Files
docs/doc/source/planning/kubernetes/tpm-planning.rst

926 B

TPM Planning

is an industry standard crypto processor that enables secure storage of HTTPS private keys. It is used in support of advanced security features.

is an optional requirement for Secure Boot.

If you plan to use for secure protection of REST API and Web Server HTTPS keys, ensure that 2.0 compliant hardware devices are fitted on controller nodes before provisioning them. If properly connected, the BIOS should detect these new devices and display appropriate configuration options. must be enabled from the BIOS before it can be used in software.

Note

allows post installation configuration of HTTPS mode. It is possible to transition a live HTTP system to a system that uses for storage of HTTPS keys without reinstalling the system.