The following table compares minimum key provider hardware requirements.

Comparison of Required Hardware

Key Provider

TPM on ESXi Host

Standard key provider

Not required.

Trusted key provider

Required on Trusted Hosts (hosts in the Trusted Cluster).

Note:

Currently, ESXi hosts in the Trust Authority Cluster do not require a TPM.

VMware recommends installing new ESXi hosts with TPMs.

vSphere-native key provider

Not required.

vSphere Native Key Provider availability can optionally be restricted to hosts with a TPM.