Secure boot to the OS flash drives/CD for bootloader signature verification and TPM/UFEI signing

I have been learning about securing the OS and don’t understand how to do so, how secure it is and if it can verify the integrity of a system that could have possibly been compromised (ruling out the system being compromised)… Continue reading Secure boot to the OS flash drives/CD for bootloader signature verification and TPM/UFEI signing

Why does Chrome tell me this certificate is valid when it can’t be verified?

Update: Now Chrome rejects this website for me.

It seems the trusting is just cached somewhere?
I guess this question isn’t as interesting as I thought, but it’d be nice if someone could clarify it.

Original question:

I’… Continue reading Why does Chrome tell me this certificate is valid when it can’t be verified?

How are TPMs provisioned for Intel Trusted Execution Environment (TXT)?

For Intel TXT to work, the TPM must be provisioned. Intel provides some tools for doing this but many are protected by non-public login or an NDA. Many OEM platform vendors provision their boards and machines at manufacturing time so an e… Continue reading How are TPMs provisioned for Intel Trusted Execution Environment (TXT)?