When attempting to deploy or create a Windows 11 virtual machine in a vSphere environment, the task fails during the guest OS selection or hardware customization phase.
An error is encountered stating:
"Microsoft Windows 11 (64-bit) requires a Virtual TPM device, which cannot be added to this virtual machine because the vSphere environment is not configured with a key provider."
or,
"Microsoft Windows 11 requires a Virtual TPM device, which cannot be added to this virtual machine because the vSphere environment is not configured with a key provider."
When deploying Windows 11 virtual machines (VMs) in VMware vSphere, a Virtual Trusted Platform Module (vTPM) is a mandatory requirement. vTPM provides enhanced security by allowing guest operating systems to store sensitive cryptographic information, such as encryption keys.
VMware vCenter Server 8.0.x / 7.0.x
VMware vSphere ESXi 8.0.x / 7.0.x
Windows 11 mandates a Virtual Trusted Platform Module (vTPM) 2.0. In vSphere, a vTPM requires an active Key Provider (Native or Standard) to manage encryption keys for the VM's security data.
.p12 backup file. The Key Provider transitions to Active only after this backup is complete.
If you require further assistance, Contact Broadcom Support