Replies: 1 comment 7 replies
-
Attestation is not the only use case, there's also sealing secrets, for example to encrypt volumes or credentials |
Beta Was this translation helpful? Give feedback.
7 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Regarding this registry: It correctly observes that PCRs are a scarce resource. However, it then appears to claim PCR 11-15.
What is the rationale for using so many PCRs? Typically, one would use multiple PCR if one was sealing to a subset of all the measured events. The seal would use early measurements. For attestation, there is little advantage to using multiple PCRs.
Beta Was this translation helpful? Give feedback.
All reactions