acidanthera / bugtracker

Acidanthera Bugtracker
385 stars 45 forks source link

Possibility of using TPM to emulate T2? #1799

Closed albertofustinoni closed 3 years ago

albertofustinoni commented 3 years ago

I see a lot of though is paid to security in OpenCore, up to and including ways to have a full chain of trust from firmware to OS via UEFI Secure Boot signing/Vaulting/Apple Secure boot.

Given that and OpenCore's position in the boot chain, I am wondering if it would be possible for it to take advantage of the TPM present in modern PCs to provide things like:

Has this been considered before?

vit9696 commented 3 years ago

In general I am not against this, but the architecture is quite different for TPM and T2. For example:

I would say it has loosely been considered, but the effort needed and the gained benefit are rather slim, so here we would rather let other parties to contribute something we can adopt.

rbelusko commented 3 months ago

I am wondering this myself, but for a slightly different reason: I am hearing that the new 'iPhone Mirroring' feature uses T2 authentication. So I don't think this would ever work on a Hackintosh, unless T2 is bypassed.

Without 'iPhone Mirroring', I don't see a need to continue Hackintoshing.