From mboxrd@z Thu Jan 1 00:00:00 1970 Content-Type: multipart/mixed; boundary="===============4779814542042919504==" MIME-Version: 1.0 From: =?utf-8?q?Eduardo_Falc=C3=A3o_=3Ceduardolfalcao_at_gmail=2Ecom=3E?= Subject: [tpm2] Re: Stablishing trust on to TPM simulator Date: Sat, 23 May 2020 19:49:47 +0000 Message-ID: <20200523194947.2859.89837@ml01.vlan13.01.org> In-Reply-To: 20200520184131.2843.35549@ml01.vlan13.01.org List-ID: To: tpm2@lists.01.org --===============4779814542042919504== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Hi Desai and Roberts. Thank you for yours responses. Yes, Desai, I already knew the Keylime project. And, indeed, I got the feel= ing that they were doing what I wanted. But in a first moment, I want to do= the demo by myself, so I can better understand the concepts and steps invo= lved to create the chain of trust. Perhaps I'll consider using Keylime when= I'll be comfortable with the whole process. Roberts, the path you pointed was really correct. Thank you. I created an issue on the swtpm project and Stefan extended a wiki about ce= rtificate creation. For those interested, it is here: https://github.com/stefanberger/swtpm/wi= ki/Certificiates-created-by-swtpm_setup#verifying-your-ek-cert-against-the-= ca Regards --===============4779814542042919504==--