Comment by huslage

Comment by huslage a day ago

1 reply

The other option is to have an intrusion prevention switch or two in the case so the TPM locks itself in some way and the machine refuses to boot at all without some PKI attestation.