Currently, no TPM option is provided on Fedora compilation of systemd, resulting in TPM support being disabled. It would be great if we could get systemd compiled with --enable-tpm so that the provided image and options get into a TPM PCR and can be used for sealing data to that one image.
Indeed. No reason not to do this.