Replies: 2 comments
|
Hi @Geo-Ron, Thank you for opening a discussion for this enhancement opportunity. We'll take this into consideration for a future release and open a tracking issue once it's planned. Ryan Johnson, Broadcom |
|
Hi @Geo-Ron, Thank you for the request. You can enable it on a clone build with: source "vsphere-clone" "example" {
# ... other configuration ...
firmware = "efi-secure"
NestedHV = true
vbs_enabled = true
vvtd_enabled = true
}
The clone builder documentation currently omits the Flag Configuration section, which is why this is easy to miss. I’ve updated the Ryan Johnson, Broadcom |
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
Code of Conduct
Description
The
vsphere-isobuilder has support for Virtualization-based Security (VBS).I would really like the same settings ported to the
vsphere-clonebuilder as well.Use Case(s)
We have created a multi-stage CI/CD pipeline for our Omnissa Horizon environment.
In the last stage, created using a
vsphere-clonestep, we would like to configure VBS for a specific pool of machines.Potential Configuration
The same configs as used on the
vsphere-isobuilder.Flag Configuration
Optional:
vbs_enabled(bool) - Enable Virtualization Based Security option for virtual machine. Defaults tofalse. Requiresvvtd_enabledandNestedHVto be set to true. Requires firmware to be set toefi-secure.vvtd_enabled(bool) - Enable IO/MMU option for virtual machine. Defaults tofalse.References
No response
All reactions