如何将 EC2 Windows 实例的启动模式从“旧版 BIOS”转换为 UEFI 或 UEFI 安全启动?

4 分钟阅读
0

我想将 Amazon Elastic Compute Cloud (Amazon EC2) Windows 实例的启动模式从“旧版 BIOS”更改为 UEFI 或 UEFI 安全启动。

解决方法

先决条件

  1. 运行 Windows Server 2019 或 2022 且带有 Amazon Elastic Block Store (Amazon EBS) 卷的工作中 EC2 实例。
  2. 验证您的实例类型是否支持 UEFI。
  3. 查看实例类型默认启动模式的注意事项。
  4. 操作系统的启动模式必须为旧版。要进行验证,请使用 Windows 远程桌面协议 (RDP) 连接到实例。然后,在系统信息中检查 BIOS 模式

**注意:**转换后,现有实例或根卷不可用。最佳实践是在执行这些解决方法步骤之前创建数据备份。您可以通过创建 AMI快照来创建备份。

将启动模式从“旧版 BIOS”转换为 UEFI

步骤 1.将实例根卷更改为 GPT 分区:

**注意:**使用 mbr2gpt 工具来完成此步骤。此工具在 Windows 2019 和 2022 上可用。如需将 Windows Server 2016、2012 或 2012 R2 操作系统转换为 UEFI 启动,请分离根卷。然后,将根卷附加到运行 Windows Server 2019 或 2022 的救援实例。

1.    登录或使用 RDP 连接到现有 Windows 2019 或 2022 实例。或者,启动一个新实例。

2.    运行 diskpart 命令以识别磁盘号:

在命令提示符下,输入 diskpart,然后按 Enter
diskpart 提示符下,输入 list disk,然后按 Enter
使用生成的列表来识别根卷。

注意:默认情况下,磁盘 0 会作为根卷附加到现有实例。对于 Windows Server 2016、2012 和 2012 R2,磁盘号与磁盘 0 不同,具体取决于驱动器映射。

3.    使用管理员权限运行命令提示符。

4.    运行以下命令来验证磁盘:

C:\Users\Administrator> mbr2gpt /validate /disk:0 /allowFullOS

下面是预期输出的示例:

MBR2GPT: Attempting to validate disk 0
MBR2GPT: Retrieving layout of disk
MBR2GPT: Validating layout, disk sector size is: 512 bytes
MBR2GPT: Validation completed successfully

5.    运行以下命令来将 MBR 分区转换为 GPT:

C:\Users\Administrator> mbr2gpt /convert /disk:0 /allowFullOS

下面是预期输出的示例:

MBR2GPT will now attempt to convert disk 0.
If conversion is successful the disk can only be booted in GPT mode.
These changes cannot be undone!
MBR2GPT: Attempting to convert disk 0
MBR2GPT: Retrieving layout of disk
MBR2GPT: Validating layout, disk sector size is: 512 bytes
MBR2GPT: Trying to shrink the system partition
MBR2GPT: Creating the EFI system partition
MBR2GPT: Installing the new boot files
MBR2GPT: Performing the layout conversion
MBR2GPT: Migrating default boot entry
MBR2GPT: Adding recovery boot entry
MBR2GPT: Fixing drive letter mapping
MBR2GPT: Conversion completed successfully
MBR2GPT: Before the new system can boot properly you need to switch the firmware to boot to UEFI mode!

6.    从控制台或从实例内部关闭实例。

步骤 2.创建根卷的快照

Amazon EC2 控制台

有关更多信息,请参阅创建快照

Amazon 命令行界面 (Amazon CLI)

**注意:**如果在运行 Amazon CLI 命令时收到错误,请确保您使用的是最新版本的 Amazon CLI。或者,您可以使用 Amazon CloudShell 来运行这些命令。

在以下示例命令中,请将 regionvolume-iddescription 替换为适用于您的用例的正确值。务必正确输入 volume-iddescription,如下例所示。

aws ec2 create-snapshot --region <region> --volume-id <vol-0xxxxxxxxxxxxx> --description <add text>

监控快照过程,直至快照创建完成。然后,记下 snapshot-id

aws ec2 describe-snapshots --region <region> --snapshot-ids <snap-xx>

步骤 3.从快照创建 AMI

Amazon EC2 控制台

1.    打开 EC2 控制台

2.    在 Elastic Block Store 下,选择快照

3.    选择您的快照,然后选择操作创建映像

4.    在根据 EBS 快照创建映像对话框中,填写以下字段:

**名称和描述:**输入您选择的名称和描述。
**架构:**x86_64
**虚拟化类型:**硬件辅助虚拟化 (HVM, Hardware Assisted Virtualization)
根设备名称:/dev/sda1
**内核 ID:**使用默认内核 ID。
**RAM 磁盘 ID:**使用默认 RAM 磁盘 ID。
**启动模式:**UEFI

5.    选择创建

Amazon CLI

运行以下命令。在以下示例命令中,请将 regiondescriptionnamesnapshotID 替换为适合您的用例的值。

aws ec2 register-image --region <region> --description <description> --name <ami-new_ami_xxx> --block-device-mappings "DeviceName=/dev/sda1,Ebs={SnapshotId=snap-0xxxxxxxx,DeleteOnTermination=true}" --architecture x86_64 --root-device-name /dev/sda1 --virtualization-type hvm --ena-support --boot-mode uefi

下面是预期输出的示例:

{
"ImageId": "ami-new_ami_xxx"
}

步骤 4.验证新 AMI 的启动模式是否为 UEFI

有关更多信息,请参阅确定 AMI 的启动模式参数

步骤 5.使用新的 AMI 启动新实例

有关更多信息,请参阅如何从自定义 AMI 启动 EC2 实例?从此 AMI 启动的所有新实例都将继承相同的启动模式。

步骤 6.验证实例的启动模式是否为 UEFI

使用 RDP 连接到您的新实例,然后验证启动模式。有关更多信息,请参阅确定操作系统的启动模式

**注意:**终止现有实例,或者删除您在其上运行 mbr2gpt 命令的根卷。转换后,现有实例无法使用。

将实例的启动模式从“旧版 BIOS”转换为 UEFI 安全启动

**注意:**在创建 AMI 期间,您可以自定义 UEFI 安全启动变量。有关更多信息,请参阅如何创建亚马逊云科技二进制 blob

1.    如步骤 1.将实例根卷更改为 GPT 分区所示,将实例的根卷修改为 GPT 分区。

2.    创建根卷的快照。

3.    从快照创建 AMI。在创建 AMI 期间,指定 uefi-data 字符串以启用 UEFI 安全启动。

运行以下 Amazon CLI 命令,以便在不支持 TPM 的情况下启用 UEFI 安全启动:

在以下示例命令中,请将 regiondescriptionnamesnapshotID 替换为适合您的用例的值。

aws ec2 register-image --region <region> --description <description> --name <ami-new_ami_xxx> --block-device-mappings "DeviceName=/dev/sda1,Ebs={SnapshotId=snap-0xxxxxxxx,DeleteOnTermination=true}"
--architecture x86_64 --root-device-name /dev/sda1 --virtualization-type hvm
--ena-support --boot-mode uefi
--uefi-data QU1aTlVFRkmbIrz8AAAAAHj5a7fZ9+2cZVRc3ZaucXd3J8EDBJIAgQCB4BYgOCR4cPfgTkio4BCCFRY8eOHuTrAQ3N1D0O7T93yj++59zh33jvP17e5xqn7Vj2fU2FBrr7nmO59dqP/BofjL639lb3+J3qTt3hjbmP0xMUMEDk/REf4YUCMgqCpw/fUd8P/OBfj4//gC/lH3/wbD8H9pEP8xNVSQVvjjq/4zl8C/n7//+Y5pf++a/0HN7n8rIvAZ0H/VDOif7biFiAAP4/+5w/g/s+z8UQBNjf+SAyH890x9/u4O/p/qfv65l/qPPUcDLjhwueP/j9zxfyo4/+2VUkCp+Tuf/Q9KzndPeKStT1vW2GpnaT9G/sCcoupWxHpkbvV+l3oKJSafghyaWrcszv/IraNVt6t5FaVlm2y8qN3ywLjop4aNKq927o7PbVye8ofTXZ9QZ622l4zOAron2ZGvelBm0TH3LqJWhk59P5QcnmNHYlw966V18lOv3WkyWVwR5TMrC1g7Lhokg6aL5pentkmOxAQbadDeRWzDaGVi7MuclSXSxdON1jI5vhFCnCMZ2Q6H5p2FjMQK9V/vLiAT5I9jbp2eJ4RU+6mFm8tQRmeVEYkGcFiiutdDFI29q1vRu2FeYQLIeArGXslbfddD8o97uaFaPjS3onO1+LqXkx0VSCFIwtsVM3arbxkfzweMnrtSolqMx2oZslML9exzLw2uSjvrjYwNeRWSUQa+0B4xTAuosCi1ETxuWHvGsiyYheWKdk7xKnnCg2sUlXpnJBwx7SvBEeoCzJfLpAYtlZmx47eHzbI2OdojTggR8gB05pgb9jsuTXyPQvpoKFLfWqwQedyBggPLatFIZvS7CRb/cenUI3oOB901SR0MRwUtmG9QwCHj01Oa1s66mFi8cOnY0K1yhuSmpP7OeKiB8WSGCQZDoyuB+zvRE+m69MT0fi1/+4cFKMPuUGMaHV9gGRD/axlgQftbZQCN4F/LwMUfZQBjvOPfWJT/Sc3Hf9IDDn/vmv/d4Pjb1wzPhOGZ8P/kJgXu1v1zu3XAkfKfkY2ZGnt4qP71+TvAQwBF9//9gYJ/4LHRf+PhQv2fKNT/Kw+3wOAWGNwC+6+zwIB8wPSV4hcer0BWM2uFQOeafmiZ2PHWDsNiBjsZy24mLBTI13EcJ81hoKR6dLt8mtSkdsSZ4ijOnvJee4G5yu9xYKcE5JfSSoJaeOzZiLUndkZp3Zkrz7bxBD3Rv0uJ7nb+fkqXBuSFfrSxfThVMIp/yFXjvkKIvCn+I9ffRD4f7ay3HAGNAvQbC/xncThZadNEWa3S69cRpuZsdwM+XpJ9a0QP30Wzd2CD9luCCaP+7ISSE1KxzfPdEu3STRkrNiyGe9eO54zvhuVgD0DPcIda5kyYNfyMQfgafX0niaLSP1IyxH/tQJgvBnm9mY4J5CNORs9XQ9oFBlHTMONXBm9aUB3Lg5M0gr2k5jRll+euQOthVxAF7dhOM+WuEhl3eWdeQxBVUbAg6bXex2GURO5oTSBfsYYmgN9srRWa+DAWPZ2l2hpqhr5iCKEte8TBMbjlIAfk0ylM9rTI2+MqeY6wzNHLpXL1MumrtdJ+K3z4dtgx+LoVyP/UKX2FIYW28t7kajEEnzdjkMj9BQfjJx38Mr02nXUi0H7yo/QLqq2o3pPqEHVe+YbwQN8GhAucuu6lxMEGbaZBPhsgb3bSkkEdjDRuXOfEk/TL0DCZzobCLlbFm5PHen2+B2EXyOuxfICIOoaIiuaU/IxOUej0gjje03pCfmXUzx2addQDWp/3PM3wVySOh+nyg15gC776Wuqeh2sd3RHcy0tL7WLzqwrI19OO2qojYJjYMzMj5+Xbi94lpAeHk7ZoKRC1TYXd9j4D8jiLjAjnPr4XRsp7jz4iNTt8eoL1lLkPcuNH+Rw3rgyHEsjHo6TjSTzujikbc3OMX7N39n9HJDx3cb7RzK2UTMtrFAHkkdYZrfoOTBHF6XM0d5tmxMtzjl+l7H2Kf/O4RFuW56gGyNvd3mLrIcpEeccpEoznF2UNQBnCw5dR0yPR+rVZpmBlQD4NoURxwkuiO2hO9kSyxa2t1V6A+HRsQXU0oE+kqjgEdD9OT6z/PF/ldsnNebRtfENEvsqOTaL/Rf9RfDa15EHVGRTIH7uXqqTOQSI307P1WyuUBZIUUUoSzfi5npbJaSk9UgXVU9w2RdcdqoNXdUfCdfOvl3czO9QQBJZj6itszrE0UplB9TpIO+A4R4vbQaeqx0SVQpPt05a0sT2hUW8fetGvxk0t0PXAFs5WD2/zCB1o8q+YVjueMK7QMeKccdOquPxUPRoRagDt/y8Lg187L+gOsQ7kKll7Yc6g8UZSme28FF/p2OkrGADV96NQsZ6a02dxxSRX2FHyb+W83pvtNnBoLtZL4rlzvp+DAHnv3n4NkyF8RPoqDMNamPto0VhQxzN5rddPW4mPuXY6PYH8JoKQQRMeilbAJoKaRyXsLEvr0I4Uwpjro2NktcyKdgPkaSrn+o57iIbzKmM/EDveciZA8FfRGe1nNNgsuG18ncmAvNjQ/f6KXaknA2vMdfc7Do3m9HWEH5v/SFI0fO717DzTGshb7r/g726iMe8Ri/gZu71PFEea0ixd2dbN/a5bLiUr4zmQX1bg09Ukc5QVjYpxruBeolZa2uEpZKS64f7Ml35miDEC5DfasIUrA3bDNRF3c9gfB0wr6FK1qYTfs37psLFb+ZX1CZCfG3i61IK3WlaOEjbulHEpc9Zmr5Wt0+R935+ORLkI1gG6v7TuHPE5yFYjKlxiW9xQ8gYL3rBP599YjlWXmgih8BkAeWHI4e81Nr+sZMV3sdhcVIZLiptLPbzyq/HFne87pJ+C1oOcOoInnk3qsRpuYU5axXffNM6QqSlTFIFdV1h2CI3LGqj+5n/rdaXaoS/M+zFvuPWWtmV7n4OvPYoEkk9i8Sq3xgHIf1A/mCO9eDm0lrvFztcguU72dBz/XG4gb9PpZTtUJwEbyCdzC6bk5fyKGLOsUySsk9W1pll/bly2VylFM0DhI2TqDaoX0O9IzybE+u4kEWC+0c/VWdM4fQ2dqjDt7vzvT9oSgL7fcaeWkdOb3jOeL/TM16/2nSTkyU9UR4Zy26wEc9sZvYiBvL42KqVVyNbjCGkH8onfO5ZsdT4S/am543P0A4RGL71A9Q75XJ49LjK86e4HsiE2Zt5jnGGcmSHr4Q+mOIzofB8Lw4A86rQvqaOAxht7Pbyp4JSqVkeOWhUkgTiPXY4nvx1aSED7LdqOXvGYnUqJ2W8os/b8gQ/FGleLUb1ft4Xbehp1EgcJkMeoZ4rY2qJWYrh7RmqsZlXmm5jKZXOwXOjQtdBKmR6dA+Qx2Q7Fo36xrtNaTDs+yd9veJnAzSZzZCcYRiZChidRXQzif0cW4IdQvsd1vkjN8w3btdexkSNWvfoYBfPPfVAPUQDyWK7b2LQO29DxExcW2yqV7koxPx0rwYeYde3WKjOuToag+qU2FWPfEUso52aQHxooac11+8UKeuykvl2JQEjCv5IH5PGzs1JG1HinbvVOx3TMTAb3aMPEE74OUBC8jeXgkVNLAfIk7ryVDwhv5Z5tIVWz0iUOctoLjFudxfIe0SJBH8ThooP4j0sfHXXTh5egUkP4d34hoV8qmR7itijwKeKzG9jmfQHy1DEQ0vwJ5zVitnwP5kZjmnXNhRKNS85Lp5sW9lDCyVogTxul3XpTOxv1cGCfzihR+JfADN4J+cozg3Ktp5wZ4fmg+5eeHBJ6sGB4PI8YKA3DKwkQCA1FhOEK3okmmbWq++zFAvn7OMHf0kKPTIjKrL6u7tQuXMy/w8AN1AsXuiM3v698JwPqZwegGsrZvJOkkO7gt/okn61REJiKvPUi+qfYEEYxxEH9NSdT0naWdVoHVDNyi8e7bPVC/0ThQvbm/FFLK31TR1IikOce/hAd4MA8urkkTSVqObnLO9M0o9hQ60f5s3UAkayICsjzUXF06qm2pPJWDMTWxWVSkortF2kcRDzokKlvTCCgAvVH/MX8CYGpHbbDRYY/+9Oauej29AkvRJgIhj/bve5OmgCtHwHcbE7thzQfOF9Rl/LiFCxM1tGM3cdbXM6W0y7vYv0SAuQf8YzTMpQvIn9iI+IrsMfCGp5HehOhvh7fe8BTBmt3VQXxXnxrQeF8xVzoL2TCrWwWjsnXy2EQ7LuQOa+wklTDJCD/2GzqbYve7yhJb0HCGBHGx5vQVPuQNKwjnT2rUA+rXAEg/8T2rf4Ct7TbInXfwNnqF49ZtdJkzZbaSze0xyIInnEVoHqh4tJUWsIZG1QcSDr2MHdYFNWvonuZeDOx6UBS83IfdL4S3rCR7nPYosAh1UmilzTmHlNryLxar0Ps5Gklcy4TBO0/IpsbOwLRgq2fPlJ2vw22CE8mkxg9H8ZUU8xEehur4qwDqu9C9w5rM3W/Z0pY1Jt6BT8Vfc64YtAgNbfZ81jCj5sNdD4Ux+qy1akpiytYwUbMbUQUvqPl1cIP2tB5IEnbZHQK+wjkJUIC6W0L9fIFvD2yOI1SsFwd+vRj85RkIj1Fg2AdSaggfnS/3L2FX5n8p5nWSfAa/zzOGRViipQ14kGFWgNrmjuonw2zVpp+M6EnHOeP7oLkZVCpK/stj10CE6Na4kFk2BaoXr+waGbFmWrNsA526SIeLF8wjfTTdrZv1hoxsHc1KLQ4BeUhd9Qm5eLV1yh7nsTEfOtqs3o8D8jxDUpOSUXbrjr5y4G81jpE+HLgJVOj22Ap38VeeISGKau6ywGmV+DUWcp4fAIof4u5ZHJk7LaN2fti0uMrbPZwP+P8MDPrGX2HNHFqVwMobzGgS+mvl3+HpGD5cgFJx2F5aNL+nGkf8fPInt+0xEAxqP99M9SR7d6sg9RyW7LiINCc+L3BDo10WZhmAba+cnb1FHQ+NKHH0KqkkH7EFdOVhK1A0FHNtizaxFK9ZUMUuTJX9r0I1K992xigmEFu51sgfLng3Ifbyz+WTp7sEtBpzxv27ScfaH8z/0qcsddG+UTps6SB0P31PXkDSvHOjUGlovAzd0Tk4yPQedJ57JyGvfHllsb+nY771yCL58mJAVTGd4xccQEPu6JB+5tt/faY2PtQnItKP5er6xwGpZXlqHBi4npauoE5GZlYZRC/PcqvtdA+0AWtcCCDQVyNthZ36SVUeeN4dBtkDn3CgbxDpjTWcbGQ5ttirNvymVZWfuUtrF2hNu1wRIGJCG61QiDv1GYf6LPzKSkxKYG6q8QlmoQOdXxnuNogRuKbeS9DUyCQ9yA3JWAMz68sd57IP9uNm2YzdXyF6Zcs6KVNZ6zw2BWUJ3gEBUG7H9aHjTWrWYh2i31aIC18pzbn+Op+ibulbTQzqH/xqNzrK+yZwRRjWCb35yqpPPzCnC2kKD9gF7Z5oh7Phw/k/eQGKjD5RWi8ymliezVru6UOs2r0+ejlDCliXjuoItwH5XtFMNnvzDbDv8xSrkl0lPZjOCcxeI6ysbBTVUPZhgVA91eEkofQo4/8SQMQ3U0XnhPeqSzz5FMdmffHXJzW30IQQXn1e2S5KQwtqrWvjK3EJrLM/Oj8idOWxzHaEDP2g06GA9B5ODp2EuctpY4Zidva3AuFJY6Qy5f+1WcsE5nt170jssOg81WMydlV55pX9bxNXDjJa4Ylp3K374VaEz3p+K/xyG+5l4E8xMwKeiAn8oQlo+Yev+zq8qRWTo9sdDhOtR6iMyb/lTqIT6QhSWz+oNcVLFTUEW2yU3tZeOOm1L/5QKTAva9n2ArIxzl4/PZ5k5DwXnjrc4qBtrlvaDjXeU/v9wgLaEK91+lTIJ+wqhqnOu4/225894FdM4Iokp5mTTtkDDeizTurYAQTtH4Sg6r2pT5tbUK6NI9O/QXj04qln+IZCx/eeh+35HiErID4HCpMKSlj3JP3011qXEUxKa43z72WVsfY2f3d3jAHgNZDYn4njHCS/qDewAp1VpkUJsPd0TUo53RNhWywwijwYBXUj7AxrO++l5gtUZgulD0LtNx6nuswrp+z3Dgo5qMYl+EE4jUyC9I0N8sjCqn7JBQg5xnklPQ24vnW9mInlj9DEfiAfGqpituU9dlkfmJzo5FkaqYSymKUbPt+tFssVuDHuyegfvwza3o/L61Rt5Dvd9dkk8UD60erDFo3zih21iNRJOmuoDw5bWyu5oGhC9n9461F4fIQ5Gzxp+cFKFBP6A/UGV8m1QIg/2X8GX4DBXYL/0XM56yOQgGKvXZh6RxcVsbsqjCr7G0uIA+d8ajpaMzUEPyOcVGnw9OWU3xFtO1dTGIluFvFG2cKyicLWMb7Jmcla4RSEzLiM+wpzssLc2qdy76fZOwzOldGgfK3YpG1iBYZ5cR5vW/ND9XlZGusa5HdFua0y2+nLKoy9UD5du1k1UaIt3QQHqKP98r0q+KdxG52vDJzXVEZYYUdtbkTUD78DC1Z52MUwyVuUSvX9TU9q6XnMzv3LyiehrY+TOr4oHlBPeIs8sN6k8++NP62Za9oeyPVyY4fHBDEXEVjr9qWyIH6iwbX3wR3/Pj6VclfzOsnkFXk1x5DHywcCJLRqMuumC+D8o3GEcJ7W9NaBOO3rqU0rQ4c7IcBlec351nfiPWREguGOoF803ODX4NsXzl8oiuvA5xl9NzXCk8+/bL2cbt89vZ9DRXoepp+mYusbSs1T1vasTjQIdsrIl/5DVrkdprvxQ1hdkiB9qu2F4k6rXG+JKfVRk4FZxWlUfZ2Tt6W9biQJ/rNkuRWkaB5n6reyS5BDm3RKnm3ddQoplCG2eiJsmttNprhCk1XKui80cFN2I0zbPj+5Apyc0wbLs5YHGSTG7nAVe8Z34p9Fj4Bml+kmebUCq1SZ1pIvvQlR7WiGHp6337MTiCGirp7ZIUJlGf2CyAQlu7gunTkhFfYwaASCWQYm2OX/nP5rU+celQ9QXnRwIdduzpGruYIL90h38im3SX0dCrbAyyPeEg/qczRYTCQHybOet46yPP0/Y6vAwFy2FD/VRAqa/3vkRocz+KTTQk2UD6ZQjhqIxs9cdWgQauAfnlhgWuOGSf7cU2BvvnYQVkSVN9nzCOr7odgWIS2ClStNv74xfIyQOStM1NKHUdmjhID9RmQnxV8fYPDX6UYNHF8FxqDPIYR+7bouCcB46I077n15QtQXrGA9LUyKKxgaaLrJRvG5+rCpYSe04qE7tX69vh54rfu5yAeUhRSoDKIcxWg2ejTdFlEUtu575x4y9WjEyz9hScTdJ5ZVKsJ34Xt5fC+6MazOkf9GM/EhfJGq7ajta5tuMvoBShfWrG9dkxjJGlbSdkOD/7CJl3Ib2/vt6GMp57qqzFN/wi0f64kQU6jGjpja/dChwKHzO1bSfTS+2840WEj+amn3c3NQH49xJ7YzzOZu1cl65Q/cZd/bCbP3nv9DUlXpti1yOBZD5Dfvnsf0oYBU9Kz9n9xNolBLjPlCZt1t1yXG5G5S6U3B/Xj+0E55nJvMPNUrLpWCRYQ6tmzYhaRSMlKRCKZ2T748oDqxf7U4sHxnuYXDs/9R/TJxqUidMkQvhXsmht0DfsSLCfQ/PGo8lxNBFdD3jKauLgNcpDfmS6JkzP3TQxbF+3SFxdDFJRvZ9oKVmm8lQjLwxXvs2TXOT3R51rcrr0x/VXEUXfWJg/kT+gn3nRuxROIP+v1oc2aLuhfdtB5xw9b+Dhp7S5nFB0H5E8/2E47fogXeZ2lwtWUixXPOF9i8YNVUu+d8NBTtXczoPy/B/X1U5WMJ+52kscmXSiVaQnByExLn7hfoRWU1Vc139qD8g0y9PdDCGnnPD++ODqs23xdd2jYoP74aTzQv9Mq2wmZFtQvQ/0fK5UaIw154vBFctZ+fZzIR/SGDOsDr2bUu22P7lxQ/xgVJXpWWPb8JZWcICsSn2sh0ZvyeUY0JetjmSESRnXQPFcDA/GngEFru9gpX4Xeact61DhllXtd4VLB8FF/e7oGqN9EwRZpF9qq/l00zVb7USAwp/1c2WItjwRGm5+Hol4hD7q/CCUzBnxiUBbOFXVkZZWsfNvVlMnt9XMb96cyYuOwYweAPFu4xxFP1Geb/nPEblEj5ST9IvyT67I2ZSkSCKdYHT0paF4P7beipysfn9vk1rhZtt1jEcleit7oGiOM4dBRWbMA7T/ik32L7M4eMf7DisIpo9S6WEpRMKknhQnLbgMeUhrzG0BeBYnkevUyPHGkB+vF5Gwlkcy90UfXLJ8ORqhvF7LDvUDzFH2OW4HGSK+d+uefWWmvrCRVENYEi5TO6VoTpauP8CKEQeerqeKMSd+XDwmiG90cHiiQ+YcNd+yaySnZ5Bfma9/CZoF8Lka+n1rjL3VOBf/L+O2FBeqLsv6qyHdCQr1HNEQbNKA8p3ECwwYx3eBJsHrXjIDreIqWmRPszvUNFz/1i2xddXZQf92frCCOGlNt06x5bS6o2Xc4cTR0z8V0RJqL+c2i4dIgKP+Z3I+uCVyxKb1SSg9Ej0EJm4/FKhygpbSHal7d2D++D7p/f2YQ0Q6TvStfNuYmONVwoHhcZHWCkiHWYs17P0YuvBNUv1ZZnUqLnPAN5Gm8vl4gHcbNDlUHnm7dD/pW/ywDw7gUNN9fZ7Zt3UdXRPfxokkVMotz4Q32XmL9VVJDC8lkIxbeBvEHYU0RUGKzd5tOJEmaXL8XT1p/UXdxX5rUHes1mG+agvaHs81PP+062uYv5eX0MRlTjYk9q5WyR7+tyC8oGBEiNYJ8kgkWwphB3Udp7wUUzfFYTpD8ajfQVAofuuPFXroZXZHyAHlmEh4SSZWKO+Vr1xFsk1D3+8FUMFVUkhiHfRbyhciaZFC/40SVZ2xeVf/AH/OIIoQg206j9LtdgnPY9jtsQiUPBlDePhd55/c1jQohe4XnoDkilVenv4IYGhV4+Tk6lv77x2pQPpass6eMuiZblc4YiwHVNNkOqWdSpJqx3cVLaNmgvx4MAOU5FVQ0HhamCjybmCLcRk2My/TurW+8uDACHmgVLYbgpQP5y4bHaSfx62csTpUqORgP0vFwof6HakldliQ1qHrIpy9A9dHv5BrvjqG5teU1tPlVuCHdjWb+1tBTI9m3UopFd8Wg+Yvi7MonLDWuz6gcUfKwmISEVCzExGoSZDpF05zppH5M0H6oF3H0lUUwQ5Ri5hvyqF/lFfTiDN3m6Hft5EztPSYmQdC8HsFPMZ5Ii7icCFOM0VyMm3mlteTzatU8rnZW4kPmR1nToPPD61nMV1SLuMPlbml2H4ItLTO3UjTK5XNGLNPZxIe6QHmU7Km20lLnrhkO63oXs4n+EmJj4Bu/DoQJUnysfWbNyj4gX+pZLm76mrol6Z2MTCkdRJ7pPeok09Ascg303IHkdsMC6OoNsMFdPbirB3f14K4e3NWDu3pwVw/u6sFdPbirB3f14K4e3NWDu3pwVw/u6sFdPbirB3f14K4e3NWDu3pwVw/u6sFdPbirB3f14K4e3NWDu3pwVw/u6sFdPbirB3f14K4e3NWDu3pwV+/PdPVA59tJQ3IlmXF3rkq+bZ1UmFutBfZlDkFAhFbCcx6e8xf0QJ4O8pEcy9NaAZsEoT51dkNvaTjUQZ8bv+cqbaQT0TpWBJRHjfiLsarObMQEpixVXZDKDKReraeqBThY7lbN1ntFgPodNgn1jRH5dApffdHmJe97TsUPGkcpj713PeLIayBJ6iA/YW+sX9PJjqBwbzdts89gjy1lKrZQ5C3lqEmP620rw+fvoPyhpLMj+ZVLvlzr6BMpk5MyTt1c1px2hmuVjZl67VzmpL/1s4az6MhoxISk/88/a/gv/QCQAw==

运行以下 Amazon CLI 命令,以便启用 TPM 支持和 UEFI 安全启动:

aws ec2 register-image --region <region> --description <description> --name <ami-new_ami_xxx> --block-device-mappings "DeviceName=/dev/sda1,Ebs={SnapshotId=snap-0xxxxxxxx,DeleteOnTermination=true}"
--architecture x86_64 --root-device-name /dev/sda1 --virtualization-type hvm
--ena-support --boot-mode uefi --tpm-support v2.0
--uefi-data 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

4.    运行以下命令以验证新 AMI 的启动模式:

aws ec2 describe-images --image-id ami-077eabcxxxxaxdfx --query "Images[*].{BootMode:BootMode,TpmSupport:TpmSupport}"

如果 AMI 启用了 UEFI 安全启动和 TPM 支持,则输出将如下例所示:

[
  {
    "BootMode": "uefi",
    "TpmSupport": "v2.0"
  }
]

如果 AMI 已启用 UEFI 安全启动,则输出如下所示:

[
  {
    "BootMode": "uefi",
    "TpmSupport": "null"
  }
]

5.    从新 AMI 启动实例。确保使用支持 UEFITPM 的实例类型。

6.    要验证安全启动和 TPM 状态,请使用 RDP 连接到实例。然后,在 Amazon PowerShell 管理员模式下运行以下命令。

如果实例支持 UEFI 安全启动且安全启动已启用,则以下 cmdlet 会返回 $True。否则,响应为 $False

PS> Confirm-SecureBootUEFI

运行以下命令以检查 TpmPresent 属性。如果实例上存在 TPM,则响应为 $True。否则,响应为 $False

PS> Get-Tpm

注意:

  • NitroTPM 和 UEFI 安全启动是独立的功能,可以在创建 AMI 时独立启用。
  • 在为 AMI 激活 TPM 后,无法将其停用。
  • UEFI 支持安全启动。nitroTPM 提供测量启动。
AWS 官方
AWS 官方已更新 1 年前