Skip to content

Config: Fix DisableSha1Pcr configuration to also apply for ARM64 platforms - #115

Merged
Maheer Aeron (maheeraeron) merged 1 commit into
microsoft:mainfrom
maheeraeron:user/maheeraeron/tpm-fix
Sep 17, 2026
Merged

Maheer Aeron (maheeraeron) merged 1 commit into
microsoft:mainfrom
maheeraeron:user/maheeraeron/tpm-fix

Conversation

@maheeraeron

Copy link
Copy Markdown
Collaborator

OpenVMM introduced TPM versioning logic: microsoft/openvmm#4465. This change detects the TPM version, and if we are TPM 1.85 or greater, then OpenVMM or OpenHCL will configure UEFI to disable sha1 PCRs.

Unfortunately, CI for OpenVMM fails for ARM64 because UEFI ignores this setting for ARM64. This PR fixes that.

@maheeraeron
Maheer Aeron (maheeraeron) merged commit 9aebaaf into microsoft:main Sep 17, 2026
14 checks passed
@maheeraeron
Maheer Aeron (maheeraeron) deleted the user/maheeraeron/tpm-fix branch September 17, 2026 20:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants