Ask questionsHow to identify which TPM 2.0 PCR Bank is being used

On, there is no documented way to identify which PCR Bank is being used. For example, if you have a TPM 2.0 machine with SHA-1 and SHA-256 PCR Banks, it would be good to document how you can identify which one is being used.

Example text:

How can I identify which PCR bank is being used?

You can identify which PCR bank is currently used by Windows by looking at the registry.

Registry information

Registry key: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\IntegrityServices


Defines which PCR banks are currently active

Registry key: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\IntegrityServices


Algorithm ID of the PCR bank that Windows is currently using. (For the full list of supported algorithms, see the TCG Algorithm Registry.)


Answer questions alrosado

The issue I have is I am being asked how to identify if TPM 2.0 is using SHA 256 and nowhere in the documentation does it specify how to query that.


