How to prepare TPM enabled host for hardware changes
search cancel

How to prepare TPM enabled host for hardware changes

book

Article ID: 316424

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

If the ESXi host uses TPM, this article provides steps to take while the ESXi host is still accessible via SSH before any hardware changes.


Symptoms:

After performing hardware maintenance, including replacing components (e.g., CMOS battery, CPU, RAM, etc.), you may experience PSOD errors when booting the host back up.

  • Refer to "Boot time failures due to ESXi configuration encryption (KB 81446)" for additional error messages.


Environment

VMware vSphere ESXi 7.0

Cause

Any ESXi host hardware changes can cause issues/changes to BIOS configuration.

  • If the host uses TPM, the security key may be wiped from BIOS and must be re-added.

Resolution

  • Connect to ESXi host via SSH as root user
  • Run the command from KB 81446: esxcli system settings encryption recovery list
  • Store the recovery key in secure location in case you face this situation again.

 


Additional Information

Impact/Risks:

To recover ESXi host using TPM from PSOD after making hardware changes.