Skip to content

How to use device-attest-01 with tpm #1545

Answered by tashian
glance- asked this question in Q&A
Discussion options

You must be logged in to vote

Hi @glance-,

Thanks for the note.
There is no support for device-attest-01 TPM certificate flows in our open source packages.
In open source, we support YubiKey and Apple MDA flows at the moment.
The TPM flow is more complex and it requires an attestation CA.

We are rolling out Linux TPM support (including attestation CAs) for device and client certificates, in our commercial product. If you're interested in that, feel free to reach out and we can show you what we offer there.

And if there's more you'd like to see in open source, feel free to open an enhancement issue so we can track your request.

Replies: 1 comment 3 replies

Comment options

You must be logged in to vote
3 replies
@glance-
Comment options

@tashian
Comment options

@benlongo
Comment options

Answer selected by glance-
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
3 participants