---
title: Elastic Metal Security Features
description: This page provides insights regarding the security features available on Elastic Metal offers
tags: elastic-metal security
dates:
  validation: 2026-09-11
  posted: 2026-09-11
---

Elastic Metal servers include hardware-level security features and encryption to protect critical workloads and data.

<Message type="important">
Users are not allowed to change the BIOS settings of Elastic Metal servers, as mentioned in this [FAQ entry](/elastic-metal/faq/#can-i-change-the-bios-settings-or-update-the-firmware-of-an-elastic-metal-server).
</Message>

## TPM

A Trusted Platform Module (TPM) is a security solution that provides hardware-based cryptographic functions. It enables key storage, cryptographic measurements, and system integrity validation.

TPM 2.0 modules are systematically installed across all new compatible server architectures.

Depending on the server range, Elastic Metal servers use either a physical chip or a firmware-integrated module:

* **Physical TPM:** A dedicated hardware chip mounted on the server motherboard
* **fTPM (Firmware TPM):** A firmware-based implementation integrated into the CPU

Your TPM can be cleared (reset) if certain tasks are triggered (for instance, a BIOS update). If your TPM data is important, it is recommended to have a backup strategy, such as exporting the keys stored in the TPM and storing them somewhere else. 

### Compatible offers

The following table lists the Elastic Metal server offers that support TPM, and which TPM type.

| Server offer | TPM status | TPM type |
| :--- | :--- | :--- |
| [EM-IX20E](/elastic-metal/reference-content/elastic-metal-datasheet/#iridium) | Supported | Physical TPM |
| [EM-BX30E](/elastic-metal/reference-content/elastic-metal-datasheet/#beryllium) | Supported | Dual TPM: fTPM (Firmware TPM) and Physical TPM |
| [EM-LX30E](/elastic-metal/reference-content/elastic-metal-datasheet/#lithium) | Supported | Physical TPM (TPM-SPI/9672 on ASRock Rack or CTM012 on Gigabyte R263-Z37 / R263-Z36) |


## SEV-SNP protocol and AMD Security Stack

AMD Security Stack (also named AMD Infinity Guard) is a suite of security features that encrypts system memory and enables Confidential Computing.

This security stack consists of the following core technologies:

* **Secure Memory Encryption / Transparent SME (SME / TSME):** Encrypts main system memory in real time.
* **Secure Encrypted Virtualization - Secure Nested Paging (SEV-SNP):** Protects guest virtual machines by preventing hypervisor-level memory tampering.
* **Reverse Map Table (RMP):** Maintains a hardware-enforced memory structure that tracks memory page ownership and prevents state invalidation attacks.
* **AMD Platform Security Processor (PSP):** Provides an isolated cryptographic processor that executes security operations and enables remote attestation to verify system integrity.

### Default configuration

Elastic Metal servers equipped with the AMD Security Stack feature the following configuration parameters:

* **TPM 2.0:** Full cryptographic security enabled (`TpmSecurity: On`, `Tpm2Hierarchy: Enabled`)
* **Address Space Identifier (ASID):** Minimum SEV non-ES ASID threshold set to 100 (`CpuMinSevAsid: 100`)

### Target use cases

The AMD Security Stack and SEV-SNP protocol are designed for highly regulated European industries requiring Digital Trust Services, including compliance with Qualified Trust Service Provider (QTSP) and European Telecommunications Standards Institute (ETSI) audit standards. Common use cases include:

* Electronic signatures
* Secure software keys storage
* Identity verification

### Compatible offers

The AMD Security Stack and SEV-SNP protocol are supported on the following Elastic Metal server offers:

* EM-IX20E
* All new AMD-based Elastic Metal offers
