Read in English
Read in English language Feedback Edit

Deploying the Host Guardian Service

Applies to: Windows Server 2022, Windows Server 2019, Windows Server 2016

One of the most important goals of providing a hosted environment is to guarantee the security of the virtual machines running in the surroundings. Every bit a cloud service provider or enterprise private cloud administrator, y'all can use a guarded material to provide a more secure environment for VMs. A guarded material consists of one Host Guardian Service (HGS) - typically, a cluster of iii nodes - plus one or more guarded hosts, and a set of shielded virtual machines (VMs).

Video: Deploying a guarded fabric

Deployment tasks for guarded fabrics and shielded VMs

The following table breaks down the tasks to deploy a guarded cloth and create shielded VMs co-ordinate to unlike ambassador roles. Notation that when the HGS admin configures HGS with authorized Hyper-V hosts, a fabric admin will collect and provide identifying information nigh the hosts at the same time.

Footstep and link to content Epitome
1 - Verify HGS prerequisites Step 1, verify prerequisites
two - Configure start HGS node Step 2, configure the first HGS node
three - Configure additional HGS nodes Step 3, configure additional HGS nodes
four - Configure cloth DNS Step 4, configure fabric DNS
5 - Verify host prerequisites (Key) and Verify host prerequisites (TPM) Step 5, verify host prerequisite key and host prerequisite TPM
6 - Create host fundamental (Fundamental) andCollect host information (TPM) Step 6, create host key and collect host info
7 - Configure HGS with host information Step 7, add host info to HGS
eight - Ostend hosts can attest Step 8, confirm host can attest
nine - Configure VMM (optional) Step 9, configure VMM (optional)
10 - Create template disks Step 10, create template disks
eleven - Create a VM shielding helper disk for VMM (optional) Step 11, create a VM shielding help disk for VMM
12 - Set up Windows Azure Pack (optional) Step 12, set up Windows Azure Pack (optional)
13 - Create shielding data file Step 13, create a shielding data file
14 - Create shielded VMs using Windows Azure Pack Step 14, create shielded VMs using Windows Azure Pack
15 - Create shielded VMs using VMM Step 15, create shielded VMs using VMM

Additional References

  • Guarded material and shielded VMs