[Cryptography] TPM and SHA-1

james hughes hughejp at me.com
Sat Mar 4 14:47:45 EST 2017


> On Mar 4, 2017, at 9:19 AM, Ben Laurie <ben at links.org> wrote:
> BTW, I don't know how SHA-1 is used for attestation, so maybe it
> entirely avoids this problem by using, say, an HMAC with a random key.

My understanding is that it is a straight SHA-1 on the BIOS (UEFI) that is to be loaded into memory. Not an HMAC.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20170304/7f84e0ab/attachment.html>


More information about the cryptography mailing list