From 8bda7dc03089ae1805bbdb5ed5f1fc7d9b77fa5c Mon Sep 17 00:00:00 2001 From: Michael Preisach Date: Thu, 12 Nov 2020 16:51:26 +0000 Subject: [PATCH] clean TPM memory for use after luks scripts --- update-luks-tpm.sh | 1 + 1 file changed, 1 insertion(+) diff --git a/update-luks-tpm.sh b/update-luks-tpm.sh index 0451ac5..2b76e3c 100755 --- a/update-luks-tpm.sh +++ b/update-luks-tpm.sh @@ -14,3 +14,4 @@ tpm2_load -C /root/keys/e-primary.context -u /root/keys/obj.pub -r /root/keys/ob tpm2_evictcontrol -C o -c /root/keys/load.context 0x81000000 # tpm2_unseal -c 0x81000000 -p pcr:sha1:0,1,2,3,4,5,6,7 -o /root/test.bin #proof that the persistence worked rm -f /root/keys/load.context /root/keys/obj.priv /root/keys/obj.pub /root/keys/pcr-policy.digest +tpm2_flushcontext -t