火星守望者
精华
|
战斗力 鹅
|
回帖 0
注册时间 2008-5-28
|
Often abbreviated as CSME, this feature implements the firmware-based TPM used for silicon-based encryption, authentication of UEFI BIOS firmware, Microsoft System Guard and BitLocker, and other security features.
Intel CSME firmware also implements the TPM software module, which allows storing encryption keys without needing an additional TPM chip—and many computers do not have such chips.
Intel's firmware TPM (fTPM), a Trusted Platform Module implemented in software that doesn't require a dedicated chip, also relies on CSME.
Ermolov advises users to stop using encryption for local storage devices that relies on CSME. For example, for Windows' full-disk encryption feature, BitLocker, he advises modifying the settings to use a password or USB token instead of Intel's Platform Trust Technology (PTT) to store credentials.
firmware based TPM是完蛋了
用牙膏PTT存储密钥的bitlocker也完蛋了 |
|