Skip to content

Why is Caliptra FMC required? #1613

Answered by jhand2
yh36 asked this question in Q&A
Jul 12, 2024 · 1 comments · 4 replies
Discussion options

You must be logged in to vote

Good question. The primary reason is to allow machine owners to issue an owner certificate for FMC alias key. Because RT is hitelssly updatable but FMC is not, you can issue an FMC owner cert at cold boot and then guarantee it won't change until the next cold boot. You can also force it to rotate with an FMC update, whereas LDevID is bound to fuses, so it's not infinitely rotatable.

We have had a couple discussions for 2.0 about ways we could achieve this property without FMC, but we don't have anything concrete written down yet.

Replies: 1 comment 4 replies

Comment options

You must be logged in to vote
4 replies
@yh36
Comment options

@jhand2
Comment options

@yh36
Comment options

@jhand2
Comment options

Answer selected by yh36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants