VSM Architecture

When the Windows OS is running in Virtual Secure Mode (VSM), the Hyper-V hypervisor plays a key role in securing the OS. VSM has significant hardware requirements, but when the required hardware is available, Secure Boot is used to safely load the OS and start the hypervisor. The hypervisor uses the Second Level Address Translation (SLAT) and I/O memory management unit of the processor and I/O hardware to create two VMs and two virtual trust levels (VTLs). A secure kernel and isolated user mode are created in VTL 1.

