Attestation Key never leaves. Change the nonce and the check fails; that is freshness, felt rather than argued.new = Hash(old ‖ measurement) — and the result lands back in the same shielded slot. No command sets a register to a value you choose, which is exactly why a hacker cannot put a clean fingerprint back after the fact.SHA-256 digest cannot extend a SHA-1 bank, so the caller supplies a matching digest per algorithm. Which banks are active is configurable, so read them before you predict a value.swtpm) + the tpm2-tools toolkit (the standard command-line tools for talking to the chip).tpm2_pcrread sha256 to read the registers. Extend one and watch it change.tpm2_checkquote …. Change the nonce and watch it fail — feel freshness.Verify a report without the helper tool: check the signature against the Attestation Key, confirm the nonce, and recompute the combined register fingerprint by hand. If you can do that, you understand attestation at the bit level.
New chapters
The field guide is still being written. Put an address here to get an email when a chapter ships — that is all it is used for.