What does HRESULT 0x80280039 (TPM_E_REQUIRES_SIGN) mean?

 
Previous Next
TPM_E_NO_NV_PERMISSION TPM_E_KEY_NOTSUPPORTED

TPM_E_REQUIRES_SIGN

A signed authorization path is mandatory

TPM_E_REQUIRES_SIGN (0x80280039) means the object/policy requires signature-based proof for this NV or delegation operation and the submitted command did not provide a valid signed path. This is distinct from owner authorization or locality checks.

Evidence to capture

Capture target index/delegation object, permission attributes, signing requirement, signing key identity, nonce/session data, and the authorization structure actually sent.

Focused correction

Construct the command using the required signing authorization and verify the signature over the exact TPM-defined data. Do not remove the signing requirement from policy merely to make the test pass.

Technical references


Looking for a different code? Search another status or error code.