Host-based backup of Microsoft Hyper-V VMs.
Post Reply
StephanG
Enthusiast
Posts: 87
Liked: 7 times
Joined: Sep 07, 2014 11:15 am
Full Name: Stephan G
Contact:

vTPM used for Bitlocker on DC - no more SureBackup

Post by StephanG »

Hi everyone,

I’m aware this might be “by design,” but it significantly limits the usefulness of SureBackup in real-world, compliance-driven environments.
To meet requirements from certifications like ISO27001, TISAX, and NIS 2.0, we’ve implemented full encryption using BitLocker on all our domain controllers and hypervisor hosts, with vTPM enabled.
We also rely on Veeam SureBackup for automated backup validation — which is itself a key part of these certifications.
Unfortunately, SureBackup fails to start our DCs due to vTPM/BitLocker protection, and as a result, all dependent systems (SQL Server, web servers, file servers, etc.) also fail during application testing.

There was a thread back in 2022 (VMware-related) discussing similar issues, but no solution was available at the time.
Is there any current workaround or best practice to make SureBackup work with vTPM-protected, BitLocker-encrypted VMs — ideally without compromising compliance?
Thanks in advance!
Andreas Neufert
VP, Product Management
Posts: 7321
Liked: 1567 times
Joined: May 04, 2011 8:36 am
Full Name: Andreas Neufert
Location: Germany
Contact:

Re: vTPM used for Bitlocker on DC - no more SureBackup

Post by Andreas Neufert »

Do you use original VMware Cluster for the SureBackup or a different host?
StephanG
Enthusiast
Posts: 87
Liked: 7 times
Joined: Sep 07, 2014 11:15 am
Full Name: Stephan G
Contact:

Re: vTPM used for Bitlocker on DC - no more SureBackup

Post by StephanG »

I restore it to another host. I will now try to transfer the TPM certificate to this server and try again.
StephanG
Enthusiast
Posts: 87
Liked: 7 times
Joined: Sep 07, 2014 11:15 am
Full Name: Stephan G
Contact:

Re: vTPM used for Bitlocker on DC - no more SureBackup

Post by StephanG » 1 person likes this post

That worked!
I transferred the certs and the VM started
Like this: https://techcommunity.microsoft.com/blo ... on/4430584
Post Reply

Who is online

Users browsing this forum: No registered users and 3 guests