What is a TPM and why isn’t mine working? (2024)

If you’re like most people, you didn’t think about whether your computer had a TPM (Trusted Platform Module) until Microsoft made it part of its system requirements to run Windows 11. Now that Windows 11 has arrived, it’s a vital piece of whether or not you’ll even be able to upgrade. We’ll explain what a TPM is, how you can find out whether your system has one, and how to enable it if it’s turned off.

What is a TPM?

A TPM, or Trusted Platform Module, is a security chip that can be embedded in a laptop or plugged into most desktop PCs. It’s basically a lockbox for keys, as well as an encryption device a PC can use to boost its security.

For example, when you boot your PC, one chip wakes up and begins nudging other components to warm up for the start of the day. Once all of the hardware is ready, it goes to the storage drive to start hauling the operating system into memory.

Here’s how to get Windows for cheap (or even for free)

In a secure environment, the PC first makes sure the operating system is secure. In fact, it may not even trust the surrounding hardware it woke up earlier, so it checks them as well. But without a point of reference, the PC has no idea whether any part of the system has been tampered with. With a TPM, the PC can compare notes using the information stored in the locked-down TPM. If it all matches, the boot proceeds as normal. If something is amiss, red flags go up.

What is a TPM and why isn’t mine working? (1)
What is a TPM and why isn’t mine working? (2)
What is a TPM and why isn’t mine working? (3)

TPMs are in most newer CPUs

TPMs originally came as standalone chips, and originally they were used only in corporate computers, where security was more of a concern and customers would pay the premium for the add-on. More recently, AMD and Intel have integrated firmware-based TPM into their CPUs. That’s made TPM support far more available.

Pretty much any Intel CPU from 2013 (think 4th-gen Haswell) and built for Windows 8.1 should have a firmware-based TPM. AMD has supported firmware TPM for some time as well.

Even if firmware TPM is in place in the CPU, that doesn’t mean every PC has immediate access to it. It may need a BIOS or UEFI update to support it. While most computers you buy from a large PC maker typically have it in place, many retail motherboards often don’t have the BIOS support, or don’t have it switched on by default.

What is a TPM and why isn’t mine working? (4)
What is a TPM and why isn’t mine working? (5)
What is a TPM and why isn’t mine working? (6)

What is a TPM header?

You’ll find that many desktop motherboards will have an unfilled TPM header option available. The header allows for a consumer to buy a TPM module for the board if they want to enable a discrete TPM. Most hardware sold directly to consumers doesn’t include the module, because it’s always been seen as an extra cost.

If your particular motherboard never implemented firmware TPM support, and this is one obstacle preventing you from installing Windows 11, it might be worth hunting for a compatible module. We recommend that when you shop, you stick to a module from the same motherboard maker, and within the same vintage of motherboard. Although the TPM chips in the modules may be off-the-shelf, the actual physical connections, as well as how the BIOS/UEFI talks to it, will be unique.

How to check your TPM’s status

The easiest way to check the state of your TPM on a Windows 10 machine is to go to Device Security. You can do this by pressing the Windows key and typing device security. From there, click the Security processor details link. If your PC has a TPM that Windows 10 can see, you’ll get details on it here. For example, in screenshots from a consumer Core i7-1185G7 laptop and a commercial or business-focused Core i7-8665U, we can see that the consumer laptop uses the Intel embedded TPM or Platform Trusted Technology because, well, it’s free.

On the commercial laptop, the vendor (HP, in this case) has embedded an actual discrete Infineon TPM module into the laptop, a normal practice for corporate laptops.

Which is better? Generally, the discrete or separate TPM module is believed to be better, as it supports more encryption algorithms. But it does take up space and add cost.

What is a TPM and why isn’t mine working? (10)
What is a TPM and why isn’t mine working? (11)
What is a TPM and why isn’t mine working? (12)

Why doesn’t my TPM show up?

While support for the TPM on a 7-year-old PC to run Windows 11 is going to cause hand-wringing for the next six months, even newer PCs can have troubles. For example, on an 8th-gen Core i7 PC, we found the TPM support in its default state of “discrete”—which, as with most consumer desktops, means ‘off,’ because there was no optional TPM module installed.

This throws up a flag in Microsoft’s Windows 11 requirement check, saying you need a TPM 2.0 is enabled. As we said, that means you either go out and buy the appropriate TPM module and plug it into the header, or you simply flip on the firmware TPM already built in the 8th-gen CPU. On this particular motherboard, it means flipping it from discrete to firmware.

Depending on the motherboard or laptop maker, finding this setting will vary. In this motherboard, for example, it’s just called TPM. In some motherboards it’s called Intel Platform Trusted Technology (PTT). Some AMD motherboards it’s called fTPM.

To find it, you’ll have to root around through the UEFI of your PC to turn it on.

What is a TPM and why isn’t mine working? (13)
What is a TPM and why isn’t mine working? (14)
What is a TPM and why isn’t mine working? (15)

We don’t actually recommend you do this on a working PC at this point without making a backup. While some have reported success, others have said it has caused sporadic blue-screen errors that didn’t go away even after turning off the firmware TPM in the UEFI.

With Windows 11 still months away, motherboard vendors will likely be releasing new UEFI’s for their customers. You’ll probably want to wait until a newer UEFI/BIOS is available and the OS itself is here, before taking a chance on breaking things.

Of course, the TPM is just one of the many things you’ll need before you can install Windows 11. You’ll also to enable Secure Boot and UEFI mode as well. Most computers made in the last three or four years should manage the process smoothly. Older hardware, we’ll have to wait and see.

What is a TPM and why isn’t mine working? (16)
What is a TPM and why isn’t mine working? (17)
What is a TPM and why isn’t mine working? (18)
What is a TPM and why isn’t mine working? (2024)

FAQs

What is a TPM and why isn’t mine working? ›

With a TPM, the PC can compare notes using the information stored in the locked-down TPM. If it all matches, the boot proceeds as normal. If something is amiss, red flags go up. Most newer Intel CPUs feature a TPM inside of the CPU itself, which it calls Platform Trusted Technology.

Why is my TPM not working? ›

If the TPM is a TPM 2.0 and isn't detected by Windows, verify that your computer hardware contains a Unified Extensible Firmware Interface (UEFI) that is Trusted Computing Group-compliant. Also, ensure that in the UEFI settings, the TPM hasn't been disabled or hidden from the operating system.

What causes TPM to fail? ›

The most common cause of TPMS sensor failure is battery exhaustion. TPMS sensors have built-in batteries with a limited lifespan.

How do I know if my TPM chip is working? ›

-Type "tpm. msc" and hit Enter or click OK. -The Trusted Platform Module Management console will open, and you can check the "Status" section for information about your TPM chip. If the TPM chip is still not detected, it's possible that your laptop does not have a TPM chip, or it might be disabled or malfunctioning.

How to fix compatible TPM cannot be found? ›

  1. Begin by restarting your computer, and as it boots up, press a designated key to access the BIOS settings.
  2. Within the BIOS, navigate to the "Security" tab.
  3. Locate the "TPM" option and activate it.
  4. Save your changes and exit the BIOS.
  5. Reboot your PC to complete the process.
Oct 29, 2023

How do you fix a TPM sensor? ›

Our first recommendation is to drive the vehicle a bit at 50 mph, for 10 minutes. This should help reset the tire pressure monitoring system sensors. You can also try to start the vehicle and run it for 20 minutes to reset the sensors.

What is a TPM malfunction? ›

A message stating "TPM Chip Malfunction" may pop up in Microsoft Teams or in Office 365 applications. This message appears when the computer stops recognizing the built-in Trusted Platform Module security chip.

What happens if TPM breaks? ›

You would need to replace the TPM chip as it is a requirement for Windows 11, and most likely you won't get future updates in case Windows boots. Wether Bitlocker or Device encryption is not enabled, you should backup your recovery key from https://aka.ms/myrecoverykey immediately if asked. If you have it, it is fine.

How do I turn off TPM? ›

Use the following steps to enable or disable TPM in the BIOS:
  1. Restart your computer and enter the BIOS setup by pressing the appropriate key during startup. ...
  2. Navigate to the Security or Advanced tab using the arrow keys.
  3. Look for the TPM option and select it.
  4. Choose the option to disable (or enable) the TPM.

How do I fix my TPM chip? ›

Right-click on Trusted Platform Module 2.0 and select Update driver. On the update prompt, select Search automatically for drivers. Windows will automatically download and install the latest version of the TPM 2.0 driver. Reboot your computer and check if the 'Trusted platform module has malfunctioned.

What happens if I clear TPM? ›

As the warning message hints, we can conclude that clearing TPM will erase all created keys related to the TPM such as the BitLocker recovery key. In addition, it will delete all data protected by these TPM-relevant keys, such as a sign-in PIN, virtual smart card, etc.

Where is the TPM chip located? ›

A TPM, or a trusted platform module, is a physical or embedded security technology (microcontroller) that resides on a computer's motherboard or in its processor.

Why is TPM disabled? ›

Platform Trust Technology (PTT) is enabled on these systems by default, causing the TPM to be greyed out in the BIOS (Only one of these trust technologies can be enabled at a time). To enable TPM, PTT protection must be removed from the encryption keys.

How do I unblock TPM? ›

To end a TPM lockout, you must provide a valid owner authorization value. You can enter an owner authorization value or specify a file that contains the value. If you do not provide a value, the cmdlet attempts to use a value stored in the registry.

Can I install Windows 11 without TPM? ›

This hardware-based security feature ensures system integrity and encryption. Microsoft set this requirement to enhance the overall security of the operating system. Therefore, if your computer doesn't have a compatible TPM 2.0, you might not be able to install Windows 11.

What causes TPM malfunction Windows 10? ›

The issue occurs if a computer has been reimaged without clearing the TPM. Attempt to resolve the issue by clearing the TPM and installing the latest TPM firmware (following the steps in the section above). Check the BIOS to ensure that the TPM settings are correct.

Can a TPM go bad? ›

Normally, TPMS sensors are designed to last for 5 to 10 years. However, it's important to note that their batteries are non-replaceable.

What does it mean when the TPM malfunction is on? ›

When your tire pressure monitoring system (TPMS) warning light comes on, flashes repeatedly, and then turns off, this indicates a malfunction with the vehicle's TPMS system. If the TPMS comes on and stays on, it means your tire has a dangerously low level of air pressure.

How do I fix no TPM in BIOS? ›

Power off the system then disconnect the AC power cord and leave the system unplugged for about 30 seconds. Press and hold the Power button for 30 seconds. Reconnect the AC power cord to the system and boot to the BIOS setup using the F12 key. Once TPM is restored, make sure the Enabled radio button is ticked.

Top Articles
Latest Posts
Article information

Author: Kareem Mueller DO

Last Updated:

Views: 6135

Rating: 4.6 / 5 (46 voted)

Reviews: 93% of readers found this page helpful

Author information

Name: Kareem Mueller DO

Birthday: 1997-01-04

Address: Apt. 156 12935 Runolfsdottir Mission, Greenfort, MN 74384-6749

Phone: +16704982844747

Job: Corporate Administration Planner

Hobby: Mountain biking, Jewelry making, Stone skipping, Lacemaking, Knife making, Scrapbooking, Letterboxing

Introduction: My name is Kareem Mueller DO, I am a vivacious, super, thoughtful, excited, handsome, beautiful, combative person who loves writing and wants to share my knowledge and understanding with you.