Looks like speeds have picked up since I last looked at this, when a signature in TPM took 0.7s and no concurrent capacity.
https://blog.habets.se/2012/02/Benchmarking-TPM-backed-SSL.h...
https://blog.habets.se/2012/02/TPM-backed-SSL.html
Well, it's been over 14 years so I should hope so.
Yeah, a typical TPM chip has much lower throughput than OP.
Not suitable for servers, since it's such an easy DoS vector.
The benchmarks are from GCP, where the vTPM is implemented in the hypervisor rather than on something that's plausibly an 8051[1]. Doing this on actual client hardware is going to be a bunch slower.
[1] Typically ARM these days, but most system vendors aren't picking TPM vendors based on performance