<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: need explanation TPM Binding (DL 380 Gen 9) in ProLiant Servers (ML,DL,SL)</title>
    <link>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7078216#M169536</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Thank you for the Copy Paste from a documentation, but I am hoping for a real "human" answer.&lt;/P&gt;&lt;P&gt;"&lt;SPAN&gt;The HPE TPM options conform to the&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Trusted Computing Group specifications and&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;provides hardware-based authentication&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;and tamper detection preventing a TPM from being moved to another server or replaced."&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I can insure you that recently the mother board was replaced and the TPM was "transported" from the deffetive montherboard to the new one .&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;My question is focussed on the understanding of&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-indent-padding-left-30px"&gt;&lt;STRONG&gt;&lt;SPAN class="ph cmd"&gt;&lt;SPAN class="ph uicontrol"&gt;3. TPM Binding&lt;/SPAN&gt;—Sets whether data is encrypted using a TPM bind key, which is a unique RSA key. &lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P class="lia-align-left"&gt;&lt;SPAN class="ph cmd"&gt;What is the bind key ? (How is it different to the non-bind key)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-align-left"&gt;&lt;SPAN class="ph cmd"&gt;Which data are we talking about ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-indent-padding-left-30px"&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 06 Feb 2020 12:22:13 GMT</pubDate>
    <dc:creator>PhS-</dc:creator>
    <dc:date>2020-02-06T12:22:13Z</dc:date>
    <item>
      <title>need explanation TPM Binding (DL 380 Gen 9)</title>
      <link>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7077816#M169487</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would like some clarification on the BIOS Option "TPM Binding"&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;•&amp;nbsp;TPM Binding — Sets whether data is encrypted using a TPM bind key, a unique RSA key.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Which Data are we talking about ? What is the TPM Bind key ( compare to the TPM not-bind? key )&lt;/P&gt;&lt;P&gt;Context :DL380 Gen 9 / Windows Server 2016 - 2019 / Bitlocker / TPM attestation ... etc etc&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance. &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 03 Feb 2020 14:33:16 GMT</pubDate>
      <guid>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7077816#M169487</guid>
      <dc:creator>PhS-</dc:creator>
      <dc:date>2020-02-03T14:33:16Z</dc:date>
    </item>
    <item>
      <title>Re: need explanation TPM Binding (DL 380 Gen 9)</title>
      <link>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7078116#M169527</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P style="font-weight: 400;"&gt;&lt;SPAN&gt;The HPE Trusted Platform Module (TPM) works with programs such as&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Microsoft Windows® BitLocker™&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;to increase data security by storing the encryption startup key in hardware on the server, which provides a more secure environment by pairing the drive to the server. Pairing the drive to the server helps prevent the encrypted drive from being read if inserted in a different server. The HPE TPM can also store passwords, certificates, and encryption keys that can authenticate server hardware and software through remote attestation while the measured boot capability enhances the effectiveness of anti-malware solutions.&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="font-weight: 400;"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="font-weight: 400;"&gt;&lt;SPAN&gt;The HPE TPM options conform to the&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Trusted Computing Group specifications and&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;provides hardware-based authentication&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;and tamper detection preventing a TPM from being moved to another server or replaced.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Configuring Trusted Platform Module options&lt;/P&gt;&lt;DIV&gt;&lt;DIV&gt;&lt;DIV&gt;Procedure&lt;/DIV&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;From the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;System Utilities&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;screen, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph menucascade"&gt;&lt;SPAN class="ph uicontrol"&gt;System Configuration&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&amp;gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;BIOS/Platform Configuration (RBSU)&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&amp;gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Server Security&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&amp;gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Trusted Platform Module options&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and press&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Enter&lt;/SPAN&gt;.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;Select an option and press&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Enter&lt;/SPAN&gt;, then select a setting for that option and press&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Enter&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;again. On servers configured with an optional TPM, you can set the following:&lt;/SPAN&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;TPM 2.0 Operation—Sets the operational state of TPM 2.0. Options are:&lt;/SPAN&gt;&lt;DIV&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;No Action&lt;/SPAN&gt;—There is no TPM configured.&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Enabled&lt;/SPAN&gt;—TPM and&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Secure Boot&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;(when enabled) are fully functional.&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Disabled&lt;/SPAN&gt;—TPM is visible but functionality is limited. This option also resets TPM to factory settings, clearing assigned passwords, keys, or ownership data.&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;NOTE:&amp;nbsp;&lt;/SPAN&gt;&lt;P class="p"&gt;Disabling TPM can prevent the server from booting to the TPM-aware operating system if the OS uses TPM measurements.&lt;/P&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;&lt;SPAN class="ph uicontrol"&gt;TPM 2.0 Visibility&lt;/SPAN&gt;—Sets whether TPM is hidden form the operating system. Options are:&lt;/SPAN&gt;&lt;DIV&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Visible&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Hidden&lt;/SPAN&gt;—Hides TPM from the operating system.&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Secure Boot&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;is disabled and TPM does not respond to any commands. Use this setting to remove TPM options from the system without having to remove the actual hardware.&lt;/LI&gt;&lt;/UL&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;&lt;SPAN class="ph uicontrol"&gt;TPM Binding&lt;/SPAN&gt;—Sets whether data is encrypted using a TPM bind key, which is a unique RSA key. Options are:&lt;/SPAN&gt;&lt;DIV&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Enabled&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Disabled&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;&lt;SPAN class="ph uicontrol"&gt;TPM UEFI Option ROM Measurement&lt;/SPAN&gt;—Enables or disables (skips) measuring UEFI PCI operation ROMs. Options are:&lt;/SPAN&gt;&lt;DIV&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Enabled&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph uicontrol"&gt;Disabled&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/DIV&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;Verify that your new&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Current TPM Type&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;Current TPM State&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;settings appear at the top of the screen.&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class="ph cmd"&gt;Press&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph uicontrol"&gt;F10&lt;/SPAN&gt;.&lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;SPAN class="ph cmd"&gt;Thank you for Contacting HPE&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 05 Feb 2020 16:42:50 GMT</pubDate>
      <guid>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7078116#M169527</guid>
      <dc:creator>DeepakJajware</dc:creator>
      <dc:date>2020-02-05T16:42:50Z</dc:date>
    </item>
    <item>
      <title>Re: need explanation TPM Binding (DL 380 Gen 9)</title>
      <link>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7078216#M169536</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Thank you for the Copy Paste from a documentation, but I am hoping for a real "human" answer.&lt;/P&gt;&lt;P&gt;"&lt;SPAN&gt;The HPE TPM options conform to the&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Trusted Computing Group specifications and&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;provides hardware-based authentication&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;and tamper detection preventing a TPM from being moved to another server or replaced."&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I can insure you that recently the mother board was replaced and the TPM was "transported" from the deffetive montherboard to the new one .&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;My question is focussed on the understanding of&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-indent-padding-left-30px"&gt;&lt;STRONG&gt;&lt;SPAN class="ph cmd"&gt;&lt;SPAN class="ph uicontrol"&gt;3. TPM Binding&lt;/SPAN&gt;—Sets whether data is encrypted using a TPM bind key, which is a unique RSA key. &lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P class="lia-align-left"&gt;&lt;SPAN class="ph cmd"&gt;What is the bind key ? (How is it different to the non-bind key)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-align-left"&gt;&lt;SPAN class="ph cmd"&gt;Which data are we talking about ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="lia-indent-padding-left-30px"&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Feb 2020 12:22:13 GMT</pubDate>
      <guid>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7078216#M169536</guid>
      <dc:creator>PhS-</dc:creator>
      <dc:date>2020-02-06T12:22:13Z</dc:date>
    </item>
    <item>
      <title>Re: need explanation TPM Binding (DL 380 Gen 9)</title>
      <link>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7166479#M177965</link>
      <description>&lt;P&gt;hi there&lt;BR /&gt;no expert on the topic but had the same question.&lt;BR /&gt;i found the following article that helped me:&lt;BR /&gt;&lt;A href="https://ladyitris.wordpress.com/tpm-functionality/#:~:text=In%20short%3A%20TPM%20Binding%20means%20you%20encrypt%20the,recoverable%20by%20decryption%20using%20the%20recipient%E2%80%99s%20private%20key." target="_blank"&gt;TPM functionality – ITris Academy (wordpress.com)&lt;/A&gt;&lt;BR /&gt;just search inside the page for tpm binding.&lt;BR /&gt;regards&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2022 06:28:02 GMT</pubDate>
      <guid>https://community.hpe.com/t5/proliant-servers-ml-dl-sl/need-explanation-tpm-binding-dl-380-gen-9/m-p/7166479#M177965</guid>
      <dc:creator>TQ12</dc:creator>
      <dc:date>2022-05-17T06:28:02Z</dc:date>
    </item>
  </channel>
</rss>

