Skip to content

Pre-boot authentication image for TCG SSC OPAL 2.0 with TPM 2.0 and EFI support

Notifications You must be signed in to change notification settings

tateru/tateru-pba

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

6 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Tateru PBA

Pre-boot authentication image for TCG SSC OPAL 2.0 with TPM 2.0 and EFI support

Used to unlock OPAL/SED boot disks.

Planned features:

  • Static key based on platform VPD or EFI variables
  • TPM 2.0 unmeasured and measured unlock

Building

$ sudo apt install \
    gnupg2 gpgv2 flex bison build-essential libelf-dev \
    curl libssl-dev bc zstd dosfstools gdisk mtools
$ gpg2 --locate-keys [email protected] [email protected] [email protected]
# Make sure sgdisk is in the PATH
$ PATH=$PATH:/sbin make

Testing

$ OPAL_KEY=debug
$ sudo sedutil-cli --loadpbaimage "${OPAL_KEY}" tateru-pba-x86_64.img /dev/sdb

About

Pre-boot authentication image for TCG SSC OPAL 2.0 with TPM 2.0 and EFI support

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published