Even though TPM is disabled on Lenovo UEFI, it still shows as "Tpm Present: true" on ESXi.
search cancel

Even though TPM is disabled on Lenovo UEFI, it still shows as "Tpm Present: true" on ESXi.

book

Article ID: 407653

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

  • Although "Hide TPM from OS" is "Yes" on Lenovo UEFI, "Tpm Present: true" will be displayed when you execute the following command on ESXi.

    #esxcli hardware trustedboot get
       Drtm Enabled: false
       Tpm Present: true

  • This issue occurs only on Lenovo UEFI.
    - "Tpm Present" shows true but TPM is disabled.

    NOTEvSphere 8.0 release notes

    Removal of Trusted Platform Module (TPM) 1.2:
    VMware discontinues support of TPM 1.2 and associated features such as TPM 1.2 with TXT. To get full use of vSphere features, you can use TPM 2.0 instead of TPM 1.2.
     

    Environment

    • ESXi 8.0.x
    • ESX 9.0.x

    Resolution

    As a workaround Switch to TPM 1.2 and disable TPM 2.0 or Hide TPM 2.0 from OneCLI.

    For more information refer to Lenovo document page 5 and 7.

    Additional Information

    Understanding ESXi Quick Boot Compatibility

    VMware ESXi Quick Boot support for Lenovo ThinkSystem SR650