What | Removed | Added |
---|---|---|
Flags | needinfo?(aplanas@suse.com) | |
CC | aplanas@suse.com, rbrown@suse.com |
Alberto, can you explain why Aeon systems are showing tpm2-pcrlock: false? and an invalid list of tpm2-hash-pcrs? They have valid predictions according to sdbootutil -v update-predictions They are enrolled during systemd-cryptenroll <device> --tpm2-device auto just as the reporter does here: https://github.com/sysrich/tik/blob/main/usr/lib/tik/modules/post/15-encrypt#L205