You can remove Virtual Trusted Platform Module (vTPM) security from a virtual machine.

Removing a vTPM device causes all encrypted information on the virtual machine to become unrecoverable. Before removing a vTPM from a virtual machine, disable any applications in the Guest OS that use the vTPM device, such as BitLocker. Failure to do so can cause the virtual machine not to boot. Also, you cannot remove a vTPM from a virtual machine that contains snapshots.


  • Ensure that the virtual machine is powered off.
  • Verify that you have the required privileges: Virtual machine.Configuration.Add or remove device and Cryptographic operations.Decrypt


  1. Connect to vCenter Server by using the vSphere Client.
  2. Right-click the virtual machine in the inventory that you want to modify and select Edit Settings.
  3. In the Edit Settings dialog box, locate the Trusted Platform Module entry in the Virtual Hardware tab.
  4. Move your pointer over the device and click the Remove icon.
    This icon appears only for the virtual hardware that you can safely remove.
  5. Click Delete to confirm you want to remove the device.
    The vTPM device is marked for removal.
  6. Click OK.
    Verify that the Virtual Trusted Platform Module entry no longer appears in the virtual machine Summary tab in the VM Hardware pane.