1TSSCREATEEK(1) User Commands TSSCREATEEK(1)
2
3
4
6 tsscreateek - Runs TPM2 createek
7
9 createek
10
11 Parses and prints the various EK NV indexes specified by the IWG Cre‐
12 ates an EK primary key based on the EK NV indexes
13
14 [-pwde endorsement hierarchy password (default empty)]
15
16 [-pwdk password for endorsement key (default empty)]
17
18 [-high Use the IWG NV high range. Specify before algorithm]
19
20 -rsa keybits
21
22 2048 3072 4096
23
24 -ecc curve
25
26 nistp256 nistp384 nistp521
27
28 -te print EK Template
29
30 -no print EK nonce
31
32 -ce print EK certificate
33
34 -cp CreatePrimary using the EK template and EK nonce. Validate the
35 EK against the EK certificate
36
37 [-noflush
38 Do not flush the primary key after validation]
39
40 [-root filename - validate EK certificate against the root] filename
41 contains a list of PEM format CA root certificate filenames, one
42 per line. The list may contain up to 100 certificates.
43
44
45
46tsscreateek 1.6 November 2020 TSSCREATEEK(1)