Share via


BatchSecurityEncryptionType Enum

Definition

Specifies the EncryptionType of the managed disk. It is set to DiskWithVMGuestState for encryption of the managed disk along with VMGuestState blob, VMGuestStateOnly for encryption of just the VMGuestState blob, and NonPersistedTPM for not persisting firmware state in the VMGuestState blob. Note: It can be set for only Confidential VMs and required when using Confidential VMs.

public enum BatchSecurityEncryptionType
type BatchSecurityEncryptionType = 
Public Enum BatchSecurityEncryptionType
Inheritance
BatchSecurityEncryptionType

Fields

Name Value Description
NonPersistedTPM 0

EncryptionType of the managed disk is set to NonPersistedTPM for not persisting firmware state in the VMGuestState blob.

VmGuestStateOnly 1

EncryptionType of the managed disk is set to VMGuestStateOnly for encryption of just the VMGuestState blob.

DiskWithVmGuestState 2

EncryptionType of the managed disk is set to DiskWithVMGuestState for encryption of the managed disk along with VMGuestState blob. It is not supported in data disks.

Applies to