-
-
Notifications
You must be signed in to change notification settings - Fork 187
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Explore QubesOS AEM usb boot #502
Comments
It would complement Heads with memory measurements within QubesOS. Not sure if it would work with coreboot though, since latest AEM requires TXT. Will give it a try. Goal of it would be to boot from USB AEM disk from Heads. |
from @zaolin :
|
see This WiP branch. Unfortunately, I do not know how to extract what would be required so that SINIT would be functional. @zaolin : ping! :) |
@zaolin updated:
|
Stripped ME seems to work with TXT. We double checked that. |
#307 would be linked indirectly to this. |
@zaolin how you made it? |
Update from @zaolin: Waiting from Intel approval. |
Estimation in man-days: 15 PD |
Well, #1172 provides TXT required ACM and SINIT blobs, years later. Where to go next? |
Would be nice if AntiEvilMaid could be supported from Heads, so S3 suspend and integrity validation would be implemented in QubesOS.
Requires:
The text was updated successfully, but these errors were encountered: