update TODO

This commit is contained in:
Lennart Poettering 2022-10-16 18:16:53 +02:00
parent d388f3d723
commit c868e95ebb

4
TODO
View file

@ -119,6 +119,10 @@ Deprecations and removals:
Features:
* provide an API to apps to encrypt/decrypt credentials. usecase: allow
bluez bluetooth daemon to pass pairings to initrd that way, without shelling
out to our tools.
* revisit default PCR bindings in cryptenroll and systemd-creds. Currently they
use PCR 7 which should contain secureboot state db/dbx. Which sounded like a
safe bet, given that it should change only on policy changes, and not