Guest OS vendor needs to verify if the OS disk is using the GPT partition scheme, as this is crucial for enabling EFI boot with TPM.
Note : Enabling Secure Boot in conjunction with EFI may introduce complications, and it is generally recommended to enable Secure Boot only for new installations.