iTechGuides is reader-supported. When you buy through links on our site, we may earn an affiliate commission. As an Amazon Associate I earn from qualifying purchases. Learn more
Most Windows PCs do not need a TPM 2.0 module installed inside Windows. TPM 2.0 may already be available as a discrete chip or as firmware built into the processor platform: AMD fTPM or Intel Platform Trust Technology (PTT).
The usual process is to check whether TPM 2.0 is detected, enable it in UEFI firmware if necessary, and then verify it again in Windows. Downloading a generic “TPM 2.0 driver” will not add TPM support to a computer that lacks compatible hardware or firmware.
What Windows 11 requires
Windows 11 requires TPM version 2.0. The PC must also use firmware that is UEFI and capable of Secure Boot. Secure Boot capability is part of the requirement; Secure Boot does not necessarily have to be enabled merely to upgrade, although it is recommended where supported.
Quick wins for a faster PC:
Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →Clear out junk files and repair common Windows errorsFree Scan →TPM support is available in Windows editions including Pro, Enterprise, Pro Education/SE, and Education. TPM detection and enablement are not normally restricted to a special Windows edition.
#1 Best Overall
- Compatible with TPM-M R2.0
- Chipset: Infineon SLB9665
- PIN DEFINE:14Pin
- Interface:LPC
- Please check the Pinout of mainboard at the official website and make sure it compatible with the pinout of TPM module before purchasing, thank you.
Step 1: Check whether TPM 2.0 is already enabled
Start with Windows. If a TPM is already enabled, there is nothing to install.
Check in Windows Security
Windows 10:
- Open Settings.
- Go to Update & Security > Windows Security > Device Security.
- Under Security processor, select Security processor details.
- Find Specification version. It must say 2.0.
Windows 11:
- Open Settings.
- Go to Privacy & security > Windows Security > Device security.
- Select Security processor details.
- Check Specification version and confirm that it is 2.0.
If the Security processor section is missing, the TPM may be disabled in UEFI, hidden from Windows, unsupported, or not detected correctly.
Use the TPM Management Console
- Press Windows key + R.
- Type
tpm.mscexactly. - Select OK.
If the console says “Compatible TPM cannot be found,” do not immediately conclude that the PC has no TPM. The TPM may simply be disabled in firmware.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
If the console reports that the TPM is ready for use, look under TPM Manufacturer Information and check Specification Version. The value must be 2.0.
The TPM Management Console is legacy tooling and has not been actively developed since Windows 10 version 1809. It remains useful for checking status, but Windows normally initializes and takes ownership of a supported TPM automatically.
Check with PowerShell
- Open Windows PowerShell. Administrator privileges are not normally required for this check.
- Run:
Get-Tpm
The command reports whether a TPM is present, ready, enabled, activated, and owned. A TPM that is present but not ready may require a firmware change or troubleshooting rather than a driver installation.
Step 2: Enable TPM 2.0 in UEFI firmware
If Windows cannot find the TPM, enable the relevant setting in the computer’s UEFI setup.
Rank #2
- Nuvoton NPCT650
- TCG PC Client Platform TPM Profile (PTP) Specification; Family 2.0 (Trusted Platform Module Library; Family 2.0)
- TCG PC Client Specific TPM Interface Specification (TIS), Version 1.3 (TPM Main Specification; Family 1.2 Revision 116)
- Low Standby Power Consumption
Enter UEFI from Windows 10
- Open Settings.
- Go to Update & Security > Recovery.
- Under Advanced startup, select Restart now.
- Choose Troubleshoot > Advanced options > UEFI Firmware Settings > Restart.
Enter UEFI from Windows 11
- Open Settings.
- Go to System > Recovery.
- Next to Advanced startup, select Restart now.
- Choose Troubleshoot > Advanced options > UEFI Firmware Settings > Restart.
Some computers do not show the UEFI Firmware Settings option. In that case, restart the PC and press the manufacturer’s firmware key during startup. The key varies by model; common examples include F2, Delete, Esc, or F10. Check the computer or motherboard manufacturer’s documentation for the correct key.
Find the TPM setting
UEFI menus differ considerably. Look under Advanced, Security, or Trusted Computing. The setting may use one of these names:
| Platform | Possible firmware label |
|---|---|
| AMD | AMD fTPM switch, AMD PSP fTPM |
| Intel | Intel PTT, Intel Platform Trust Technology |
| Either platform | Security Device, Security Device Support, TPM State |
- Enable the applicable TPM, fTPM, PTT, or Security Device setting.
- Save the firmware changes and restart the computer.
- Return to Windows and check Security processor details,
tpm.msc, orGet-Tpm.
Do not clear the TPM simply because it is not visible. Clearing is a separate operation and can remove keys used by BitLocker, Windows sign-in PINs, virtual smart cards, and other security features.
Do you need to buy a physical TPM module?
Usually, no. Modern systems commonly provide a firmware TPM through AMD fTPM or Intel PTT. This implementation is supported by Windows and satisfies the TPM 2.0 requirement when the firmware exposes it correctly.
Free tools Windows power users keep installed
One-click scans. No signup required.
A plug-in TPM module is only an option when the motherboard has a compatible TPM header and the motherboard manufacturer supports the exact module. TPM connectors and modules are not universally interchangeable. A module designed for one motherboard may not work on another, even if the connector looks similar.
Before buying anything:
- Identify the exact motherboard or computer model.
- Check the manufacturer’s specifications for TPM 2.0 support.
- Confirm whether the system uses an available firmware TPM.
- If a discrete module is required, buy only the module listed as compatible by the manufacturer.
UEFI, Legacy BIOS, and CSM problems
TPM 2.0 is supported in native UEFI mode, not Legacy BIOS or Compatibility Support Module (CSM) mode. A PC can therefore have TPM 2.0 hardware but still show a reduced-functionality warning or fail to meet Windows 11 checks if it is running in Legacy mode.
Check the current boot mode by opening System Information and looking at BIOS Mode. It should say UEFI.
Rank #3
- Compatible with:TPM2.0(MS-4462)
- Chipset: INFINEON 9670 TPM 2.0
- PIN DEFINE:12-1Pin
- Interface:SPI
- Supports:MSI Intel 400 Series and 500 Series Motherboards,MSI AMD B550 and A520 Series Motherboards,Windows 10 TPM 2.0
Do not simply switch an existing Legacy installation to UEFI. If Windows was installed using an MBR disk and Legacy boot mode, changing firmware settings without preparation can make Windows stop booting. Microsoft provides the MBR2GPT tool to prepare supported installations before changing the boot mode. Back up important files and confirm the correct conversion procedure before making this change.
Recommended Free Tools
If tpm.msc says “The TPM is ready for use, with reduced functionality,” one documented cause is a TPM 2.0 system running in Legacy/MBR mode. Moving to supported native UEFI mode is the appropriate resolution, not repeatedly clearing the TPM.
Common TPM installation and detection failures
“Compatible TPM cannot be found”
Possible causes include a disabled firmware setting, a TPM hidden from the operating system, unsupported or outdated firmware, or a driver problem. Confirm that the system uses a Trusted Computing Group-compliant UEFI implementation and that TPM support is not disabled or hidden in UEFI.
A non-Microsoft TPM driver is installed
A third-party TPM driver can prevent Windows’ default TPM driver from loading. This may cause BitLocker or other software to report that no TPM is present. Use a TPM driver supplied by Microsoft and keep the operating system protected with BitLocker where appropriate.
The management console cannot load after a firmware change
If tpm.msc displays “Cannot load management console,” the TPM may have been disabled or cleared in BIOS/UEFI. If it was cleared, close the console and restart Windows. If it was disabled, enable it again in firmware.
Windows Errors? Fix Them Before They Spread
Repair common Windows errors and clear accumulated junk for a smoother, more stable PC - no reinstall needed.Free scan · no reinstallOutdated Drivers Are Slowing You Down
One free scan finds every outdated or missing driver and matches the right update for your exact hardware.Free scan · exact hardware matchFor affected systems, Microsoft also documents this administrative PowerShell command:
$tpm = gwmi -n rootcimv2securitymicrosofttpm win32_tpm
$tpm.SetPhysicalPresenceRequest(6)
Restart the computer and accept any physical-presence confirmation shown by the firmware. Use this only when the documented error applies; it is not a general TPM installation command.
Rank #4
- TPM 2.0 module for Asus motherboard.
- TPM 2.0 module chip 2.0mm pitch, 2x7P, 14 pin security module
- LPC 14 Pin for AsusTPM chip is better compatible with DDR4 memory module of motherboard, built in support memory type higher than DDR3! Supported states may vary by motherboard specification.
- Note: Don't support laptops and motherboards prior to X99; Don't support DDR3 memory.
- Packing list:1x TPM 2.0 Module for ASUS
TPM initialization fails on a work computer
On a domain-joined Windows 11 PC, Group Policy may require TPM recovery information to be stored in Active Directory Domain Services. If the computer cannot contact a domain controller, initialization can fail. Connect to the corporate network and contact IT rather than changing security settings independently.
The computer has multiple TPM options
Some UEFI implementations let you switch between a firmware TPM and a discrete TPM. Windows does not support casually switching between multiple TPM implementations. Changing the selected TPM can cause detection problems and trigger BitLocker recovery.
Choose one supported TPM implementation and keep it selected. If changing TPMs is unavoidable, back up BitLocker recovery information first and follow the computer manufacturer’s and Microsoft’s instructions. A Windows reinstall may be required in some configurations.
How to clear the TPM safely when troubleshooting
Clearing the TPM is not a way to enable TPM 2.0. It removes TPM-created keys and can make protected data or sign-in methods unavailable.
Before clearing:
- Back up your BitLocker recovery key.
- Confirm that you can sign in using another available method.
- Check whether virtual smart cards or other TPM-dependent credentials are in use.
- Ask IT for authorization if the PC belongs to a company or school.
When clearing is genuinely required, use Windows rather than clearing the chip directly from UEFI:
- Open Windows Security.
- Go to Device security > Security processor details.
- Open Security processor troubleshooting.
- Select Clear TPM.
- Restart and confirm the operation on the firmware screen if prompted.
You can also use TPM management tools where appropriate, but Windows Security is the clearer current path for most users.
The Tool Desk
Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →After enabling TPM: confirm the complete Windows 11 setup
After TPM 2.0 appears in Windows, also verify that the computer is using UEFI and that its firmware is Secure Boot capable. TPM alone does not guarantee Windows 11 compatibility. Processor, memory, storage, and other requirements still apply.
Best Value
- Product Color: Black
- Width: 0.6"
- Depth: 0.5"
- Additional Information: Interface: SPI Features: TPM IC: Nuvoton NPCT750 TPM Version: TPM 2.0 Pin Dimension: 14-1pin System Requirements: Windows® 10, UEFI OS
- Country of Origin: Vietnam
Windows 10 support ended on October 14, 2025. Microsoft no longer provides free Windows Update software updates, technical assistance, or security fixes for Windows 10 after that date. If the PC meets Windows 11 requirements, moving to Windows 11 is preferable to treating TPM as the only upgrade check.
FAQ
Can I install TPM 2.0 with a Windows download?
No. Windows does not install TPM 2.0 like a normal application or driver. The TPM must be provided by a supported discrete chip or firmware implementation such as AMD fTPM or Intel PTT, and it may need to be enabled in UEFI.
How do I know whether my TPM is version 2.0?
Open Windows Security and select Security processor details, run tpm.msc, or use PowerShell with Get-Tpm. In tpm.msc, check Specification Version under TPM Manufacturer Information. It must show 2.0.
Do these 3 things before closing this tab:
1Clear out junk files and repair common Windows errors2Scan for outdated or missing drivers - takes under a minute3Repair Windows errors before they cause bigger problemsWhy does tpm.msc say that a compatible TPM cannot be found?
The TPM may be disabled or hidden in UEFI, the firmware may not expose it correctly, the PC may lack compatible TPM support, or Windows may have a driver problem. Check the UEFI setting before assuming that the hardware is missing.
Is Intel PTT the same as a physical TPM chip?
Intel PTT is a firmware-based TPM implementation rather than a separate plug-in chip. It can provide TPM 2.0 functionality when enabled and supported by the computer’s firmware.
Will clearing the TPM enable TPM 2.0?
No. Clearing removes keys and may affect BitLocker, PINs, virtual smart cards, and other protected credentials. Enable TPM in UEFI instead. Clear it only for a specific troubleshooting or clean-install reason, after backing up recovery information.
Can I switch from Legacy BIOS to UEFI to fix TPM?
Do not change the setting without preparing the Windows installation. A Legacy/MBR installation may fail to boot after switching to UEFI. Use the supported MBR2GPT preparation process, back up your data, and verify the correct steps for the specific installation.
The Bottom Line
Check TPM first with Windows Security, tpm.msc, or Get-Tpm. If it is missing, enter UEFI and enable AMD fTPM, Intel PTT, or the manufacturer’s equivalent security-device setting. You normally do not need to buy or install a physical TPM module. Before changing boot mode or clearing the TPM, protect your data and BitLocker recovery information.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

