TPM 2.0 Attestation in Linux KVM/QEMU VM

via Freelancer ·

Budget / Salary$30–250
TypeFreelance project
LocationRemote
Posted2 hours ago
I need someone who can make all Windows TPM 2.0 remote attestation checks pass inside a Linux KVM/QEMU Windows VM.

I don't care how it is implemented. I just need a working setup where everything passes, including:

Trusted vendor EK/EKCert

EK certificate verification

EK public key matching the certificate

AIK enrollment and trust

Isolated VM PCR domain

TCG Event Log

PcrsMatchTcgLog=true

PCR replay / all PCRs matching

TPM Quote verification

Nonce verification

Credential Activation

Microsoft/external EK verification

Windows TPM pre-attestation / health checks

Current setups only give me part of this: physical TPM passthrough gives trusted EK/EKCert but causes PCR/TCG log mismatch, while software vTPM gives clean isolated PCRs but uses an untrusted/operator EK certificate.

I need one working KVM/QEMU Windows VM setup where all of the above passes simultaneously.

Host: Linux
Hypervisor: KVM/QEMU
Guest: Windows
TPM: TPM 2.0

I don't need a theoretical explanation. I need someone who can actually implement and demonstrate a working solution.

If you have already done this or have a proven implementation, please contact me with details.
system admin linux cloud computing windows server ubuntu virtualization security system administration
Apply on Freelancer →

Project sourced from Freelancer.com. Applications happen directly on the original platform — we never collect your data.