No TPM? No Windows 11 for you!


Recommended Posts

55 minutes ago, Good Bot, Bad Bot said:

WTF? My AMD FX-8320 is not supported? Windows can't even read my TPM state. I have a Gigabyte GA-990FXA-UD3 R5 (rev. 1.0) systemboard and no secure boot options I can see. I have tried setting Windows 8 for OS type and disabling CSM but no luck.

 

The board was a good deal at the time but there has been a total of one BIOS update for it. 🙄

 

Anyone with suggestions would be welcome.

Yeah. Upgrade. 

6 hours ago, PsYcHoKiLLa said:

From your motherboard's manual


image.png.6637721045cb3314d54b0e0c5fca34af.png
 

I've got a i7 6700k, same Asus BIOS but that specific part of it is nowhere to be found.  And doing some searches online I can't find out if my CPU has PTT at all or not.   Since the options aren't there I'm guessing no, so I ordered a TPM chip in the end.

5 hours ago, ManMountain said:

A lot of focus on TPM 2.0, but not so much on the CPU's that are not supported in Windows 11.  

 

AMD supported CPU

Intel supported CPU

 

 

I think that list is more for anyone making/supporting systems at a retail/business level.  Older CPUs should run 11 just fine and I expect that list will grow over time.

  • Like 1

Found fTPM in the UEFI for my ASUS ROG STRIX Z390-H GAMING.  Buried under Advance settings - PCH-FW Configuration - TPM Device Selection - select Firmware TPM - save and reboot.  Passed the PC health check!

 

 

While my main desktop is compatible, I have two other desktops (and about 6 or 7 other lesser used systems) that aren't event close. One is a 4770k on an Asus ROG Maximus VI Gene and the other a 4790k Asus ROG Maximus VII Gene. Both have 32gb ram, 1TB SSDs and 2070s. Neither bios has anything even close to Intel PTT although even it it did, the CPU's themselves aren't on the list (or generationally close) so that's that.

 

One of these is my wife's main desktop (the 4790k) and she really likes how Win 11 looks so it appears that  Microsoft and PC builder consortium (Dell, HP, Lenovo) have won this round and I'll have to update her CPU/MBoard/Ram later this year. 

6 hours ago, Biscuits Brown said:

While my main desktop is compatible, I have two other desktops (and about 6 or 7 other lesser used systems) that aren't event close. One is a 4770k on an Asus ROG Maximus VI Gene and the other a 4790k Asus ROG Maximus VII Gene. Both have 32gb ram, 1TB SSDs and 2070s. Neither bios has anything even close to Intel PTT although even it it did, the CPU's themselves aren't on the list (or generationally close) so that's that.

 

One of these is my wife's main desktop (the 4790k) and she really likes how Win 11 looks so it appears that  Microsoft and PC builder consortium (Dell, HP, Lenovo) have won this round and I'll have to update her CPU/MBoard/Ram later this year. 

I'm in the same boat but with a newer 6700k but no PTT in the BIOS anywhere.  Asus couldn't be bothered to add it in I guess?

I found out I'm not compatible because of my CPU (too old), if you want to check yours :

Supported Intel Processors (Anything older than 8000 series not supported)

Supported AMD Processors

So someone posted that intels PTT (fTPM) needs CPUs with vPro support.  If that's the case then that would explain why my 6700k doesn't show any options for PTT in the BIOS.  Also why 7000 series CPUs aren't supported either because I just checked and the 7700k doesn't have vPro either.    

 

Oh well, I'll just stick with Windows 10  or see what happens with 11 later.  I still think you'll be able to install it just "unsupported" and a "at your own risk" type deal.   This system is 6yo though I've upgraded the GPU once to a 1070 so it's solid for my gaming needs.

 

It's looking like I'll have to retire the old i7 920 though, mostly because I want something that takes up less space than the mid-tower it has, it can still do it's task without issue though.

Hello,

 

Hypothetically speaking, parts of a motherboard design layout could be re-used to create multiple form-factors (ATX and mATX for example) or used across several chipsets (value-end to HEDT) and the manufacturer may have left the connector in place by accident. 

 

I would also wonder if the cost of removing the module header would be more than leaving it in place.  Motherboard manufacturing seems pretty automated, though, so the cost would be in the time and labor to reset manufacturing, not the costs of the pins and the shroud. 


Another possibility might be to provide support for a different type of TPM chip (e.g., something mandated by a government) that operates differently than the embedded type.

Anyways, those are just some reasons I came up with just off the top of my head.  I am not a crypto engineer, though, I do not know how likely any of these scenarios I mentioned are possible.

Regards,

Aryeh Goretsky

 

  

On 24/06/2021 at 14:44, Steven P. said:

GIGABYTE_GC_TPM2_0_S@@gzzg37.jpg

 

I don't know, tell me why a motherboard would have a TPM 2.0 Module header if the board only supports CPUs where this is already built in?

 

Apparently Windows uses the TPM for a lot more features than BitLocker, Windows Hello, Secure Boot. But these are all enterprise features mostly: https://docs.microsoft.com/en-us/windows/security/information-protection/tpm/tpm-recommendations

Interestingly if you read Microsoft's Minimum Hardware documentation for ecosystem partners, this states: "Upon approval from Microsoft, OEM systems for special purpose commercial systems, custom order, and customer systems with a custom image are not required to ship with a TPM support enabled".

 

So it seems like deploying Windows 11 with MDT (Microsoft Deployment Toolkit) to unsupported hardware is a scenario Windows 11 would work fine in, even if Microsoft are aiming for this to be the exception and not the norm.

 

With that in mind this should mean that Windows 11 will continue to work fine in the future once you bypass the installer check, since there will be 'officially supported' Windows 11 scenarios with no TPM.

 

One can hope anyway. Clearly security is the focus here, however given Windows 10 can work perfectly on Core2Duo hardware dating back to 2006, it seems a big leap to drop support for anything Intel before Coffee Lake (2017) and AMD before Ryzen 2000 (2018). For what the majority of people use a computer for these days a 10+ year old system with an SSD can still offer a really good experience.

5 hours ago, George P said:

So someone posted that intels PTT (fTPM) needs CPUs with vPro support.  If that's the case then that would explain why my 6700k doesn't show any options for PTT in the BIOS.  Also why 7000 series CPUs aren't supported either because I just checked and the 7700k doesn't have vPro either.    

 

Oh well, I'll just stick with Windows 10  or see what happens with 11 later.  I still think you'll be able to install it just "unsupported" and a "at your own risk" type deal.   This system is 6yo though I've upgraded the GPU once to a 1070 so it's solid for my gaming needs.

 

It's looking like I'll have to retire the old i7 920 though, mostly because I want something that takes up less space than the mid-tower it has, it can still do it's task without issue though.

vPro? I use PTT and I dont have vPro enabled, the CPU's are "eligible" but not using it

17 minutes ago, neufuse said:

vPro? I use PTT and I dont have vPro enabled, the CPU's are "eligible" but not using it

Well then it's just Asus not adding the option for my specific z170-a motherboard because it's not there anywhere.   And it's looking like a pain to get their TPM 2.0 chip at this point.

10 minutes ago, George P said:

Well then it's just Asus not adding the option for my specific z170-a motherboard because it's not there anywhere.   And it's looking like a pain to get their TPM 2.0 chip at this point.

Is there a "PCH-FW Configuration" entry in the "Advanced" section of the UEFI? The TPM setting for another asus Z170 model is there.

 

What's the BIOS version?

 

If it's completely missing, maybe try contacting asus support.

1 minute ago, eddman said:

Is there a "PCH-FW Configuration" entry in the "Advanced" section of the UEFI? The TPM setting for another asus Z170 model is there.

 

What's the BIOS version?

The BIOS is the newest one listed on their site for my board.

 

Z170-A BIOS 3802

 

As far as the PCH-FW Configuration option, I've looked and didn't see it though for the hell of it I could look again I guess.

28 minutes ago, George P said:

The BIOS is the newest one listed on their site for my board.

 

Z170-A BIOS 3802

 

As far as the PCH-FW Configuration option, I've looked and didn't see it though for the hell of it I could look again I guess.

It took me forever to find the PTT config on my ASUS board when I got it... wish they made stuff more clear for security settings my old MSI board flat out called it TPM Security made it easy

6 minutes ago, neufuse said:

It took me forever to find the PTT config on my ASUS board when I got it... wish they made stuff more clear for security settings my old MSI board flat out called it TPM Security made it easy

Yeah, so I dove back into bios to try and see one last time but nothing.  I just don't have PTT, so oh well.  I either get lucky and find a TPM chip to put in, or wait and see what happens and if you can install without TPM after you agree to some warning  they give you.  Otherwise I'll just stay on Windows 10 till I'm ready to build a new system.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Build your own business with a Sellful lifetime plan now at 76% off by Steven Parker Today's deal from our Apps + Software section of the Neowin Deals store, lets you save 76% off Sellful: ERP Agency Plan lifetime deal. AI-Powered Software and Website Builder for Agencies Ever feel like a client’s needs simply can’t be met on a single platform? With Sellful, it’s all here, and all white labeled. Build anything from simple websites to complex workflows to automate your business in a few clicks. Manage everything from email & social media marketing, to payroll & invoicing. It’s got a white label website builder, online shop, CRM, ERP, marketing, memberships, invoicing, appointments, online courses, project manager, and point of sale functions. Sellful is the only white label platform in the world that is truly all in one, combining all aspects of your business in one place no matter the industry. What can you do with Sellful? Automatically generate amazing websites, funnels, & landing pages in seconds using AI Sell physical & digital products online Keep track of customers with native CRM Automate communication & outreach using AI Manage all aspects of your business in one place Collect emails & phone numbers via forms on your website, then send newsletters to customers with important updates, sales, and discounts Build membership programs with various levels of access for your customers Receive payments from your clients using any number of payment gateways including Paypal, Stripe, Authorize.net, Square & more Have your clients book appointments for services & meetings quickly Build powerful & robust online courses to sell to or instruct people Build communities on Sellful social networking sites with activity feeds, private messaging, & groups See & adjust a visual version of everything going on within your client projects Sync your online shop’s inventory with multiple offline store locations & registers Manage inventory, coupons, & sales through Sellful’s native POS app on your computer Manage employee recruitment, time clocks, payroll & leave requests Automate help desk tasks such as support ticket creation Communicate with your team on multiple chat channels Keep an accounting of your income & expenses Automate billing & website creation for your marketing agency What's in the ERP Agency Plan: White Label Unlimited 10 Sites/Sub Accounts Included 100% White Label For Your Brand Or Your Client's Brand Website Builder Sales Funnel Builder Online Shop Automation Builder CRM & Pipeline Management Email Marketing SMS Marketing Reputation Management 2 Way Communication (Email, SMS & Phone) Appointment Scheduler Memberships Subscriptions Forms, Surveys & Polls Client Portal AI Assistant & Chatbot Social Media Automation Legally Binding Contract Signing Project Management System Online Courses (LMS) Invoicing External CRM Connect Class Attendance & Event Booking Restaurant Builder Support Ticket System Team Chat AliExpress Drop Shipping Accounting Advanced Affiliate Program Community Builder Point Of Sale HR Suite (HR, Time Clock, Payroll & ATS) 5000+ App Integrations 20+ Payment Gateways (No Fees From Us) Custom Mobile App Agency Billing System Setup Wizard Builder Content Cloner Tool Digital Marketing Courses Actionable Marketing PDF Guides Unlimited Contacts Per Site/Sub Account Unlimited Pages Per Site/Sub Account Unlimited Blog Posts Per Site/Sub Account Unlimited Users Per Site/Sub Account Unlimited Products Per Site/Sub Account Unlimited Visitors Per Site/Sub Account 100 Gigs Of File Storage 50,000 Free Email Sends* Unlimited Domain Names Per Site/Sub Account *Email sending can be purchased in packs of 10,000 for $10/Month. You can also add your own external sending service to send without limits. Email sends are shared in a pool throughout all websites and email addresses on the account. System emails are always free. Good to know Length of access: lifetime Redemption deadline: redeem your code within 30 days of purchase Updates included Sellful: ERP Agency Plan (Lifetime) normally costs $1,497 but it can be yours for only $349.97, that's a saving of $1,147.03 (76%) off! For terms, and more details click the link below. Get a lifetime plan to Sellful at 76% off (was $1,497) Although priced in U.S. dollars, this deal is available for digital purchase worldwide. Support queries If you have queries or need support for any of the Neowin Deals, please use the contact form here. Neowin Deals are managed and sold by StackCommerce who represent Neowin on an affiliate basis. Why we post these deals We post these because we earn commission on each sale so as not to rely solely on advertising, which many of our readers block. It all helps toward paying staff reporters, servers and hosting costs. So for those that keep moaning and complaining, be thankful we're still online for you to even do that. Other ways to support Neowin Whitelist Neowin by not blocking our ads Create a free member account to see fewer ads Make a donation to support our day to day running costs Subscribe to Neowin - for $14 a year, or $28 a year for an ad-free experience Disclosure: Neowin benefits from revenue of each sale made through our branded deals site powered by StackCommerce.
    • No its not, there are ton of Youtube videos to get you started, what do you think people did before AI existed?
    • Read this in Humor Simpson 's voice, "Out of my way Moe".
    • You still can, its just under the Transform flyout for WordArt now
  • Recent Achievements

    • One Year In
      B4dM1k3 earned a badge
      One Year In
    • One Year In
      DarkWun earned a badge
      One Year In
    • Dedicated
      Almohandis earned a badge
      Dedicated
    • Dedicated
      JuvenileDelinquent earned a badge
      Dedicated
    • First Post
      DrWankel earned a badge
      First Post
  • Popular Contributors

    1. 1
      +primortal
      506
    2. 2
      +Edouard
      181
    3. 3
      PsYcHoKiLLa
      86
    4. 4
      Michael Scrip
      78
    5. 5
      Steven P.
      76
  • Tell a friend

    Love Neowin? Tell a friend!