Skip to content

Commit

Permalink
keylime-agent.conf: only mention ecdsa and rsassa for signing
Browse files Browse the repository at this point in the history
The other algorithms, while supported by the TPM, are not supported on the
Keylime verifier side.

Signed-off-by: Thore Sommer <mail@thson.de>
  • Loading branch information
THS-on committed Mar 4, 2025
1 parent 329329d commit d41a1c5
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion keylime-agent.conf
Original file line number Diff line number Diff line change
Expand Up @@ -218,7 +218,7 @@ allow_payload_revocation_actions = true
# Currently accepted values include:
# - hashing: sha512, sha384, sha256 or sha1
# - encryption: ecc or rsa
# - signing: rsassa, rsapss, ecdsa, ecdaa or ecschnorr
# - signing: rsassa or ecdsa
#
# To override tpm_hash_alg, set KEYLIME_AGENT_TPM_HASH_ALG environment variable.
# To override tpm_encryption_alg, set KEYLIME_AGENT_TPM_ENCRYPTION_ALG
Expand Down

0 comments on commit d41a1c5

Please sign in to comment.