9 Apr
2024
9 Apr
'24
10:34
On 2024-04-09 09:26, Ludwig Nussel wrote:
aplanas wrote:
That lock one NVIndex slot in the TPM2. After the wipe I would do a `tpm2_clear` to free it.
systemd-pcrlock remove-policy clears the nvindex
Not always succeed (TSS lib complain). But indeed, I just tested some manual invalidation and seems more reliable today.