I use PopOS and I wonder does the TPM processor in my CPU get used for anything out of the box? If not, what could it be used for? Have you guys got practical advice?

  • boredsquirrel@slrpnk.net
    link
    fedilink
    arrow-up
    6
    ·
    15 hours ago

    The TPM could be used to generate a LUKS decryption key from a password or PIN.

    That would tie that password to the hardware, but with LUKS you can have multiple ones, so a long password that directly unlocks the key should be possible in addition

  • just_another_person@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    12 hours ago

    I’m not aware of any consumer distros that use TPM enrollment for anything out of the box, though the tools may be present.

    Have a look at how Clevis works. That will give you an idea of how easy it is to work tish TPM in Linux.