Loading…
October 8, 2026 | Prague, Czechia
View More Details & Registration  |  Note: The schedule is subject to change.
You must be registered for Linux Security Summit Europe 2026 to participate in the sessions. Please visit the event registration page to purchase a ticket. 
Thursday October 8, 2026 11:00 - 11:45 CEST
The kernel uses a novel null seed scheme to protect the security of TPM
communications against interposers as well as detect TPM reset attacks.
Since the kernel can't verify the null seed on its own, the name of the
derived key is projected up to userspace to be verified there. However,
this verification can be done once on boot and lasts until the next
reboot meaning any userspace application can simply inherit the check
instead of going to all the bother of trying to verify trust in the TPM
itself (which no current user space applications actually do because of
the complexity involved).

This talk will briefly describe how interposers work, how TPM
verification works, what the null seed scheme is how trust can be
established at OS install by using the TPM certificate to certify a
signing EK and permanently store its name in the filesystem. This
signing EK can be used on each boot to simply verify the null seed.
Finally we'll give examples of user space tools using the null seed in
real life to inherit the existing TPM trust.
Speakers
avatar for James Bottomley

James Bottomley

Partner Architect, Microsoft
James Bottomley is a Partner Architect at Microsoft working on Linux.
He is also Linux Kernel maintainer of the SCSI subsystem. He started
at AT&T Bell labs to work on Lock Manager technology for
clustering. In 2000 he helped found SteelEye Technology to bring HA to
Linux, be... Read More →
Thursday October 8, 2026 11:00 - 11:45 CEST
Chamber Hall

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link