docs/doc/source/planning/kubernetes/tpm-planning.rst
Ron Stone 3143d86b69 Openstack planning
Updates for patchset 2 review comments
Changed link depth of main Planning index and added some narrative guidance
Added planning/openstack as sibling of planning/kubernetes
Related additions to abbrevs.txt
Added max-workers substitution to accomodate StarlingX/vendor variants

Signed-off-by: Ron Stone <ronald.stone@windriver.com>
Change-Id: Ibff9af74ab3f2c00958eff0e33c91465f1dab6b4
Signed-off-by: Stone <ronald.stone@windriver.com>
2021-01-25 08:36:47 -05:00

926 B
Executable File

TPM Planning

is an industry standard crypto processor that enables secure storage of HTTPS private keys. It is used in support of advanced security features.

is an optional requirement for Secure Boot.

If you plan to use for secure protection of REST API and Web Server HTTPS keys, ensure that 2.0 compliant hardware devices are fitted on controller nodes before provisioning them. If properly connected, the BIOS should detect these new devices and display appropriate configuration options. must be enabled from the BIOS before it can be used in software.

Note

allows post installation configuration of HTTPS mode. It is possible to transition a live HTTP system to a system that uses for storage of HTTPS keys without reinstalling the system.