igor_sk·vor 8 Jahren·discussproperly implemented, hw encryption is better because it does not expose key material in the RAM even for a brief moment.
igor_sk·vor 10 Jahren·discussThe paper is nice, however it covers an ancient AMT version. AFAIK this won't work on recent versions (it has saner defaults).
igor_sk·vor 10 Jahren·discuss>It includes in it the ME blobNo, it does not. FSP only includes x86 code to be executed on the main CPU. It may include stuff which talks to the ME but no ME firmware itself. You can use any UEFI extractor like UEFITool to check that.