stpm-verify - Verify data using the TPM chip
Contents
Description
stpm-verify verifies data signed by stpm-sign.
This program is mostly made for debugging, to make sure that the TPM is set up correctly and a valid key
was generated.
Diagnostics
Most errors will probably be related to interacting with the TPM chip. Resetting the TPM chip and taking
ownership should take care of most of them. See the TPM-TROUBLESHOOTING section of simple-tpm-pk11(7).
Examples
dd if=/dev/urandom of=to-sign bs=1 count=35
stpm-sign -k ~/.simple-tpm-pk11/my.key -f to-sign -r > to-sign.sig
stpm-verify -f to-sign -k ~/.simple-tpm-pk11/my.key -s to-sign.sig
Name
stpm-verify - Verify data using the TPM chip
Options
-h Show usage info.
-f datafile
File containing data to be verified.
-s sigfile
File containing signature from stpm-sign.
-k keyfile
File containing the encrypted key blob.
See Also
simple-tpm-pk11(7), stpm-keygen(1), stpm-sign(1).
Synopsis
stpm-verify [ -hq ] -f data -s sigfile -k <key file>
