/boot/start-xen mount -o ro /dev/sda2 /boot unsealtotp.sh cbmem --console | grep '^ME' cbmem --console | less