Enable TPM 2.0 on your PC (2024)

Table of Contents
How to enable TPM See Also FAQs

Published August 2021

This article is intended for users who are not able to upgrade to Windows 11 because their PC is not currently enabled with TPM 2.0 or their PC is capable of running TPM 2.0 but is not set up to do so. If you are unfamiliar with this level of technical detail, we recommend that you consult your PC manufacturer’s support information for more instructions specific to your device.

Most PCs that have shipped in the last 5 years are capable of runningTrusted Platform Moduleversion 2.0 (TPM 2.0). TPM 2.0 isrequired to run Windows 11, as an important building block for security-related features. TPM 2.0 is used in Windows 11 for a number of features, including Windows Hello for identity protection and BitLocker for data protection.

In some cases, PCs that are capable of running TPM 2.0 are not set up to do so. If you are considering upgrading to Windows 11,check to ensure TPM 2.0 is enabled on your device. Most retail PC motherboards used by people building their own PC, for example, ship with TPM turned off by default even though it is almost always available to be enabled.

Option 1: Use the Windows Security app

  1. RunSettings>Update & Security>Windows Security>Device Security

    1. If you do not see aSecurity processorsection on this screen your PC may have a TPM that is disabled. see How to enable TPMfor more information or check your PC manufacturer’s support information for instructions. to enable the TPM. If you are able to enable a TPM, complete the next stepto verify that it is a TPM 2.0.

    2. If you see an option forSecurity processor detailsunderSecurity processor, select that and verify that yourSpecification versionis 2.0. If it is less than 2.0, your device does not meet the Windows 11 requirements.

Option 2: Use the Microsoft Management Console

  1. Press [Windows Key] +Ror selectStart>Run.

  2. Type“tpm.msc” (do not use quotation marks) and chooseOK.

    1. If you see a message saying a “Compatible TPM cannot be found,”your PC may have a TPM that is disabled. See How to enable TPM for more information or check your PC manufacturer’s support information for instructions to enable the TPM. If you are able to enable the TPM, complete the next step to verify that it is a TPM 2.0.

    2. If you see a message confirming TPM is ready to use, check Specification Version under TPM Manufacturer Information to verify it is 2.0. If it is less than 2.0 your device does not meet the Windows 11 requirement.

How to enable TPM

If you need to enable TPM, these settings are managed via the UEFI BIOS (PC firmware) and vary based on your device. You can access these settings by choosing:Settings>Update & Security>Recovery > Restart now.

From the next screen, choose Troubleshoot> Advanced options > UEFI Firmware Settings > Restart to make the changes. These settings are sometimes contained in a sub-menu in the UEFI BIOS labeled Advanced, Security, or Trusted Computing. The option to enable the TPM may be labeled Security Device, Security Device Support, TPM State, AMD fTPM switch, AMD PSP fTPM, Intel PTT,or Intel Platform Trust Technology.

If you are unsure how to make any needed changes to the TPM settings, we recommend that you check your PC manufacturer’s support information or contact their support organization. Below are links to information from some PC manufacturers to help you get started:

Asus

Dell

HP

Lenovo

Microsoft Surface

See Also

Windows 11 system requirements

How to use the PC Health Check app

Device protection in Windows Security

Windows 11 and Secure Boot

Ways to install Windows 11

Activate Windows

I'm an enthusiast with extensive knowledge in the field of computer hardware and software, particularly focusing on Windows operating systems and their associated technologies. My expertise is rooted in hands-on experience and a deep understanding of the technical intricacies involved. Now, let's delve into the concepts discussed in the article published in August 2021, addressing users who cannot upgrade to Windows 11 due to TPM 2.0 issues.

The article primarily revolves around Trusted Platform Module version 2.0 (TPM 2.0), an integral component for security-related features in Windows 11. TPM 2.0 is crucial for functions like Windows Hello for identity protection and BitLocker for data protection.

Here are the key concepts discussed in the article:

  1. TPM 2.0 Requirement for Windows 11:

    • Windows 11 requires TPM 2.0 as a fundamental building block for security features.
    • Most PCs shipped in the last 5 years are capable of running TPM 2.0.
  2. Checking TPM Status:

    • Users are advised to check if TPM 2.0 is enabled on their device before upgrading to Windows 11.
    • Retail PC motherboards often ship with TPM turned off by default, even though it is available to be enabled.
  3. Options to Check and Enable TPM:

    • Option 1: Using the Windows Security App:

      • Navigate to Settings > Update & Security > Windows Security > Device Security.
      • Check for a "Security processor" section to verify TPM status.
    • Option 2: Using Microsoft Management Console:

      • Press [Windows Key] + R or select Start > Run.
      • Type "tpm.msc" and press OK to check TPM status.
  4. Verifying TPM Specification Version:

    • After enabling TPM, users need to verify that the Specification Version is 2.0.
  5. How to Enable TPM:

    • TPM settings are managed via UEFI BIOS (PC firmware) and vary based on the device.
    • Access these settings through Settings > Update & Security > Recovery > Restart now.
    • Navigate through Troubleshoot > Advanced options > UEFI Firmware Settings to enable TPM.
  6. Manufacturer-Specific Information:

    • Different PC manufacturers may have variations in TPM settings in the UEFI BIOS.
    • Users are encouraged to consult their PC manufacturer’s support information for specific instructions.
  7. Additional Resources:

    • The article provides links to information from specific PC manufacturers (Asus, Dell, HP, Lenovo, Microsoft Surface) to assist users in getting started.

In summary, the article offers a comprehensive guide for users facing challenges upgrading to Windows 11 due to TPM 2.0 issues, covering checks, enabling TPM, and manufacturer-specific details. If you have any further questions or need more detailed information, feel free to ask.

Enable TPM 2.0 on your PC (2024)

FAQs

Enable TPM 2.0 on your PC? ›

TPM 2.0 is recommended since it supports newer cryptographic algorithms. TPM 1.2 only supports the SHA-1 algorithm, which is being deprecated. Device Encryption requires Modern Standby/Connected Standby certification, which requires TPM 2.0. TPM 2.0 and UEFI firmware is required.

Should I enable TPM 2.0 on your PC? ›

TPM 2.0 is recommended since it supports newer cryptographic algorithms. TPM 1.2 only supports the SHA-1 algorithm, which is being deprecated. Device Encryption requires Modern Standby/Connected Standby certification, which requires TPM 2.0. TPM 2.0 and UEFI firmware is required.

How to activate TPM 2.0 from BIOS? ›

[NUC] How to enable Trusted Platform Module (TPM2. 0) on NUC with Visual BIOS?
  1. Press F2 during boot to enter BIOS setup.
  2. Go to Advanced Settings > Security Menu.
  3. From the security features menu, check the Platform Trust Technology box.
Jan 12, 2024

Is TPM 2.0 required for Windows 10? ›

TPMs are efficient alternatives to older methods of securing Windows PCs. In fact, since July 2016 Microsoft has actually required TPM 2.0 support on all new PCs that run any version of Windows 10 for desktop (Home, Pro, Enterprise, or Education). Likewise, Windows 11 will only run on PCs that have TPM capabilities.

How do I fix no TPM in BIOS? ›

Top 4 Fixes for TPM Missing or Not Showing in BIOS
  1. Fix 1: Check the Process Compatibility.
  2. Fix 2: Check the TPM Chip for Errors.
  3. Fix 3: Update BIOS.
  4. Fix 4: Disconnect and Reconnect the AC Power Cord.
Jun 13, 2024

Can TPM 2.0 cause issues? ›

The newly discovered vulnerabilities in TPM 2.0 allow an authenticated local attacker to exploit them by sending maliciously crafted commands to execute code within the TPM. This could result in information disclosure or escalation of privileges, leading to unauthorized access to sensitive data.

What will happen if I enable TPM? ›

Practically, the TPM is used for multiple features that increase the security of your device: BitLocker Drive Encryption: Automatically encrypts the system drive to keep your data safe. Data Execution Prevention: Prevents unauthorized applications like malware from running in memory.

How do I know if my TPM 2.0 is activated? ›

Select the Security tab in the BIOS. Select Security Chip. Verify the Security Chip Type is TPM 2.0 and that Security Chip is Enabled.

What does disabling TPM do? ›

Clearing the TPM can result in data loss. To protect against such loss, review the following precautions: Clearing the TPM causes you to lose all created keys associated with the TPM, and data protected by those keys, such as a virtual smart card or a sign-in PIN.

How do I enable TPM 2.0 in Device Manager? ›

Click Security in the Settings menu. Click the TPM 1.2 Security or TPM 2.0 Security option in the Security menu. Ensure TPM On and Activate are checked. You may also need to ensure that Attestation Enable and Key Storage Enable are also checked for proper TPM functionality.

Do I have to buy a TPM 2.0 chip? ›

A TPM chip can be added if the motherboard has a slot. Your processor is Gen 3, but Windows requires at least Gen 8. Some processors also have inbuilt TPM, so you will not have to buy it separately, called Intel Platform Trust technology, so you will not have to buy TPM chip separately.

What does TPM stand for? ›

Total Productive Maintenance (TPM) seeks to engage all levels and functions in an organization to maximize the overall effectiveness of production equipment. This method further tunes up existing processes and equipment by reducing mistakes and accidents.

Can I play league without TPM? ›

With Patch 14.9, Riot Games recently introduced Vanguard to League of Legends. Originally developed as VALORANT's anti-cheat, Vanguard requires deeper system access and requires systems to have TPM 2.0 enabled to run.

What to do if PC doesn't have TPM? ›

you will have to go into the BIOS and check the TPM setting. I had it happen once after some Windows updates were done. This issue happens sometimes which can be fixed through the BIOS settings of your system , just search for how to enable TPM for your motherboard and you'll have this error gone.

Why can't i enable TPM? ›

Platform Trust Technology (PTT) is enabled on these systems by default, causing the TPM to be greyed out in the BIOS (Only one of these trust technologies can be enabled at a time). To enable TPM, PTT protection must be removed from the encryption keys.

How do I enable TPM 2.0 without BIOS? ›

Enable TPM 2.0 on your PC
  1. Press [Windows Key] + R or select Start > Run.
  2. Type “tpm.msc” (do not use quotation marks) and choose OK. If you see a message saying a “Compatible TPM cannot be found,” your PC may have a TPM that is disabled.

Does TPM 2 affect performance? ›

No, both fTPM and dTPM do not affect performance at all. Once the computer start up protocols are completed and everything is checked, the TPM enters an idle state. There is little to no disadvantages of enabling TPM 2.0, and greatly improves the overall data security of the system.

Is TPM safe? ›

A TPM chip is a secure crypto-processor that is designed to carry out cryptographic operations. The chip includes multiple physical security mechanisms to make it tamper-resistant, and malicious software is unable to tamper with the security functions of the TPM.

Does TPM need to be on? ›

You can install and run Windows without TPM. However, a few features like BitLocker Encryption can't work without TPM.

What is the TPM 2 vulnerability? ›

The TPM 2.0 flaws could let hackers steal cryptographic keys. TPM is a technology that provides secure cryptographic functions to operating systems using hardware. It can store sensitive data such as cryptographic keys and passwords, so any weakness in its implementation can cause concern.

Top Articles
Crypto holdings have made some people billionaires, but how many?
Is MetaMask Legit and Safe? - A Simple Guide | CoinLedger
Karl Torp Height
Wym Urban Dictionary
Spectrum Store Kansas City Photos
Wyze Thermostat vs Nest: Detailed Comparison
123Movies The Idol
Nazir Afzal on the BBC: ‘Powerful predators were allowed to behave terribly on an industrial level’
Courtney Eaton Is Figuring It All Out
What does JOI mean? JOI Definition. Meaning of JOI. OnlineSlangDictionary.com
Everything We Know About Wenwen Han and Her Rise To Stardom
Bowling Pro Shop Crofton Md
Cbs Fantasy Trade Values
Www Craigslist Com Pueblo Co
Tabdil Tarikh
Randolph Leader Obits
What Happened To Guy Yovan's Voice
Domino Near
Myjohnshopkins Mychart
Methodwow
Gncc Live Timing And Scoring
309 Marshall Passage
G 037 White Oblong Pill
Craigslist Of Valdosta Georgia
Best Non Toxic Cutting Board for your Healthy Kitchen - Healthy House on the Block
M Life Insider
636-730-9503
Carlitos Caribbean Bar & Grill Photos
Infinity Pool Showtimes Near Cinemark 14 Chico
Horseware Deken Amigo Bravo 100gr Donkerblauw - 130/183 | bol
Eddie Murphy Cast Of Elemental
Busted Paper Haysi Regional Jail
Mmastreams.com
Ufc 281 Tapology
Hyb Urban Dictionary
Wo liegt Sendenhorst? Lageplan und Karte
Locals Canna House Deals
Crimson Draughts.
Grave Digger Wynncraft
Any Ups Stores Open Today
Craigslist Pinellas County Rentals
Actionman23
Raz-Plus Literacy Essentials for PreK-6
Scholastic to kids: Choose your gender
Youravon Comcom
United States Map Quiz
Register for Classes - Office of the Registrar
Cetaphil Samples For Providers
Craigslist Free Stuff Columbus Ga
Benson Downs Resident Portal
Pkittens
Creed 3 Showtimes Near Island 16 Cinema De Lux
Latest Posts
Article information

Author: Clemencia Bogisich Ret

Last Updated:

Views: 6590

Rating: 5 / 5 (80 voted)

Reviews: 95% of readers found this page helpful

Author information

Name: Clemencia Bogisich Ret

Birthday: 2001-07-17

Address: Suite 794 53887 Geri Spring, West Cristentown, KY 54855

Phone: +5934435460663

Job: Central Hospitality Director

Hobby: Yoga, Electronics, Rafting, Lockpicking, Inline skating, Puzzles, scrapbook

Introduction: My name is Clemencia Bogisich Ret, I am a super, outstanding, graceful, friendly, vast, comfortable, agreeable person who loves writing and wants to share my knowledge and understanding with you.