On Thu, May 14, 2020 at 6:51 AM Javier Martinez Canillas <javierm@xxxxxxxxxx> wrote: > That's what is not clear to me. For example, if a firmware follows the > spec what happens during EBS() when a TPM2 only supports the SHA-1 format? > > Does the firmware always log events during EBS() even when it won't provide > a Final Events Table? If so, are the SHA-1 logs always incomplete? In my experience, yes. We deal with this by just brute forcing all possible PCR5 events until we find a solution that matches.