Recommended Posts

I am trying to enable bitlocker on one of our new Dell PowerEdge R230 servers (current generation)... In the past we were a pure HP shop, but are switching to Dell, which was going smooth until this.

 

When I try to enable the TPM chip using bit locker it goes through the normal bitlocker is verifying pc requirements, etc. then it stops and says "the BIOS did not correctly communicate with the Trusted Platform Module (TPM) Contact the computer manufacturer for BIOS upgrade instructions"

 

well, the BIOS is at the latest build, it's set to UEFI mode, the TPM chip is enabled.

 

After "clearing" the TPM BitLocker goes and works a step further and says it needs to restart to take ownership. I do this, the BIOS asks me if I want to allow it, I say yes, windows starts up bitlocker comes up and says it can not take ownership of the TPM because someone already did, when i go into bitlocker management and try to take ownership it asks me for a password from the person who took ownership last, which I thought was the BIOS, but I have no idea what the password was because it did it automatically. So I have to reboot, clear and reactivate the TPM again in bios.. get into windows skip bitlocker setup and go straight into TPM management's MMC snap in and try to take ownership of the chip which right now is not initialized because I cleared it, it says it has to reboot to do this, I do the reboot, asks me the same questions again in bios at startup if i want to allow this, say yes, go into windows and the TPM MMC and try to take ownership, boom what's the owners password again.... same issue.... bios must of set a password? i duno, the dell manual is horrible also and isn't really any help.....

 

I had this same issue with another R230 server and somehow got it to work eventually, but can't remember what I did..

 

anyone else know what is going on? I'm also confused that the system shipped with TPM1.2 but there are a bunch of references in the dell manual saying that TPM1.2 can be upgraded to TPM2.0 via a software update... which is odd.. I guess this is a TPM2.0 chip somehow running in a 1.2 legacy mode?

Link to comment
https://www.neowin.net/forum/topic/1301804-dell-poweredge-r230-tpm-issues/
Share on other sites

3 minutes ago, crispkreme said:

Take a look at this http://en.community.dell.com/techcenter/b/techcenter/archive/2016/04/04/dell-poweredge-servers-with-tpm-2-0-support

 

It appears Server 2012R2 requires a hotfix for TPM2.0 to function properly.

that hotfix was already applied (probably by dell, because i haven't done any yet), it's already in the list of installed patches....

I also followed this http://www.dell.com/support/article/us/en/04/SLN155219/en?c=us&l=en&s=bsd&cs=04 and when it says it will come to a tpm setup wizard on login all I get is a screen saying enter your current TPM password or select a password file...... which I dont know........

My problem right now is with this document http://www.dell.com/support/article/us/en/04/SLN155219/en?c=us&l=en&s=bsd&cs=04

 

at step 7 it says "Once back at the desktop, either the TPM Setup Wizard appears for you to enter a TPM owner password or you can choose Change Owner Password." well when I get back into windows all I get is a message saying the TPM was cleared and windows has remembered my password for me........ problem once again....... what password?! I never set one? it's like it reinitialized the TPM and picked a random password at boot after the TPM clear

12 hours ago, Mindovermaster said:

yeah, I've read all those trying to figure this out....... I just don't get it, I have three new R230's all with TPM's, so far somehow I got one of them to finally clear, initialize the TPM and then work with bit locker... all them are mirror settings in the EFI settings...

 

I can't even manually initialize the TPM and set a password on my own... if I clear it, then tell it to initialize as soon as I go into windows and open the TPM MMC it tells me a password was set and no idea what it was... try to run bit locker it gives me the failed to communicate with TPM message... manually clear it again try bitlocker with a deactivated and cleared TPM which should initialize it as part of the bitlocker wizard, it says it needs to reboot, ok I reboot do the EFI accept initialize and activate... get to windows boom, can't talk to the TPM again...... same error......

 

I'm getting this same thing on all the systems, even the one that now works was doing the same thing until somehow I got it to work and I can't remember the steps ugh.... I kept activating deactivating clearing initializing it on that one too until it just out of no where worked....

 

Dell is of no help, they say it's a MS issue......... I have no issues with TPM chips on HP systems, on Lenovo thinkpads....... just these new Dell servers...... seems like a dell issue to me? all these systems are using the MS TPM 1.2 driver..... all those other vendor systems are using the same driver....

Yep oem Windows version=Dell issue. 

 

That being said, it sounds like bios of life cycle controller (I really hate that thing...messes up too much crap). 

 

If you are having problems speak to a manager or their manager. Stop dealing with that support desk asap. They obviously can't identify the issue.  If it persists, ask/demand for another server.  

 

  • Like 2
  • 2 weeks later...
On 7/8/2016 at 4:46 PM, sc302 said:

Yep oem Windows version=Dell issue. 

 

That being said, it sounds like bios of life cycle controller (I really hate that thing...messes up too much crap). 

 

If you are having problems speak to a manager or their manager. Stop dealing with that support desk asap. They obviously can't identify the issue.  If it persists, ask/demand for another server.  

 

I'm not sure what is going on exactly, we purchased another R230 to be a new Domain controller, so I tried it on that one also.... same problem..... that is three servers that are doing the same thing...... even took it up to the latest BIOS firmware and no help..... dell's product manuals seem to leave a lot to be desired interms of help..... they keep referencing MS technet articles on how to do this..... but none of that works

 

haven't had much luck still getting anyone at Dell to help, even the next steps up from the primary support just giving me a run around it seems like

 

I so wanted to get off HP hardware and migrate to dell but this is really pushing me the wrong way ugh....

2 hours ago, neufuse said:

I'm not sure what is going on exactly, we purchased another R230 to be a new Domain controller, so I tried it on that one also.... same problem..... that is three servers that are doing the same thing...... even took it up to the latest BIOS firmware and no help..... dell's product manuals seem to leave a lot to be desired interms of help..... they keep referencing MS technet articles on how to do this..... but none of that works

 

haven't had much luck still getting anyone at Dell to help, even the next steps up from the primary support just giving me a run around it seems like

 

I so wanted to get off HP hardware and migrate to dell but this is really pushing me the wrong way ugh....

There are other choices out there :)

On ‎7‎/‎18‎/‎2016 at 3:45 PM, Mindovermaster said:

HP and DELL aren't the only companies with enterprise grade hardware.

aware of this....... I'm just saying we've been down the IBM server, cisco server, hp server and now dell server road, what else out there is enterprise level, I'm not saying there is none, I'm asking for names to look at

  • 1 month later...

Oh what the heck.... I just put in a Dell R530 with TPM 1.2 (brand new system)

 

SAME DARN ISSUES! We just got this server, just set it up went to bitlocker the drives and boom...... same thing.... all firmware is up to the latest.... This can't only be happening to me, this is yet another new dell server with the same issues..... am I just doing something wrong?! I am following dell's own deployment guides for the server to set this up which are not any different then the MS procedures really minus the Dell bios stuff

6 hours ago, Gotenks98 said:

I would say bad batch of motherboards. We had a few systems come in with defective TPMs that would never reset the lock out. Had to replace the motherboard. This was on a brand new system.

3 server class motherboards over the span of 4 months? I must have some bad luck then ;)

 

I have no idea what they did, they appeared to do all the same stuff I did.....

 

1) Disabled the TPM in the system bios settings

2) reenabled it with pre-boot measures

3) cleared anything on the tpm

4) went into windows went to TPM management console, took ownership

5) system rebooted told it to accept the new ownership on boot (UEFI makes you say yes we want this change before it boots to windows)

6) start bitlocker (right here is where we'd get an access denied or could not talk to TPM update your BIOS message), but when they did it mysteriously nope, it went right to where do you want to save your recovery key (which we store them in AD and as files and that worked ok) encryption started, encryption finished..... reboot and it worked fine....

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft admits one of the most crucial Outlook features is currently broken by Sayan Sen Microsoft is making some decent progress when it comes to Windows 11. Recently we have confirmed reports of some rather useful improvements landing in the next version of the OS, 26H2, wherein GPU driver TDR crashes may finally be fixed, plus the company is also allowing users to disable web content on the Search. On the Outlook front though things have not been so rosy. Last month in May we reported several problems affecting basic functionalities on the app. These included a problem where documents would open blank or corrupt themselves. Following that, Quick Steps, a very useful feature, would no longer work correctly, and finally, Microsoft acknowledged a problem wherein images would fail to load up properly inside the email. Microsoft had resolved those bugs later and almost exactly a month after we reported on them, the company has now admitted a new similarly basic issue, this time on Macs. Users recently started noticing that Outlook would no longer display email threads properly as the original message itself was not displayed. An affected user Tsoumpas, C (ngmb) nicely described the problem in a forum post they made on Microsoft's site. They wrote: "Description of the issue: After updating Outlook for Mac [Version 16.110 (26061317)] on 18/6/2026, replying to any email no longer includes the original message in the reply window. Prior to the update, replies correctly contained the original email text below my response. Expected behavior: The original message should be included in the reply, as in previous Outlook versions and according to the configured reply settings. Actual behavior: The reply window contains only a blank composition area (or only my response), with none of the original email text included." Obviously this must be a highly frustrating for users as noted by several in that thread. The post, at the time of writing, has also been upvoted by more than 40 users indicating that is a fairly widespread bug. Thankfully Microsoft seems to have acknowledged the problem right around that time as it opened a new issue on its official website. In the support article, the company recommends switching to Outlook for Mac from the legacy app, where the problem appears to be happening.
    • PotPlayer 260622 by Razvan Serea PotPlayer is an extremely light-weight multimedia player for Windows. It feels like the KMPlayer, but is in active development. Supports almost every available video formats out there. PotPlayer contains internal codecs and there is no need to install codecs manually. Other key features include WebCam/Analog/Digital TV devices support, gapless video playback, DXVA, live broadcasting. Distinctive features of the player is a high quality playback, support for all modern video and audio formats and a built DXVA video codecs. A wide range of subtitles are supported and you are also able to capture audio, video, and screenshots. A comprehensive video and audio player, that also supports TV channels, subtitles and skins. Its been described on the Internet as The KMPlayer redux, and it pretty much is. Daum PotPlayer 260622 (1.7.22963) changelog: Removed Kakao TV Added pause function when navigating via the navigation bar Significantly improved internal stability Fixed an issue where colors appeared strange during RGB24 processing Improved playback for some HTTP streams Improved sync processing for the built-in audio renderer Fixed an issue where certain MP4 files behaved abnormally during playback Download: Daum PotPlayer (64-bit) | 54.7 MB (Freeware) Download: Daum PotPlayer (32-bit) | 61.1 MB View: Daum PotPlayer Home Page | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Tixati 3.44 is out.
    • Speccy 1.34.084 by Razvan Serea Speccy will give you detailed statistics on every piece of hardware in your computer. Including CPU, Motherboard, RAM, Graphics Cards, Hard Disks, Optical Drives, Audio support. Additionally Speccy adds the temperatures of your different components, so you can easily see if there's a problem! Processor brand and model Hard drive size and speed Amount of memory (RAM) Graphics card Operating system At first glance, Speccy may seem like an application for system administrators and power users. It certainly is, but Speccy can also help normal users, in everyday computing life. If you need to add more memory to your system, for example, you can check how many memory slots your computer has and what memory's already installed. Then you can go out and buy the right type of memory to add on or replace what you've already got. Download: Speccy 1.34.084 | 20.5 MB (Freeware) View: Speccy Website | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • ImgDrive 2.2.7 by Razvan Serea ImgDrive is a CD/DVD/BD emulator - a tool that allows you to mount optical disc images by simply clicking on them in Windows Explorer. If you have downloaded an ISO image and want to use it without burning it to a blank disc, ImgDrive is the easiest way to do it. ImgDrive features: One-click mounting of iso, cue, nrg, mds/mdf, ccd, isz images Runs on 32-bit and 64-bit Windows versions Mount ape, flac, m4a, wav, wavpack, tta file as AUDIO CD (16-bit/44.1kHz) Mount a folder as DVD/BD Mount images in command line Does not require rebooting after installation Support up to 7 virtual drives at the same time Support multi session disc image (ccd/mds/nrg) A special portable version is available Translated to more than 10 languages Support File Type: .ccd - CloneCD image files .cue - Cue sheets files of ape/flac/m4a/tta/wav/wv/bin .iso - Standard ISO image files .isz - Compressed ISO image files .nrg - Nero image files .mds - Media descriptor image files ImgDrive 2.2.7 changelog: Added command line parameter to set number of drives Added AACS-Auth support for HD DVD Bumped kernel driver version to 2.2.7 Download: ImgDrive 2.2.7 | 692 KB (Freeware, paid upgrade available) Download: ImgDrive Portable 535 KB View: ImgDrive Home Page | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
  • Recent Achievements

    • Dedicated
      tuben earned a badge
      Dedicated
    • Week One Done
      mnsgroup earned a badge
      Week One Done
    • Conversation Starter
      sumytbe earned a badge
      Conversation Starter
    • One Year In
      B4dM1k3 earned a badge
      One Year In
    • One Year In
      DarkWun earned a badge
      One Year In
  • Popular Contributors

    1. 1
      +primortal
      522
    2. 2
      +Edouard
      199
    3. 3
      PsYcHoKiLLa
      94
    4. 4
      Michael Scrip
      82
    5. 5
      neufuse
      69
  • Tell a friend

    Love Neowin? Tell a friend!