<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re:Are there two different Key Manifests? in Intel vPro® Platform</title>
    <link>https://community.intel.com/t5/Intel-vPro-Platform/Are-there-two-different-Key-Manifests/m-p/1263245#M8362</link>
    <description>&lt;P&gt;Hello Jon-xelex,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Thank you for joining the Intel community&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Please allow us a bit of time in order to research on your question. We will get back to you soon.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Jose A.&lt;/P&gt;&lt;P&gt;Intel Customer Support Technician&lt;/P&gt;&lt;P&gt;&lt;I&gt;For firmware updates and troubleshooting tips, visit:&lt;/I&gt;&lt;/P&gt;&lt;P&gt;&lt;I&gt;&lt;A href="https://intel.com/support/serverbios" target="_blank"&gt;https://intel.com/support/serverbios&lt;/A&gt;&lt;/I&gt;&lt;/P&gt;&lt;BR /&gt;</description>
    <pubDate>Thu, 11 Mar 2021 00:22:58 GMT</pubDate>
    <dc:creator>JoseH_Intel</dc:creator>
    <dc:date>2021-03-11T00:22:58Z</dc:date>
    <item>
      <title>Are there two different Key Manifests?</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Are-there-two-different-Key-Manifests/m-p/1262209#M8355</link>
      <description>&lt;DIV class="lia-quilt-row lia-quilt-row-message-body"&gt;
&lt;DIV class="lia-quilt-column lia-quilt-column-24 lia-quilt-column-single lia-quilt-column-message-body-content"&gt;
&lt;DIV class="lia-quilt-column-alley lia-quilt-column-alley-single"&gt;
&lt;DIV id="bodyDisplay" class="lia-message-body lia-component-message-view-widget-body lia-component-body-signature-highlight-escalation lia-component-message-view-widget-body-signature-highlight-escalation"&gt;
&lt;DIV class="lia-message-body-content"&gt;
&lt;P&gt;I recently start develop BIOS for the new Tiger Lake CPU. I want to enable Intel Boot Guard technology to make platform much more secure, but I encounter one concept that baffle me in Boot Guard: Key Manifest.&lt;/P&gt;
&lt;P&gt;I reference &lt;EM&gt;Intel® Converged Boot Guard and Intel® Trusted ExecutionTechnology (Intel® TXT)&lt;/EM&gt; (doc no 575623) document and it mentions a concept called Key Manifest, which stores hashed public key to verify Boot Policy Manifest components. Then I reference &lt;EM&gt;Tiger Lake and Rocket Lake Signing and Manifesting Guide &lt;/EM&gt;for a clue about how signature work and how to make one. I encountered concept Key Manifest again in &lt;EM&gt;Tiger Lake and Rocket Lake Signing and Manifesting Guide&lt;/EM&gt; (interestingly, this Key Manifest is called &lt;EM&gt;OEM Key Manifest&lt;/EM&gt;), which contains hashed public key for firmware component (ISH, OS BootLoader, iUnit, Audio, ME...). Moreover, I compared structure of Key Manifest between two mentioned documents and they are different!&lt;/P&gt;
&lt;P&gt;I want to know if there are actually two different Key Manifests for two different purposes:&lt;/P&gt;
&lt;P&gt;- One for Intel Boot Guard (Key Manifest -&amp;gt; Boot Policy Manifest -&amp;gt; Initial Boot Block)&lt;/P&gt;
&lt;P&gt;- One for verify firmware components (Key Manifest -&amp;gt; Firmware components). This Key Manifest is also called OEM Key Manifest&lt;/P&gt;
&lt;P&gt;Beside, I'd like to know if it happens that there are two different Key Manifest, are their signature's public key come from same Field Programmable Fuses (FPF)?&lt;/P&gt;
&lt;P&gt;Thank you!&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Mon, 08 Mar 2021 02:25:22 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Are-there-two-different-Key-Manifests/m-p/1262209#M8355</guid>
      <dc:creator>Jon-xelex</dc:creator>
      <dc:date>2021-03-08T02:25:22Z</dc:date>
    </item>
    <item>
      <title>Re:Are there two different Key Manifests?</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Are-there-two-different-Key-Manifests/m-p/1263245#M8362</link>
      <description>&lt;P&gt;Hello Jon-xelex,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Thank you for joining the Intel community&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Please allow us a bit of time in order to research on your question. We will get back to you soon.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Jose A.&lt;/P&gt;&lt;P&gt;Intel Customer Support Technician&lt;/P&gt;&lt;P&gt;&lt;I&gt;For firmware updates and troubleshooting tips, visit:&lt;/I&gt;&lt;/P&gt;&lt;P&gt;&lt;I&gt;&lt;A href="https://intel.com/support/serverbios" target="_blank"&gt;https://intel.com/support/serverbios&lt;/A&gt;&lt;/I&gt;&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 11 Mar 2021 00:22:58 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Are-there-two-different-Key-Manifests/m-p/1263245#M8362</guid>
      <dc:creator>JoseH_Intel</dc:creator>
      <dc:date>2021-03-11T00:22:58Z</dc:date>
    </item>
    <item>
      <title>Re:Are there two different Key Manifests?</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Are-there-two-different-Key-Manifests/m-p/1263472#M8363</link>
      <description>&lt;P&gt;Jon-xelex, Thank you for posting in the Intel® Communities Support.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;In order for us to be able to provide the most accurate support on this matter, please visit, sign-in and submit your inquiry in our Intel® Developer Zone site, they will further assist you with this topic ion there:&lt;/P&gt;&lt;P&gt;&lt;A href="https://software.intel.com/content/www/us/en/develop/home.html" target="_blank"&gt;https://software.intel.com/content/www/us/en/develop/home.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Albert R.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Intel Customer Support Technician&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 11 Mar 2021 18:25:43 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Are-there-two-different-Key-Manifests/m-p/1263472#M8363</guid>
      <dc:creator>Alberto_Sykes</dc:creator>
      <dc:date>2021-03-11T18:25:43Z</dc:date>
    </item>
  </channel>
</rss>

