in the course of boot, a PCR of the vTPM is prolonged With all the root of the Merkle tree, and afterwards verified from the KMS ahead of releasing the HPKE private important. All subsequent reads from the root https://bookmarkpagerank.com/story18351205/detailed-notes-on-confidential-ai