- Ukuphepha okusekelwe kwi-Virtualization-based (VBS) kuthuthukisa ukuvikelwa kwesistimu.
- Ukunika i-VBS amandla kudinga i-UEFI ne-TPM 2.0 hardware ehambisanayo.
- Inganikwa amandla ku-BIOS, Windows Registry, kanye ne-Group Policy.
- Kunezindlela zokuqinisekisa ukuthi i-VBS yenziwe ngendlela efanele yini.
La ukuphepha okusekelwe kwi-virtualization (I-VBS) ku-Windows isici esithuthukisa ukuvikelwa kwesistimu ngokudala indawo evikelekile neyodwa. Kodwa ngoba vumela i-VBS kusuka ku-UEFI futhi ukusizakala ngalesi sici, kuyadingeka ukuhlangabezana nezingxenyekazi zekhompuyutha ezithile nezimfuneko zokumisa ohlelweni lokusebenza.
Kulesi sihloko sihlola ngokuningiliziwe ukuthi singayivula kanjani Virtualization-Based Security kusuka ku-UEFI, yiziphi izinyathelo okufanele uzilandele ukuze uhlole isimo sayo nokuthi ungazixazulula kanjani izinkinga ezingenzeka ngesikhathi sokucushwa.
Iyini i-Virtualization-Based Security (VBS)?
Virtualization-Based Security (VBS) i Ubuchwepheshe bokuphepha beWindows esetshenziswa yi-hypervisor yesistimu ukudala indawo evikelekile ngaphakathi kwenkumbulo. Ngale ndlela, idatha yesistimu ebalulekile ivikelekile ezinsongweni ezingaba khona. Lesi sici riqinisa ukuvikeleka kwe-kernel futhi ikhawulela ukufinyelela kuzinqubo ezingagunyaziwe.
Enye yezingxenye ezibalulekile ze-VBS yi- Integridad de la Memoria, okuvimbela ukwenziwa kwekhodi enonya ngokuhlola ukufaneleka kwabashayeli namafayela esistimu ngaphambi kokuwavumela ukuthi asebenze.
Izidingo zokuvula i-VBS
Ngaphambi kokuvumela i-VBS ku-UEFI, qiniseka ukuthi ikhompuyutha yakho ihlangabezana nalezi zidingo ezilandelayo:
- I-Firmware ye-UEFI: : Kudingeka ukuthi i-BIOS isethelwe kumodi ye-UEFI esikhundleni se-Legacy.
- TPM 2.0: I-Trusted Platform Module kumele inikwe amandla ku-BIOS.
- Arranque Seguro: Le nketho ye-BIOS kufanele ivunyelwe.
- Ukuvikelwa kwe-DMA: Ithuthukisa ukuphepha ngokukhawulela ukufinyelela kumadivayisi angaphandle.
Ngaphandle kwalokhu, ukuze uhlole ukuthi isistimu yakho iyahambisana yini ne-VBS, udinga ukulandela lezi zinyathelo:
- Usa el atajo de teclado Win + R, uyabhala msinfo32 bese ucindezela Ngena.
- Busca la sección «Seguridad basada en virtualización«. Uma ibonisa njengokuthi "Iyasebenza," kusho ukuthi isivele yenziwe yasebenza.
Uma ufuna ukufunda kabanzi mayelana nendlela yokunika amandla i-virtualization kusistimu yakho, ungabheka umhlahlandlela wethu kokuthi Nika amandla i-virtualization yehadiwe ku-Windows 11.

Ungayivula kanjani i-VBS kusuka ku-BIOS (UEFI)
Ukuze unike amandla i-VBS kusuka ku-UEFI (kusuka ku-BIOS), landela lezi zinyathelo:
- Qala kabusha ikhompyutha yakho bese ufinyelela i-BIOS ngokucindezela F2, F10, Supr o Esc, dependiendo del fabricante.
- Kumenyu yezilungiselelo, bheka inketho “Modo de Arranque»bese ushintshela ku I-UEFI uma usekumodi Yefa.
- Ubica la opción «TPM 2.0» futhi uyisebenzise uma ingavunyelwe.
- Habilita la opción «Arranque Seguro"
- Guarda los cambios y reinicia el ordenador.
Nika amandla i-VBS ku-Windows Registry
Uma ukhetha ukunika amandla i-VBS usebenzisa i Irejista yeWindows, yenza lezi zinyathelo ezilandelayo:
- Cindezela Win + R, uyabhala regedit bese ucindezela Ngena.
- Navega hasta la siguiente ruta:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceGuard - Thola noma dala inani le-DWORD eliqanjwe ngokuthi "EnableVirtualizationBasedSecurity» futhi inikeze inani 1.
- Endaweni efanayo, lungisa "RequirePlatformSecurityFeatures» a 3 (yokuvula ibhuthi evikelekile nokuvikelwa kwe-DMA).
- Guarda los cambios y reinicia tu equipo.
Ilungiselela i-VBS Ukusebenzisa Inqubomgomo Yeqembu
Abaphathi besistimu bangakwazi futhi ukunika amandla i-VBS besebenzisa i-Group Policy:
- Vula Umhleli Wenqubomgomo Yeqembu escribiendo i-gpedit.msc en el menú de inicio.
- Después ve a Configuración del equipo.
- Allí seleccionamos Izifanekiso Zokulawula > Isistimu > Isigadi Sedivayisi.
- Abre la opción «Activar la seguridad basada en virtualización» y selecciona «Habilitado"
- En la lista desplegable, elige «Habilitado con bloqueo UEFI"
- Guarda los cambios y reinicia el ordenador.
Ungahlola kanjani ukuthi i-VBS iyasebenza
Kunezindlela ezimbalwa zokuqinisekisa ukuthi i-VBS yenziwe ngendlela efanele yini:
- Ukusebenzisa i-msinfo32, ibheka isigaba esithi "Virtualization-based Security". Uma ikumodi "Yokusebenza", bese iyasebenza.
- Mediante PowerShell, esebenzisa umyalo olandelayo ku-PowerShell ngezimvume zomlawuli:
(Get-CimInstance -ClassName Win32_DeviceGuard -Namespace root\Microsoft\Windows\DeviceGuard).SecurityServicesRunning.Uma okukhiphayo kubonisa "2«, kusho ukuthi i-VBS iyasebenza. - Ngesibukeli Somcimbi. Vula umcimbivwr.msc bese uya kokuthi “Amalogi EWindows > Isistimu”. Hlunga ngokuthi “WinInit” ukuze ubone ukuthi i-VBS inikwe amandla ngempumelelo yini.
Ukuxazulula inkinga Ukuqalisa kwe-VBS
Uma uhlangabezana nezinkinga lapho uzama ukwenza i-VBS isebenze ku-UEFI, zama izixazululo ezilandelayo:
- I-TPM 2.0 ikhutshaziwe: Faka i-BIOS futhi uqiniseke ukuthi ivuliwe.
- Imodi yefa ku-BIOS: Shintsha izilungiselelo zibe i-UEFI.
- Isistimu ayilayishi ngemva kokwenza kusebenze: Khubaza i-VBS kuRegistry noma Inqubomgomo Yeqembu bese uqalisa kabusha.
- Drivers incompatibles: Buyekeza abashayeli ukusuka kuSiphathi Sedivayisi.
Ngokulandela lezi zinyathelo ngendlela efanele, kufanele ukwazi ukunika amandla i-VBS kusuka ku-UEFI, okungukuthi vumela i- ukuphepha okusekelwe kwi-virtualization ngaphandle kwezinkinga. Lobu buchwepheshe buyithuluzi elibalulekile lokuthuthukisa ukuvikeleka kwesistimu yakho ezinsongweni ezithuthukile.
Umhleli okhethekile kwezobuchwepheshe kanye nezindaba ze-inthanethi onolwazi olungaphezu kweminyaka eyishumi kumidiya ehlukene yedijithali. Ngisebenze njengomhleli kanye nomdali wokuqukethwe kwe-e-commerce, ukuxhumana, ukumaketha ku-inthanethi kanye nezinkampani zokukhangisa. Ngike ngabhala kumawebhusayithi ezomnotho, ezezimali neminye imikhakha. Umsebenzi wami nawo uwuthando lwami. Manje, ngokusebenzisa izihloko zami ku Tecnobits, ngizama ukuhlola zonke izindaba namathuba amasha izwe lobuchwepheshe elisinikeza lona nsuku zonke ukuze sithuthukise izimpilo zethu.