[05:39] <mcr-dyas> There was an email about a cloud-init conference/meeting... did a decision get made yet?
[05:43] <mcr-dyas>  https://lists.launchpad.net/cloud-init/msg00428.html  not seeing any followup.... it's now approaching the first (Feb) choice :-)... and I'd like to fit into my schedule.
[11:34] <meena> mcr-dyas: not that i remember
[11:34] <meena> all i know is that i probably can't join
[15:41] <mcr-dyas> meena, if it's virtual only, it can become quite accessible.
[16:08] <mcr-dyas> my interest is in provisioning IDevID certificates into virtual appliances, this might lead to more typical WebPKI certificates, or it may be part of a more dynamic interaction (TLS certifications for postgres mutual authentication).  Given virtual/fTPM to hold/generate the secret, the problem of snapshots vs private keys becomes much less.  One way to do this is to provision a symmetric secret or an ephemeral asymmetric pair via clo
[16:08] <mcr-dyas> ud-init, and then use that with RFC7030 to provision the long-term TPM backed credential.   But, I feel like that's the long way around.
[18:28] <meena> mcr-dyas: how would the preferred solution work?