Skip to content

Commit 620c1e0

Browse files
committed
add additional note for UEFI/Secure boot
1 parent 96adb96 commit 620c1e0

File tree

1 file changed

+1
-3
lines changed

1 file changed

+1
-3
lines changed

source/adminguide/virtual_machines.rst

Lines changed: 1 addition & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1191,9 +1191,7 @@ UEFI setting
11911191
- On KVM, it is recommended to set boot type to UEFI, and boot mode to SECURE.
11921192
- UEFI is required for some Windows versions.
11931193
- On XenServer amd XCP-ng, the boot type must be set to UEFI, boot mode can be SECURE or LEGACY. vTPM is supported on XenServer 8.3 and later versions and XCP-ng 8.4 and later versions. vTPM can be enabled by setting the virtual.tpm.enabled setting on the template or vm instance as done on VMware.
1194-
1195-
|vm-settings-virtual-tpm-model-kvm.png|
1196-
TPM model for KVM. There are two options:
1194+
- For XenServer and XCP-ng, to boot Windows VMs in UEFI Secure more, the host needs to have Microsoft UEFI Secure Boot certificates installed. Run `secureboot-certs install` on the host to install them. This makes certificates available to OVFM, QEMU, shim tooling.
11971195

11981196
- tpm-tis, TIS means TPM Interface Specification;
11991197
- tpm-crb, CRB means Command-Response Buffer.

0 commit comments

Comments
 (0)