TRUSTED KEYS

modulename: trusted.ko

configname: CONFIG_TRUSTED_KEYS

Linux Kernel Configuration
└─>Security options
└─>TRUSTED KEYS
In linux kernel since version 2.6.38 (release Date: 2011-03-14)  
This option provides support for creating, sealing, and unsealing
keys in the kernel. Trusted keys are random number symmetric keys,
generated and RSA-sealed by the TPM. The TPM only unseals the keys,
if the boot PCRs and other criteria match. Userspace will only ever
see encrypted blobs.

If you are unsure as to whether this is required, answer N.

source code: