• phoenixzEnglish
    arrow-up
    15
    arrow-down
    0
    ·
    8 months ago
    link
    fedilink

    CPU communicates with TPM in plaintext

    Because of course

    • EufalconimorphEnglish
      arrow-up
      7
      arrow-down
      0
      ·
      8 months ago
      link
      fedilink

      CPU doesn’t have any secure storage, so it can’t encrypt or authenticate comms to the TPM. The on-CPU fTPMs are the solution, the CPU then has the secure storage.

      • baseless_discourseEnglish
        arrow-up
        2
        arrow-down
        0
        ·
        8 months ago
        link
        fedilink

        That make sense, CPU has no place to store private keys, since that is the functionality of TPM

        Unless there is a firmware solution, which defeats the purpose of a standalone tpm.