7 ms·
This wouldn’t be possible with a Secure Core branded machine. TCB launch prevents unsigned BIOSes
by helloooooooo 4y ago
This wouldn’t be possible with a Secure Core branded machine. TCB launch prevents unsigned BIOSes
- EMIRELADERO 4y agoI thought TCB leveraged a UEFI featureset to start a chain of trust in the OS initialization. If the UEFI code itself isn't there, how is it going to run?
- helloooooooo 4y agoTCB is just a standard to provide a Trusted Computing Base for zero trust environments from the hardware up. Basically, the UEFI BIOS is signed, and cannot be tampered with. If it is, the machine won’t boot