Sep 9 – 11, 2019
Europe/Lisbon timezone

TPM2 Security in the face of bus interposers

Sep 11, 2019, 5:00 PM
Jade/room-I&II (Corinthia Hotel Lisbon)


Corinthia Hotel Lisbon



James Bottomley (IBM)


TPM2 introduced a plain text authorization scheme with the idea that the system using the TPM should now whether the transport was secure. The presence of interposers on the bus, either as physical devices

Or as compromised pre-boot firmware make this threat a reality. A NULL seed based scheme has been proposed for Linux

we should discuss if this is the best we can do and if it is how should we extend it to the layers below that use the TPM (like UEFI and grub).

