Runs TPM2_Create

-hp parent handle

Asymmetric Key Algorithm

-rsa (default) -ecc curve


nistp256 nistp384

Key attributes

-bl data blob for unseal

-if data file name

-den decryption, RSA, not storage, NULL scheme -deo decryption, RSA, not storage, OAEP scheme -des encryption/decryption, AES symmetric

[-116 for TPM rev 116 compatibility]

-st storage -si signing -sir restricted signing -kh keyed hash (hmac) -gp general purpose, not storage

-kt (can be specified more than once)

f fixedTPM p fixedParent

[-da object subject to DA protection) (default no)]

[-nalg name hash algorithm [sha1, sha256, sha384] (default sha256)] [-halg scheme hash algorithm [sha1, sha256, sha384] (default sha256)]

[-pwdk password for key (default empty)] [-pwdp password for parent key (default empty)] [-pol policy file (default empty)]

[-opu public key file name (default do not save)] [-opr private key file name (default do not save)]

-se[0-2] session handle (default PWAP)

01 continue 20 command decrypt 40 response encrypt

See Also

The full documentation for tsscreate is maintained as a Texinfo manual.  If the info and tsscreate programs are properly installed at your site, the command

info tsscreate

should give you access to the complete manual.


