2 SecureBootPrivateKey=/etc/kernel/secureboot-private-key.pem
3 SecureBootCertificate=/etc/kernel/secureboot-certificate.pem
7 PCRPrivateKey=/etc/systemd/tpm2-pcr-private-key-initrd.pem
8 PCRPublicKey=/etc/systemd/tpm2-pcr-public-key-initrd.pem
11 Phases=enter-initrd:leave-initrd enter-initrd:leave-initrd:sysinit
12 enter-initrd:leave-initrd:sysinit:ready
13 PCRPrivateKey=/etc/systemd/tpm2-pcr-private-key-system.pem
14 PCRPublicKey=/etc/systemd/tpm2-pcr-public-key-system.pem