docs: trusted-encrypted.rst: update parameters for command examples
The parameters in command examples for tpm2_createprimary and tpm2_evictcontrol are outdated, people (like me) are not able to create trusted key by these command examples. This patch updates the parameters of command example tpm2_createprimary and tpm2_evictcontrol in trusted-encrypted.rst. With Linux kernel v5.8 and tpm2-tools-4.1, people can create a trusted key by following the examples in this document. Signed-off-by: Coly Li <> Reviewed-by: Jarkko Sakkinen <> Reviewed-by: Stefan Berger <> Cc: Dan Williams <> Cc: James Bottomley <> Cc: Jason Gunthorpe <> Cc: Mimi Zohar <> Cc: Peter Huewe <> Link: Signed-off-by: Jonathan Corbet <>
Or with the Intel TSS 2 stack::
- #> tpm2_createprimary --hierarchy o -G rsa2048 -o key.ctxt
+ #> tpm2_createprimary --hierarchy o -G rsa2048 -c key.ctxt
- handle: 0x800000FF
- #> tpm2_evictcontrol -c key.ctxt -p 0x81000001
+ #> tpm2_evictcontrol -c key.ctxt 0x81000001
persistentHandle: 0x81000001