Initialize HGS using TPM-trusted attestation

Applies to: Windows Server 2022, Windows Server 2019, Windows Server 2016

These steps vary depending on whether you are initializing HGS in a new forest or an existing bastion forest:

  1. Initialize the HGS cluster in a new forest (default)

    -Or-

    Initialize the HGS cluster in an existing bastion forest

  2. Install trusted TPM root certificates

  3. Configure the fabric DNS