The efi package only copies pre-OS events from the TCG log to the profile for PCRs 0 and 2, and will generate an invalid profile if the platform firmware measures anything after this. The preinstall tests should check for this for these PCRs (and 1 and 3 when supported) in order to catch this.
The
efipackage only copies pre-OS events from the TCG log to the profile for PCRs 0 and 2, and will generate an invalid profile if the platform firmware measures anything after this. The preinstall tests should check for this for these PCRs (and 1 and 3 when supported) in order to catch this.