XCP-ng
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Can xcp-ng utilize TPM 2.0 via passthrough or does TPM only work via vTPM?

    Scheduled Pinned Locked Moved Hardware
    8 Posts 4 Posters 746 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Z Offline
      zachpeele
      last edited by

      I am purchasing several Dell Servers soon and would like to utilize the included TPM 2.0 module. However, I am unsure if xcp-ng will actually use the module or just use vTPM via passthrough. If it can't use the TPM module then I would rather not pay for the module and I will have it removed.

      1 Reply Last reply Reply Quote 0
      • D Offline
        DustinB
        last edited by DustinB

        You'll be able to utilize the built in chip, for anyone else that doesn't have a TPM2.0 chip the virtual chip would be used.

        And for what its worth, I would recommend the physical chip over the virtualized one.

        Z 1 Reply Last reply Reply Quote 1
        • Z Offline
          zachpeele @DustinB
          last edited by

          @DustinB Thanks for the reply! That helps me out very much.

          1 Reply Last reply Reply Quote 0
          • C Offline
            clip
            last edited by

            Thanks for this interesting discussion.

            @DustinB In your understanding, does using a built-in chip limit Windows 11 VM (for example) host migrations?

            Said another way, is vTPM recommended/required for VMs that will potentially run on multiple hosts?

            1 Reply Last reply Reply Quote 0
            • olivierlambertO Offline
              olivierlambert Vates 🪐 Co-Founder CEO
              last edited by

              There's no other way to virtualize a device if it's shared between multiple VMs and requires VM to move. Like any PCI passthrough device for example.

              C 1 Reply Last reply Reply Quote 1
              • C Offline
                clip @olivierlambert
                last edited by clip

                @olivierlambert Thank you, that was my understanding from reading the documentation - in which case, for multiple host / VM migration scenarios, a physical TPM2 chip is of no benefit - and thus not required?

                Per: https://xcp-ng.org/forum/topic/7487/vtpm-support-requirements, Stormi (in June of 2023) has confirmed that a physical TPM hardware module is not required for vTPM. I assume, when buying host hardware for Windows VMs, it is correct to count on this for the future as well.

                1 Reply Last reply Reply Quote 0
                • olivierlambertO Offline
                  olivierlambert Vates 🪐 Co-Founder CEO
                  last edited by olivierlambert

                  That's correct, no need for a physical TPM for your VMs.

                  C 1 Reply Last reply Reply Quote 1
                  • C Offline
                    clip @olivierlambert
                    last edited by

                    @olivierlambert Thank you - appreciate for the confirmation.

                    1 Reply Last reply Reply Quote 1
                    • First post
                      Last post