swtpm/man/man8
Stefan Berger 71cc7a41e0 swtpm_cert: Enable signing of EK certificates with hashless signing schemes
Enable swtpm_cert to sign EK certificates with ML-DSA and EdDSA keys.

An ML-DSA-87 EK signed by an ML-DSA-87 private key (currently) leads to
an EK certificate of ~7567 bytes. Therefore, large NVRAM spaces are needed
to store such certificates.

Also allow signing of the certificates with EdDSA keys, such as Ed25519 and
Ed448.

Add a recommendation for CA keys to the swtpm_setup man page.

Signed-off-by: Stefan Berger <stefanb@linux.ibm.com>
2026-06-03 16:30:44 -04:00
..
Makefile.am man: Install swtpm_cuse.8 iff WITH_CUSE 2022-12-21 13:54:38 -05:00
swtpm_bios.pod man: Fix some typos in the man pages 2026-03-16 17:05:53 -04:00
swtpm_cert.pod man: Describe new options for swtpm_cert 2026-06-03 16:30:44 -04:00
swtpm_cuse.8 man: Replace swtpm_cuse man page with redirect to swtpm man page 2022-08-10 19:30:35 -04:00
swtpm_ioctl.pod man: Better describe --get-info option parameters for swtpm_ioctl 2024-10-02 18:20:18 -04:00
swtpm_localca.pod man: Remove paragraph about certtool from swtpm_localca man page 2026-05-05 14:19:08 -04:00
swtpm_setup.pod swtpm_cert: Enable signing of EK certificates with hashless signing schemes 2026-06-03 16:30:44 -04:00
swtpm-create-tpmca.pod samples: Remove usage of certtool from swtpm-create-tpmca 2026-05-06 08:09:04 -04:00
swtpm-localca.8 Change swtpm-localca to swtpm_localca in manpages 2021-07-27 20:05:41 -04:00
swtpm.pod man: Fix some typos in the man pages 2026-03-16 17:05:53 -04:00