in the course of boot, a PCR with the vTPM is prolonged Together with the root of the Merkle tree, and afterwards verified through the KMS right before releasing the HPKE personal essential. All subsequent reads from the root partition are checked against the Merkle tree. This makes sure that your complete contents of the foundation partition are a