Is there any documentation about PCR index usage for opensuse 15.6 (or 15.5)?

Good evening.

I’d like to ask if there is a documented PCR index usage (even a brief one) for OpenSUSE 15.6 or 15.5. To be specific, I’m looking for this style of table (Table “EVE-OS PCR Index Map and Security Implications”) for OpenSUSE 15.5/6 so as to know which boot component writes which PCR index.

Thank you very much for your help.

@gwangmu Hi and welcome to the Forum :smile:
See here https://en.opensuse.org/SDB:Encrypted_root_file_system and here https://uapi-group.org/specifications/specs/linux_tpm_pcr_registry/

Hello @malcolmlewis ,

Thank you so much for the pointers :slight_smile: . I’ll take a look at them and get back here.

One small question: this may be an uninformed question, but in this link https://uapi-group.org/specifications/specs/linux_tpm_pcr_registry/ , there are some PCR indices that are explicitly attributed to “grub.” How much do you think it generalizes to other non-grub boot loaders? (e.g., iPXE)

Not done any iPXE booting. I’d suggest looking at the Agama installer and profiles…

Have a look here https://agama-project.github.io/docs/user/reference/boot_options

Thanks @malcolmlewis , I’ll take a look at it. :slight_smile: