@Chris The encrypted partition is created after I enroll the signing key by mokutil and enable secure boot.
But, I get new error message (For details, please refer to attached photo): taskrunner.go: 271: [change 2 "Setup system for run mode" task] failed: cannot make system runnable: cannot seal the encryption keys: cannot add EFI secure boot policy profile: cannot compute secure boot policy profile: secure boot configuration was modified after the initial configuration was measured, without performing a reboot. Did I miss some patches when I backported patches to secboot/go-tpm2 which are currently used by snapd? ** Attachment added: "error-msg.jpg" https://bugs.launchpad.net/intel/+bug/1938678/+attachment/5518965/+files/error-msg.jpg -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1938678 Title: [intel] [tgl-h][iotg] [hwe-tpm] Ubuntu Core hangs during bootup on TGL-H To manage notifications about this bug go to: https://bugs.launchpad.net/intel/+bug/1938678/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs