Embedded Intel® Core™ Processors
Communicate Intel® Core™ Hardware, Software, Firmware, Graphics Concerns
Announcements
All support for Intel NUC 7 - 13 systems has transitioned to ASUS. Read latest update.
1183 Discussions

Retrieving EK certificate - Intel® Core™ i7-8665UE Processor

mrgenie
Beginner
343 Views

Hi,

 

I have 2 Intel® Core™ i7-8665UE Processor boards which apparently did not come with a TPM EK certificate embedded in them.

 

I run a set of commands to generate the required keys and retrieve the certificate online.

 

tpm2_createek -G rsa -u ek.pub -c key.ctx => to get the pub key

tpm2_getekcertificate -X -o ECcert.bin -u ek.pub https://ekop.intel.com/ekcertservice/ => to get the certificate.

 

However, the format of the received certificate is not what was expected and as such, I can not import it into the NVRAM of my board. 

 

{"pubhash":"LrZoQvxmVFvsHGfXgDICeCaEmTFUZGYCLghBgpSNSBo%3D","certificate":"MIIE6DCCBI2gAwIBAgIUFyFzONq6-rSaEgQBgYcYyzO1gnIwCgYIKoZIzj0EAwIwgaYxCzAJBgNVBAYMAlVTMQswCQYDVQQIDAJDQTEUMBIGA1UEBwwLU2FudGEgQ2xhcmExGjAYBgNVBAoMEUludGVsIENvcnBvcmF0aW9uMUAwPgYDVQQLDDdUUE0gRUsgaW50ZXJtZWRpYXRlIGZvciBDTkxfRVBJRF9QT1NUX0IxTFBfUFJPRF8yIHBpZDo5MRYwFAYDVQQDDA13d3cuaW50ZWwuY29tMB4XDTE5MDQxNjAwMDAwMFoXDTQ5MTIzMTIzNTk1OVowADCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ4ag9w2wEG0Tarnla7fw61JmcTNT4ViOBCkgCTgD7tlIRWF_Dqk5z1x48BBDVXSIUQ3Fmxhcr6SdxmhFkMktI3_OFw9q9wlCTKtqj3WKQjfQUTpl_GojI2U88rMwqL15hHzMAP98ungdBv0731rxmRpBCJX66ZOnaZzKWbN-UG35CFd-kYGLOSPOANRJkli0tLl16jk8MdFAblQx2vPgIdMz3uWqK7pSWbj1lbRQiXTGPgL9Bf9OxNPhH_cOJYFXOr8lerCmLBehjXI-ieQAf1hwWFDrHjsTkkfjH6zgZk5sei49voHUmIs_mldQ4hKg0wRnzHUPEsttgFDSamZl8cCAwEAAaOCAnEwggJtMA8GA1UdEwEB_wQFMAMBAQAwDgYDVR0PAQH_BAQDAgUgMBAGA1UdJQQJMAcGBWeBBQgBMCQGA1UdCQEBAAQaMBgwFgYFZ4EFAhAxDTALDAMyLjACAQACAWcwUAYDVR0RAQH_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-zpd-gQIhAI7cWkjgZ5y93iFOYR0QoZu3BP2MyivCfzK74yxxwaLV"}

 

This is what I received. Any help on this?

0 Kudos
1 Reply
CarlosAM_INTEL
Moderator
322 Views

Hello, @mrgenie:

Thank you for contacting Intel Embedded Community.

You should address your request as a reference through the portal stated in the following website:

https://github.com/tpm2-software/tpm2-tools/issues

Best regards,

@CarlosAM_INTEL.

0 Kudos
Reply