During boot, a PCR with the vTPM is prolonged Together with the root of the Merkle tree, and later on verified by the KMS right before releasing the HPKE private crucial. All subsequent reads from your root partition https://lewyskoff935201.wikitron.com/user