Uploaded image for project: 'OpenShift Container Platform (OCP) Strategy'
  1. OpenShift Container Platform (OCP) Strategy
  2. OCPSTRAT-2536

Enable MCO and Clusterautoscaler to support VMWare vTPM Machines

XMLWordPrintable

    • Product / Portfolio Work
    • None
    • False
    • Hide

      None

      Show
      None
    • False
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      1. Proposed title of this feature request
      Enable MCO and Clusterautoscaler to support VMWare vTPM Machines

      2. What is the nature and description of the request?
      Customers running OpenShift on VMWare with High security requirements needs to spin up machines using MCO `Clusterautoscaler` with VMWare vTPM machines.

      3. Why does the customer need this? (List the business requirements here)

      Customer is encountering a limitation with the OpenShift Machine Autoscaler in our vSphere environments. Specifically, the Machine Autoscaler does not provide native support for configuring vSphere clusters in such a way that the virtual machines (VMs) it creates have a virtual Trusted Platform Module (vTPM) enabled.

      Their objective is to leverage the Machine Autoscaler to dynamically scale our OpenShift cluster on vSphere while ensuring that each VM is provisioned with a vTPM for enhanced security and compliance purposes. However, we have found that there are no configuration options within the current OpenShift Machine API to enable vTPM on the VMs created automatically by the Autoscaler.

      They are seeking guidance on possible workarounds or custom configurations that could enable this functionality in an automated fashion.

      Describe the impact to you or the business :

      Without the support of implementing vTPMs - our virtual machine deployments on vSphere are insecure and leave risk in every version of this platform we deploy.

      4. List any affected packages or components.

      machine-api , cluster autoscaler

              rh-ee-smodeel Subin M
              rhn-support-nchoudhu Novonil Choudhuri
              None
              None
              None
              None
              None
              None
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: