you are viewing a single comment's thread
view the rest of the comments
[–] 1 point 2 years ago (1 child)

What do you mean by that? Generate a new private/public key pair every time you setup a new TPM? Or when you boot the system or something?

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 2 years ago* (last edited 2 years ago)

    On each connection. Or boot. Whenever you need

    Edit: to be clear, this would still be vulnerable to mitm attacks without a user entered password on top but at least you can't just read the secrets from the bus. E2: And having a password wouldn't be fully secure without such a scheme neither

  • source
  • parent