© The Author(s), under exclusive license to APress Media, LLC, part of Springer Nature 2022
M. McGiffenPro Encryption in SQL Server 2022https://doi.org/10.1007/978-1-4842-8664-7_17

17. Setting Up TPM Attestation

Matthew McGiffen1  
(1)
Bristol, UK
 

In Chapter 14 we looked at setting up Always Encrypted with secure enclaves using host key attestation. Microsoft recommends using host key mode in dev/test scenarios or where you don’t have a physical TPM (Trusted Platform Module) – though you can use TPM mode in some virtualized scenarios. A TPM is usually a physical chip that sits on the motherboard of your computer, but you can have virtualized TPMs on VMs.

TPM attestation is the more secure form of attestation and allows HGS to verify that your SQL Server ...

Get Pro Encryption in SQL Server 2022: Provide the Highest Level of Protection for Your Data now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.