Trusted Platform Module Replacement

Caution

Static Sensitive Devices: Be sure to observe best practices for electrostatic discharge (ESD) protection. This includes making sure personnel and equipment are connected to a common ground, such as by wearing a wrist strap connected to the chassis ground, and placing components on static-free work surfaces.

Trusted Platform Module Replacement Overview

This is a high-level overview of the procedure to replace the trusted platform module (TPM) on the DGX H100 system.

  1. If enabled, disable drive encryption.

  2. Shut down the system.

  3. Label all motherboard tray cables and unplug them.

  4. Slide out the motherboard tray.

  5. Remove the tray lid and the DIMM air baffle.

  6. Lift the OSFP carrier module to access the TPM.

  7. Replace the TPM on the motherboard.

  8. Install the OSFP carrier module.

  9. Install the DIMM air baffle and motherboard tray lid.

  10. Slide the motherboard tray into the system.

  11. Plug in all cables using the labels as a reference.

  12. Power on the system.

  13. If the data drives need to be protected, then enable encryption.

Prepare the System for Replacement

  1. If data drives are encrypted, the tpm2 OS package is installed, and the TPM is enabled in SBIOS, disable encryption:

    sudo nv-disk-encrypt disable
    
  2. Power down the system.

  3. Remove the motherboard tray. Refer to Motherboard Tray - Removal and Installation for more information.

  4. Remove the DIMM air baffle.

Replace the TPM Module

  1. Locate the OSFP carrier module on the motherboard. Refer to the following figure:

    _images/dgx-h100-osfp-carrier-pin.png
  2. Move the OSFP carrier module toward the DIMMs, as shown in the following figure. Make sure the OSFP cages at the rear of the system do not interfere with the tray sheet metal before you tilt the carrier:

    _images/dgx-h100-osfp-carrier-remove-move.png
  3. Rotate the OSFP carrier module to access the TPM, as shown in the following diagram:

    _images/dgx-h100-osfp-carrier-remove-tilt.png
  4. Replace the TPM. Make sure that you position the TPM in the same direction as the original.

    _images/dgx-h100-osfp-carrier-replace-tpm.png

Install OSFP Carrier Module

  1. Rotate the OSFP carrier module to return it to the original position. While you rotate the module, pull the module toward the DIMMs so that the ports do not interfere with the motherboard tray frame:

    _images/dgx-h100-osfp-carrier-install-tilt.png
  2. Move the OSFP carrier toward the outside of the tray so that the OSFP cages go through the openings in the motherboard tray frame:

    _images/dgx-h100-osfp-carrier-install-move.png

Finalize TPM replacement

  1. Install the air baffles, close the motherboard, and install the tray in the chassis. Refer to Motherboard Tray - Removal and Installation for more information.

  2. Plug in all cables.

  3. Install all power cords.

  4. Power on the system.

  5. If data drives were encrypted, the tpm2 OS package is installed, and the TPM was enabled in SBIOS before the replacement, enable encryption:

    sudo nv-disk-encrypt init -g -r -k <your vault password>
    
  6. Use the nvsm command to confirm the system is healthy:

    sudo nvsm show health