if you mean for the PVE host itself - no, there is no signing/enrollment/.. in place (yet) to support this out of the box. for VMs it's possible in recent PVE versions to use EFI disks with pre-enrolled keys and a software TPM, so recent windows versions that require secure boot and a TPM are supported as guest OS.