2015年1月8日 星期四

How to enable TXT function on ESXi

How to enable TXT function on ESXi

1. Plug in TPM module.  Ensure that there were no issues or interference with the installation.

2. Boot into BIOS setup

    a. ensure that VT and VT-d are enabled;

    b. Under the "Security" menu, set an administrative password and reboot the system;

 3. Boot into BIOS Setup:

     a.  Under the "Security" menu, under "TPM Administrative Control" select "Turn On" and then reboot the system



4. Boot into BIOS Setup:

    a.     a.  Go to the Security Menu and the TPM State’ should show as [Enabled/Activated]

    b. Under Advanced --> Processor Configuration, set "Intel (R) Txt" to "Enable" and reboot the system.



5.  Boot into EFI Shell

6.  Execute ServerTXTINFO –C:a –a –V:2 > LogFile.txt

7.  Edit LogFile.txt:

     6a.  Search for “ERROR”.

     6b.  At the end of the file there should be the following statement:



     All checks are passed. Platform appears to be correctly configured for establishing of TXT environment.”



8.  Boot the server to ESXi

9. Check if "TrustedBoot" is enabled:

    8a  Login to the ESXi Shell (ALT-F1) and

    8b.  Enter the following command: bootOption –o

    The "TrustedBoot" value should equal "TRUE"

沒有留言:

張貼留言