ConditionSecurity=measured-uki can be true even with TPM 1.2 which we
don't support, so add an explicit check for TPM 2.0.
Fixes https://github.com/systemd/systemd/issues/30650
Follow-up for
2e64cb71b9c0160c3
Conflicts=shutdown.target
Before=sysinit.target shutdown.target
ConditionSecurity=measured-uki
+ConditionSecurity=tpm2
ConditionPathExists=!/run/systemd/tpm2-srk-public-key.pem
[Service]
Before=sysinit.target shutdown.target
RequiresMountsFor=/var/lib/systemd/tpm2-srk-public-key.pem
ConditionSecurity=measured-uki
+ConditionSecurity=tpm2
ConditionPathExists=!/etc/initrd-release
[Service]