2V0-51.23 · Question #59
Which vCenter privileges are required only for instant clones VMs with a Trusted Platform Module (vTPM) device?
The correct answer is B. Manage KM5. A Trusted Platform Module (vTPM) is a virtualized version of a physical TPM device that provides enhanced security for virtual machines. A vTPM device can be added to a virtual machine to enable features such as encryption, attestation, and key management. A vTPM device…
Question
Which vCenter privileges are required only for instant clones VMs with a Trusted Platform Module (vTPM) device?
Options
- AUpgrade virtual machine compatibility
- BManage KM5
- CConfigure Host USB device
- DManage custom attributes
How the community answered
(24 responses)- A4% (1)
- B92% (22)
- D4% (1)
Explanation
A Trusted Platform Module (vTPM) is a virtualized version of a physical TPM device that provides enhanced security for virtual machines. A vTPM device can be added to a virtual machine to enable features such as encryption, attestation, and key management. A vTPM device requires a Key Management Server (KMS) to store and manage the encryption keys. To create instant clones VMs with a vTPM device, the vCenter Server user must have certain privileges in addition to those required for instant clones without a vTPM device. One of these privileges is Manage KMS, which allows the user to perform cryptographic operations on the vTPM device, such as cloning, decrypting, encrypting, migrating, and registering. The Manage KMS privilege is part of the Cryptographic operations privilege group on vCenter Server.
Topics
Community Discussion
No community discussion yet for this question.