I am setting up Trenchboot in order that AEM works in my AMD machine with TPM2.0.
There are few documentations for setting up TPM2.0 in this forum and now I am not sure what to do next at all.
According to instructions in this thread, firstly AEM should be set up.
So I have installed tpm2-tools, tpm2-tss, tpm-abrmd, anti-evil-maid and their dependencies in dom0.
tpm2_clear
tpm_changeauth -c o
anti-evil-maid-tpm-setup -z
gives following error:
cat: /sys/class/tpm/tpm0/owned: No such file or directory
anti-evil-maid-tpm-setup: You must reset/clear your TPM chip first!
What is needed to get /sys/class/tpm/tpm0/owned with TPM2.0?
See the second link. I do not believe it is implemented for AMD yet, but you could contact the developers about being a tester if you are interested in testing experimental software.
If you want security, do not install experimental software.