks. It can observe and produce a cryptographically signed manifest of your computer's entire boot-chain, meant to be an unforgeable certificate attesting to which kind of computer you were running and what software you were running on it.

    8/

  19. CW: Long thread/8

    As far as this #TrustedPlatformModule was concerned, you're the enemy. The "trust" in trusted computing is about *other people* being able to trust your *computer*, even if they don''t trust *you*.

    So that TPM does all kinds of tricks. It can observe and produce a cryptographically signed manifest of your computer's entire boot-chain, meant to be an unforgeable certificate attesting to which kind of computer you were running and what software you were running on it.

    8/

  20. Vi hade en trevlig hackträff idag, där vi pysslade med #TrustedPlatformModule och #refind, #texlive, #PlainTextAccounting i #python med mera. De flesta av oss gick sedan vidare och hängde på @dfupdate

  21. Vi hade en trevlig hackträff idag, där vi pysslade med #TrustedPlatformModule och #refind, #texlive, #PlainTextAccounting i #python med mera. De flesta av oss gick sedan vidare och hängde på @dfupdate

  22. Vi hade en trevlig hackträff idag, där vi pysslade med #TrustedPlatformModule och #refind, #texlive, #PlainTextAccounting i #python med mera. De flesta av oss gick sedan vidare och hängde på @dfupdate

  23. Vi hade en trevlig hackträff idag, där vi pysslade med #TrustedPlatformModule och #refind, #texlive, #PlainTextAccounting i #python med mera. De flesta av oss gick sedan vidare och hängde på @dfupdate

  24. Vi hade en trevlig hackträff idag, där vi pysslade med #TrustedPlatformModule och #refind, #laTex, #PlainTextAccounting i #python med mera. De flesta av oss gick sedan vidare och hängde på @dfupdate

  25. Vi hade en trevlig hackträff idag, där vi pysslade med #TrustedPlatformModule och #refind, #laTex, #PlainTextAccounting i #python med mera. De flesta av oss gick sedan vidare och hängde på @dfupdate

  26. CW: Long thread/26

    The second CPU would be a #TrustedPlatformModule, a brute-simple system-on-a-chip designed to be off-limits to modification, even by its owner (that is, you).

    The #TPM would ship with a limited suite of simple programs it could run, each thoroughly audited for bugs, as well as secret cryptographic signing keys that you were not permitted to extract.

    26/

  27. CW: Long thread/26

    The second CPU would be a #TrustedPlatformModule, a brute-simple system-on-a-chip designed to be off-limits to modification, even by its owner (that is, you).

    The #TPM would ship with a limited suite of simple programs it could run, each thoroughly audited for bugs, as well as secret cryptographic signing keys that you were not permitted to extract.

    26/

  28. CW: Long thread/26

    The second CPU would be a #TrustedPlatformModule, a brute-simple system-on-a-chip designed to be off-limits to modification, even by its owner (that is, you).

    The #TPM would ship with a limited suite of simple programs it could run, each thoroughly audited for bugs, as well as secret cryptographic signing keys that you were not permitted to extract.

    26/

  29. CW: Long thread/26

    The second CPU would be a #TrustedPlatformModule, a brute-simple system-on-a-chip designed to be off-limits to modification, even by its owner (that is, you).

    The #TPM would ship with a limited suite of simple programs it could run, each thoroughly audited for bugs, as well as secret cryptographic signing keys that you were not permitted to extract.

    26/

  30. CW: Long thread/26

    The second CPU would be a #TrustedPlatformModule, a brute-simple system-on-a-chip designed to be off-limits to modification, even by its owner (that is, you).

    The #TPM would ship with a limited suite of simple programs it could run, each thoroughly audited for bugs, as well as secret cryptographic signing keys that you were not permitted to extract.

    26/

  31. CW: Long thread/45

    At core, here's what they envision: inside your computer, they will nest *another* computer, one that is designed to run a very simple set of programs, none of which can be altered once it leaves the factory. This computer - either a whole separate chip called a "#TrustedPlatformModule" or a region of your main processor called a #SecureEnclave - can tally observations about your computer: which operating system, modules and programs it's running.

    45/

  32. CW: Long thread/45

    At core, here's what they envision: inside your computer, they will nest *another* computer, one that is designed to run a very simple set of programs, none of which can be altered once it leaves the factory. This computer - either a whole separate chip called a "#TrustedPlatformModule" or a region of your main processor called a #SecureEnclave - can tally observations about your computer: which operating system, modules and programs it's running.

    45/

  33. CW: Long thread/45

    At core, here's what they envision: inside your computer, they will nest *another* computer, one that is designed to run a very simple set of programs, none of which can be altered once it leaves the factory. This computer - either a whole separate chip called a "#TrustedPlatformModule" or a region of your main processor called a #SecureEnclave - can tally observations about your computer: which operating system, modules and programs it's running.

    45/

  34. CW: Long thread/45

    At core, here's what they envision: inside your computer, they will nest *another* computer, one that is designed to run a very simple set of programs, none of which can be altered once it leaves the factory. This computer - either a whole separate chip called a "#TrustedPlatformModule" or a region of your main processor called a #SecureEnclave - can tally observations about your computer: which operating system, modules and programs it's running.

    45/

  35. CW: Long thread/45

    At core, here's what they envision: inside your computer, they will nest *another* computer, one that is designed to run a very simple set of programs, none of which can be altered once it leaves the factory. This computer - either a whole separate chip called a "#TrustedPlatformModule" or a region of your main processor called a #SecureEnclave - can tally observations about your computer: which operating system, modules and programs it's running.

    45/