What is the primary purpose of Shielded VMs in Hyper-V?

Prepare for the Windows Server Final 313 Test. Engage with interactive flashcards and multiple-choice questions. Detailed explanations ensure a thorough understanding. Be exam-ready!

Multiple Choice

What is the primary purpose of Shielded VMs in Hyper-V?

Explanation:
Shielded VMs are designed to keep a virtual machine safe from a compromised host by ensuring the VM can only run on trusted Hyper‑V hosts within a guarded fabric, with its disks and state protected from tampering. The VM uses features like BitLocker‑encrypted virtual disks and a virtual TPM, plus secure boot and guard verification, so that the host cannot read the VM’s data or alter its memory or configuration. The Host Guardian Service manages the keys and validates hosts, releasing decryption keys only to trusted hosts, which prevents administrators or malware with control of the host from accessing the VM. That focus on preventing host-level access and tampering is why this option is the best choice. It isn’t about storage efficiency, adding a GUI for Server Core, or reducing memory usage.

Shielded VMs are designed to keep a virtual machine safe from a compromised host by ensuring the VM can only run on trusted Hyper‑V hosts within a guarded fabric, with its disks and state protected from tampering. The VM uses features like BitLocker‑encrypted virtual disks and a virtual TPM, plus secure boot and guard verification, so that the host cannot read the VM’s data or alter its memory or configuration. The Host Guardian Service manages the keys and validates hosts, releasing decryption keys only to trusted hosts, which prevents administrators or malware with control of the host from accessing the VM. That focus on preventing host-level access and tampering is why this option is the best choice. It isn’t about storage efficiency, adding a GUI for Server Core, or reducing memory usage.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy