DOKK / manpages / debian 10 / tpm-tools / tpm_revokeek.8.en
tpm_revokeek(8) System Manager's Manual tpm_revokeek(8)

TPM Management - tpm_revokeek

tpm_revokeek - revokes the Endorsement Key Pair of the TPM

tpm_revokeek [OPTION]

tpm_revokeek clears the TPM revocable Endorsement Key Pair (via the TPM_RevokeEndorsementKey API). This command erases all counters (except the base one), erases the Ek, the SRK, the owner auth and any NVRAM locked to the owner auth. It does not touch the delegation tables or other NVRAM.

Display command usage info.
Display command version info.
Set logging level.
Specifies the file that contains the authorization information required to revoke the Ek (secret data generated during the revocable Ek creation process). Only the first 20 bytes of this file are used and the remaining ones are ignored.

tpm_version(1), tpm_createek(8), tpm_getpubek(8), tcsd(8)

Report bugs to <trousers-users@lists.sourceforge.net>

2007-10-22 TPM Management