ある組織は最近、エンドポイント デバイスの OS ブートローダーに悪意のあるロジックを注入する攻撃から回復しました。そのため、組織は、測定されたブートと認証に TPM の使用を必須とし、IJEFI から OS コンポーネントの完全ロードまで各コンポーネントを監視することを決定しました。次の TPM 構造のどれがこのストレージ機能を有効にしますか?
正解:D
TPMs provide the ability to store measurements of code and data that can be used to ensure that code and data remain unchanged over time. This is done through Platform Configuration Registers (PCRs), which are structures used to store measurements of code and data. The measurements are taken during the boot process and can be used to compare the state of the system at different times, which can be used to detect any changes to the system and verify that the system has not been tampered with.