- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
I have 2 Intel® Core™ i7-8665UE Processor boards which apparently did not come with a TPM EK certificate embedded in them.
I run a set of commands to generate the required keys and retrieve the certificate online.
tpm2_createek -G rsa -u ek.pub -c key.ctx => to get the pub key
tpm2_getekcertificate -X -o ECcert.bin -u ek.pub https://ekop.intel.com/ekcertservice/ => to get the certificate.
However, the format of the received certificate is not what was expected and as such, I can not import it into the NVRAM of my board.
{"pubhash":"LrZoQvxmVFvsHGfXgDICeCaEmTFUZGYCLghBgpSNSBo%3D","certificate":"MIIE6DCCBI2gAwIBAgIUFyFzONq6-rSaEgQBgYcYyzO1gnIwCgYIKoZIzj0EAwIwgaYxCzAJBgNVBAYMAlVTMQswCQYDVQQIDAJDQTEUMBIGA1UEBwwLU2FudGEgQ2xhcmExGjAYBgNVBAoMEUludGVsIENvcnBvcmF0aW9uMUAwPgYDVQQLDDdUUE0gRUsgaW50ZXJtZWRpYXRlIGZvciBDTkxfRVBJRF9QT1NUX0IxTFBfUFJPRF8yIHBpZDo5MRYwFAYDVQQDDA13d3cuaW50ZWwuY29tMB4XDTE5MDQxNjAwMDAwMFoXDTQ5MTIzMTIzNTk1OVowADCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ4ag9w2wEG0Tarnla7fw61JmcTNT4ViOBCkgCTgD7tlIRWF_Dqk5z1x48BBDVXSIUQ3Fmxhcr6SdxmhFkMktI3_OFw9q9wlCTKtqj3WKQjfQUTpl_GojI2U88rMwqL15hHzMAP98ungdBv0731rxmRpBCJX66ZOnaZzKWbN-UG35CFd-kYGLOSPOANRJkli0tLl16jk8MdFAblQx2vPgIdMz3uWqK7pSWbj1lbRQiXTGPgL9Bf9OxNPhH_cOJYFXOr8lerCmLBehjXI-ieQAf1hwWFDrHjsTkkfjH6zgZk5sei49voHUmIs_mldQ4hKg0wRnzHUPEsttgFDSamZl8cCAwEAAaOCAnEwggJtMA8GA1UdEwEB_wQFMAMBAQAwDgYDVR0PAQH_BAQDAgUgMBAGA1UdJQQJMAcGBWeBBQgBMCQGA1UdCQEBAAQaMBgwFgYFZ4EFAhAxDTALDAMyLjACAQACAWcwUAYDVR0RAQH_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-zpd-gQIhAI7cWkjgZ5y93iFOYR0QoZu3BP2MyivCfzK74yxxwaLV"}
This is what I received. Any help on this?
Link Copied
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello, @mrgenie:
Thank you for contacting Intel Embedded Community.
You should address your request as a reference through the portal stated in the following website:
https://github.com/tpm2-software/tpm2-tools/issues
Best regards,

- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page