Case Study Questions: Why is it essential to have a hardware security foundation? Identify at least five attacks that cannot be defended with software. Why are open standards important in security? Why would IBM be an advocate for open standards? Why would it change its proprietary ESS 1.0 chip – which it had already sold in some of its PL300 desktops and T23 ThinkPad notebooks, and which it had paid a Common Criteria Testing Laboratory to evaluate – so that is was available as open source? What does trusted computing mean? What is the trusted platform module? Describe the major differences between ESS 1.0 and ESS 2.0 How can the trusted boot functions prevent the unauthorized modification of the operating system? What is the purpose of the endorsement key? The storage root key? And the owner authorization secret key? Explain how the ESS 2.0 chip can protect the owners data from external attack, but it cannot protect that data from attack by the owner/

