The option to add a virtual Trusted Platform Module (vTPM) is missing from the "Add New Device" menu in vCenter Server, preventing the deployment of security features like Windows 11 requirements or VM encryption.
This issue occurs if the virtual machine firmware is set to legacy BIOS or if a vSphere Native Key Provider (NKP) is configured but not designated as the "Default" provider.
.p12 file and record the password. Loss of this key prevents decryption of any VMs using this provider.Note: Hardware version 14 (ESXi 6.7) or later is required - What Is a Virtual Trusted Platform Module