PCR_UNUSABLE after already seeing a verification event during the OS-present environment
Open
- Dominant language
- Go
- Stars
- 23
- Forks
- 29
- Avg merge
- 2d 8h
- Merged PRs (30d)
- 2
Description
enabled secure boot and tied to install TPM backed FDE using ubuntu-26.04-desktop-amd64.iso gives me:
Resetting TMP to factory settings does not help.
This is on a Lenovo X13 Gen 3.
Also tried the measurements listed under "Learn more about hardware backed encryption". Did not help.
Contributor guide
Research direction
Start by reproducing the PCR_UNUSABLE result with ubuntu-26.04-desktop-amd64.iso on the Lenovo X13 Gen 3, including the secure-boot and TPM-backed FDE setup described. Trace where the verification event and PCR_UNUSABLE result are handled; done means identifying the cause and confirming a fix or a clearly documented limitation.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- go
- Domain
- security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Active
- Clarity
- Needs clarification
- Newbie friendliness
- 35/100