Comprehensive data protection for all workloads
Post Reply
mengl
Service Provider
Posts: 26
Liked: 18 times
Joined: Oct 19, 2018 7:02 am
Full Name: Michael Engl
Location: Germany
Contact:

Secure Boot Certificate Expiration in Veeam Appliances

Post by mengl »

Hello together,

As Broadcom updated their article https://knowledge.broadcom.com/external ... s-and.html about handling the secure boot certificate change for VMware VMs.
Starting with ESXi 8.0 U3j the VMs will have the platform key included. But the KEK and DB needs to be done by the guest OS or customer.
Customer's Responsibility:
- For PK updates: Customers should execute PK update based on VMware guidance.
- For KEK and DB updates: Customers should follow their respective OS vendor's guidance to update them natively from within the guest OS.

Can you provide any guidance how to handle this in Veeam Appliances like Hardened Repository or Infrastructure Appliance?
Is this handled through Veeam Updates, or do we have to do it ourselves?

Thanks
Post Reply

Who is online

Users browsing this forum: John.Akemann and 1477 guests