diff options
Diffstat (limited to 'man/systemd-cryptenroll.xml')
-rw-r--r-- | man/systemd-cryptenroll.xml | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/man/systemd-cryptenroll.xml b/man/systemd-cryptenroll.xml index ad338cdcc5..e4b03936a6 100644 --- a/man/systemd-cryptenroll.xml +++ b/man/systemd-cryptenroll.xml @@ -288,7 +288,7 @@ <row> <entry>7</entry> - <entry>Secure boot state; changes when UEFI SecureBoot mode is enabled/disabled, or firmware certificates (PK, KEK, db, dbx, …) changes. The shim project will measure most of its (non-MOK) certificates and SBAT data into this PCR.</entry> + <entry>Secure Boot state; changes when UEFI SecureBoot mode is enabled/disabled, or firmware certificates (PK, KEK, db, dbx, …) changes. The shim project will measure most of its (non-MOK) certificates and SBAT data into this PCR.</entry> </row> <!-- Grub measures all its commands and the kernel command line into PCR 8… --> @@ -312,7 +312,7 @@ <row> <entry>12</entry> - <entry><citerefentry><refentrytitle>systemd-boot</refentrytitle><manvolnum>7</manvolnum></citerefentry> measures any specified kernel command line into this PCR. <citerefentry><refentrytitle>systemd-stub</refentrytitle><manvolnum>7</manvolnum></citerefentry> measures any manually specified kernel command line (i.e. a kernel command line that overrides the one embedded in the unified PE image) and loaded credentials into this PCR. (Note that if <command>systemd-boot</command> and <command>systemd-stub</command> are used in combination the command line might be measured twice!)</entry> + <entry><citerefentry><refentrytitle>systemd-boot</refentrytitle><manvolnum>7</manvolnum></citerefentry> measures the kernel command line into this PCR. <citerefentry><refentrytitle>systemd-stub</refentrytitle><manvolnum>7</manvolnum></citerefentry> measures any manually specified kernel command line (i.e. a kernel command line that overrides the one embedded in the unified PE image) and loaded credentials into this PCR. (Note that if <command>systemd-boot</command> and <command>systemd-stub</command> are used in combination the command line might be measured twice!)</entry> </row> <row> @@ -382,7 +382,7 @@ <para>The <option>--tpm2-signature=</option> option takes a path to a TPM2 PCR signature file as generated by the <citerefentry><refentrytitle>systemd-measure</refentrytitle><manvolnum>1</manvolnum></citerefentry> - tool. If this this is not specified explicitly a suitable signature file + tool. If this is not specified explicitly a suitable signature file <filename>tpm2-pcr-signature.json</filename> is searched for in <filename>/etc/systemd/</filename>, <filename>/run/systemd/</filename>, <filename>/usr/lib/systemd/</filename> (in this order) and used. If a signature file is specified or found it is used to verify if the volume can be unlocked |