From mboxrd@z Thu Jan 1 00:00:00 1970 Content-Type: multipart/mixed; boundary="===============0814695267898191121==" MIME-Version: 1.0 From: Petko Manolov Subject: [tpm2] facilitating BIOS update with seamless PCR policy change Date: Fri, 04 Jan 2019 20:20:36 +0200 Message-ID: <20190104182036.GA8278@carbon> List-ID: To: tpm2@lists.01.org --===============0814695267898191121== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Hello guys, I'm trying to devise a way to change the PCR policy used to seal certain ke= y = into TPM2 in case of BIOS change. So far i've run into this article (along= with = the references it suggests): https://github.com/tpm2-software/tpm2-tss/issues/487 However, i did not find a definitive answer there. Could someone please = elaborate or point me in the right direction i can read more about how to = authorize the new PCR policy? thanks a bunch, Petko --===============0814695267898191121==--