* [tpm2] Re-provision TPM
@ 2021-06-01 17:17 Anthony Arrascue
0 siblings, 0 replies; only message in thread
From: Anthony Arrascue @ 2021-06-01 17:17 UTC (permalink / raw)
To: tpm2
[-- Attachment #1: Type: text/plain, Size: 890 bytes --]
Hello,
I am learning about the TSS and TPM techonologies.
I have provisioned the TPM with the default settings, which means I am now using the ECC profile (P_ECCP256SHA256).
However, encryption was a requirement I needed to fulfill. I just didn't know that ECC encryption is currently not supported and now I realize RSA would be a better fit for me.
So here is my question:
* I see there is another profile in /usr/local/etc/tpm2-tss/fapi-profiles, namely P_RSA2048SHA256.json. Is there a way I can encrypt using the RSA profile instead of the ECC one? I tried to re-run tss2_provision, after setting it in fapi-config.json, but it seems this is not the way to proceed. I get the message that the TPM has been already provisioned. What is the correct way of "changing" profile? Is it even possible or do I need to reset the TPM?
Thank you for your help.
Anthony Arrascue
[-- Attachment #2: attachment.htm --]
[-- Type: text/html, Size: 6100 bytes --]
^ permalink raw reply [flat|nested] only message in thread
only message in thread, other threads:[~2021-06-01 17:17 UTC | newest]
Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2021-06-01 17:17 [tpm2] Re-provision TPM Anthony Arrascue
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.