logoalt Hacker News

bradfatoday at 9:19 AM0 repliesview on HN

Normal secure boot does not use the TPM. Secure boot is the proactive process of ensuring only allowed code loads and executes.

The TPM is used for measured boot, the post process to understand what actually was booted and if the right set of things were booted then to allow unlocking of specific items like keys.

Both are important but they are not the same thing.