From cd40428d5c3cd6c45f7adb7f6f3c3cc4a3b6a0cb Mon Sep 17 00:00:00 2001 From: Tom Schlenkhoff Date: Tue, 22 Jan 2019 18:08:09 +0100 Subject: [PATCH] Added info on Intel TXT requirement --- security/anti-evil-maid.md | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/security/anti-evil-maid.md b/security/anti-evil-maid.md index f70dcbfb..bd3ab5d3 100644 --- a/security/anti-evil-maid.md +++ b/security/anti-evil-maid.md @@ -16,6 +16,16 @@ Background Please read [this blog article](https://blog.invisiblethings.org/2011/09/07/anti-evil-maid.html). +Prerequsites +---------- + +The current package requires a TPM 1.2 interface and a working Intel TXT engine. +If you neutered your Intel Management Engine with e.g. [me_cleaner](https://github.com/corna/me_cleaner) +while installing [CoreBoot](https://www.coreboot.org/) then you are out of luck. +So, for now, you have to choose between deblobbing your BIOS and Anti Evil Maid. + +[Discussion](https://groups.google.com/d/msg/qubes-users/sEmZfOZqYXM/j5rHeex1BAAJ) + Installing ----------