As per Intel's request, I unchecked sha256, and checked sm3_256. Yet the change did not take effect.
On the TGL-H board, I was able to make this change and have it stick. (It didn't help with https://bugs.launchpad.net/intel/+bug/1938678.)
Intel also wanted me to try different combinations of PCRs. I don't know if those were valid configurations or not, but once again, I was able to save the setting in the TGL-H board's BIOS (Select All, Select None) but not on the EHL board.
As per Intel's request, I unchecked sha256, and checked sm3_256. Yet the change did not take effect.
On the TGL-H board, I was able to make this change and have it stick. (It didn't help with https:/ /bugs.launchpad .net/intel/ +bug/1938678.)
Intel also wanted me to try different combinations of PCRs. I don't know if those were valid configurations or not, but once again, I was able to save the setting in the TGL-H board's BIOS (Select All, Select None) but not on the EHL board.