- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
I have 2 Intel® Core™ i7-8665UE Processor boards which apparently did not come with a TPM EK certificate embedded in them.
I run a set of commands to generate the required keys and retrieve the certificate online.
tpm2_createek -G rsa -u ek.pub -c key.ctx => to get the pub key
tpm2_getekcertificate -X -o ECcert.bin -u ek.pub https://ekop.intel.com/ekcertservice/ => to get the certificate.
However, the format of the received certificate is not what was expected and as such, I can not import it into the NVRAM of my board.
{"pubhash":"LrZoQvxmVFvsHGfXgDICeCaEmTFUZGYCLghBgpSNSBo%3D","certificate":"MIIE6DCCBI2gAwIBAgIUFyFzONq6-rSaEgQBgYcYyzO1gnIwCgYIKoZIzj0EAwIwgaYxCzAJBgNVBAYMAlVTMQswCQYDVQQIDAJDQTEUMBIGA1UEBwwLU2FudGEgQ2xhcmExGjAYBgNVBAoMEUludGVsIENvcnBvcmF0aW9uMUAwPgYDVQQLDDdUUE0gRUsgaW50ZXJtZWRpYXRlIGZvciBDTkxfRVBJRF9QT1NUX0IxTFBfUFJPRF8yIHBpZDo5MRYwFAYDVQQDDA13d3cuaW50ZWwuY29tMB4XDTE5MDQxNjAwMDAwMFoXDTQ5MTIzMTIzNTk1OVowADCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ4ag9w2wEG0Tarnla7fw61JmcTNT4ViOBCkgCTgD7tlIRWF_Dqk5z1x48BBDVXSIUQ3Fmxhcr6SdxmhFkMktI3_OFw9q9wlCTKtqj3WKQjfQUTpl_GojI2U88rMwqL15hHzMAP98ungdBv0731rxmRpBCJX66ZOnaZzKWbN-UG35CFd-kYGLOSPOANRJkli0tLl16jk8MdFAblQx2vPgIdMz3uWqK7pSWbj1lbRQiXTGPgL9Bf9OxNPhH_cOJYFXOr8lerCmLBehjXI-ieQAf1hwWFDrHjsTkkfjH6zgZk5sei49voHUmIs_mldQ4hKg0wRnzHUPEsttgFDSamZl8cCAwEAAaOCAnEwggJtMA8GA1UdEwEB_wQFMAMBAQAwDgYDVR0PAQH_BAQDAgUgMBAGA1UdJQQJMAcGBWeBBQgBMCQGA1UdCQEBAAQaMBgwFgYFZ4EFAhAxDTALDAMyLjACAQACAWcwUAYDVR0RAQH_BEYwRKRCMEAxFjAUBgVngQUCAQwLaWQ6NDk0RTU0NDMxDjAMBgVngQUCAgwDQ05MMRYwFAYFZ4EFAgMMC2lkOjAwMDIwMDAwMB8GA1UdIwQYMBaAFBegBXXQXljjiBIQu5ixBFu0wwY5MGgGA1UdHwRhMF8wXaBboFmGV2h0dHBzOi8vdHJ1c3RlZHNlcnZpY2VzLmludGVsLmNvbS9jb250ZW50L0NSTC9la2NlcnQvQ05MRVBJRFBPU1RCMUxQUFJPRDJfRUtfRGV2aWNlLmNybDCBgAYIKwYBBQUHAQEEdDByMHAGCCsGAQUFBzAChmRodHRwczovL3RydXN0ZWRzZXJ2aWNlcy5pbnRlbC5jb20vY29udGVudC9DUkwvZWtjZXJ0L0NOTEVQSURQT1NUQjFMUFBST0QyX0VLX1BsYXRmb3JtX1B1YmxpY19LZXkuY2VyMIGxBgNVHSAEgakwgaYwgaMGCiqGSIb4TQEFAgEwgZQwWgYIKwYBBQUHAgEWTmh0dHBzOi8vdHJ1c3RlZHNlcnZpY2VzLmludGVsLmNvbS9jb250ZW50L0NSTC9la2NlcnQvRUtjZXJ0UG9saWN5U3RhdGVtZW50LnBkZjA2BggrBgEFBQcCAjAqDChUQ1BBIFRydXN0ZWQgUGxhdGZvcm0gTW9kdWxlIEVuZG9yc2VtZW50MAoGCCqGSM49BAMCA0kAMEYCIQD4Yi2LxeEIVn8vKyuy7Tw0Ry0tgBcv5S4jGPT-zpd-gQIhAI7cWkjgZ5y93iFOYR0QoZu3BP2MyivCfzK74yxxwaLV"}
This is what I received. Any help on this?
Link Copied
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello mrgenie,
Thank you for posting on the Intel® communities.
I would like to let you know that we have a specific forum for this kind of issue and product, it is called the Intel Embedded Community. There you will receive the appropriate support on this and other concerns you may have related to this product.
Here you will find the links to access the community forums:
Please keep in mind that this thread will no longer be monitored by Intel.
Regards,
Deivid A.
Intel Customer Support Technician

- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page