Rule ID
SV-282771r1201293_rule
Version
V1R1
CCIs
A Trusted Platform Module (TPM) is an example of a hardware-protected data store that can be used to protect cryptographic keys.
Verify TOSS 5 is using the TPM 2.0 hardware with the following command (if TPM 2.0 hardware is available): $sudo tpm2_pcrread <multiple SHA keys> If the command returns a status of "ERROR", and TPM 2.0 hardware is available, this is a finding.
Configure TOSS 5 to provide protected storage for cryptographic keys by enabling TPM hardware, if available.