I don't know if this is possible with UEFI, but in the original TCG (then TCPA) standard, the "solution" to this was remote attestation. I say "solution", because what this meant was that any network service that you regard as essential would effectively be able to control what software you run.
Power management, mobile and firmware developer on Linux. Security developer at nvidia. Ex-biologist. Content here should not be interpreted as the opinion of my employer. Also on Mastodon and Bluesky.
Re: Virtualization
Date: 2012-05-31 04:48 pm (UTC)