[CentOS-virt] TPM

Wed Aug 29 15:58:47 UTC 2018
Dag Nygren <dag at newtech.fi>

On onsdag 29 augusti 2018 kl. 17:39:18 EEST Stephen John Smoogen wrote:
> On Wed, 29 Aug 2018 at 10:25, Dag Nygren <dag at newtech.fi> wrote:

> > Anyone here with an experience in transitioning QEMU -> XEN ?

> http://www.cse.psu.edu/~pdm12/cse544/slides/cse544-schiffman-vTPM.pdf goes
> through some of the problems. 

Yes, I had a look at that earlier and it seems XEN has solved most
of the problems

> You need to be aware of the limitations of
> the specific TPM your hardware has, and what you are giving up in the trust
> model with any vTPM [aka your virtual machine can't move from its server,
> your TPM isn't real and can possibly looked at by other guests, etc etc.]

Couldn't find anything on the issue of migration of the VM, but I thought
that Xen has that one also taken care of? (Exporting and importing keys)

Am I completely wrong here?

Best
Dag