Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

You usually do not install TPM 2.0 in Windows. On many compatible PCs, TPM 2.0 is already available as firmware security technology and only needs to be enabled in UEFI firmware. Intel systems commonly call it Intel PTT; AMD systems commonly call it AMD fTPM, AMD PSP fTPM, or Firmware TPM.

Microsoft does not provide a TPM 2.0 installer that can upgrade a computer from TPM 1.2 to TPM 2.0. Check your current TPM status before changing firmware settings. Windows 11 requires TPM 2.0, and TPM 2.0 is fully supported with UEFI rather than Legacy BIOS or CSM mode.

Check whether TPM 2.0 is already enabled

Before entering UEFI, check Windows. Many PCs already meet the TPM requirement.

Option 1: Use TPM Management

  1. Press Windows + R.
  2. Type tpm.msc and press Enter.
  3. Check the message in the TPM Management window.
Result Meaning
The TPM is ready for use Inspect TPM Manufacturer Information. The Specification Version must be 2.0.
Compatible TPM cannot be found TPM may be disabled in UEFI, hidden from Windows, unsupported, or affected by a firmware or driver problem.
Specification Version: 1.2 The PC does not meet Windows 11’s TPM requirement. A Windows driver cannot convert TPM 1.2 into TPM 2.0.

Option 2: Check Windows Security

  1. Open Start > Settings.
  2. Select Privacy & security > Windows Security.
  3. Open Device security.
  4. Under Security processor, select Security processor details.
  5. Check Specification version. It must show 2.0.

If the Security processor section is missing, TPM may be disabled or unavailable.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
#1 Best Overall
Sale
NewHail TPM2.0 Module LPC 14Pin Module with Infineon SLB9665 for ASUS Motherboard Compatible with TPM-M R2.0
  • Compatible with TPM-M R2.0
  • Chipset: Infineon SLB9665
  • PIN DEFINE:14Pin
  • Interface:LPC
  • Please check the Pinout of mainboard at the official website and make sure it compatible with the pinout of TPM module before purchasing, thank you.

Option 3: Check with PowerShell

Open PowerShell and run Get-Tpm. The output shows whether Windows detects a TPM and whether it is ready. A TPM that is present but not ready may need firmware configuration or troubleshooting.

Prepare before changing UEFI settings

Changing TPM, boot, or firmware settings can make BitLocker request its recovery key. Complete these checks first:

  1. Back up important files.
  2. If BitLocker or Device Encryption is enabled, locate and save the 48-digit BitLocker recovery key. Check your Microsoft account, company account, printouts, or the location where your organization stores recovery keys.
  3. Press Windows + R, type msinfo32, and press Enter.
  4. In System Information, check BIOS Mode and Secure Boot State.

BIOS Mode should normally be UEFI. Legacy BIOS and Compatibility Support Module (CSM) configurations do not provide full TPM 2.0 functionality and may prevent Windows 11 eligibility. Microsoft requires UEFI and Secure Boot capability for Windows 11; Secure Boot does not necessarily have to be enabled to meet the requirement, though Microsoft recommends enabling it for stronger security.

Enable TPM 2.0 in UEFI firmware

The exact menu names vary by manufacturer and model. Use the manual for the exact computer or motherboard if a setting is difficult to find.

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
  1. Open Start > Settings > System > Recovery.
  2. Under Advanced startup, select Restart now.
  3. After the restart, select Troubleshoot > Advanced options > UEFI Firmware Settings.
  4. Select Restart to enter UEFI.
  5. Open a menu named Security, Advanced, or Trusted Computing.
  6. Enable the TPM-related setting for your platform.
  7. Save the change and exit UEFI.

Common names include:

System type UEFI labels to look for
Intel Intel PTT, Intel Platform Trust Technology, Security Device Support
AMD AMD fTPM, AMD PSP fTPM, Firmware TPM, AMD CPU fTPM
Physical TPM module dTPM, Discrete TPM, TPM Device

Depending on the firmware, the option may be under Security Device, Security Device Support, TPM State, or Trusted Computing. Enable only the implementation supported by the system. If both firmware TPM and a discrete TPM are present, switching between them can affect BitLocker and other TPM-protected keys.

What if Windows is using Legacy BIOS?

Do not simply switch Legacy Boot or CSM to UEFI. A Windows installation in Legacy mode commonly uses an MBR system disk, while UEFI normally boots from a GPT disk. Changing the firmware mode first can leave Windows unable to start.

Rank #2
Sale
ASRock TPM2-S TPM Module Motherboard (V2.0)
  • Nuvoton NPCT650
  • TCG PC Client Platform TPM Profile (PTP) Specification; Family 2.0 (Trusted Platform Module Library; Family 2.0)
  • TCG PC Client Specific TPM Interface Specification (TIS), Version 1.3 (TPM Main Specification; Family 1.2 Revision 116)
  • Low Standby Power Consumption

Check the current mode in msinfo32. If it reports Legacy, identify the Windows system disk and validate it with Microsoft’s built-in MBR2GPT.exe tool from an elevated Command Prompt. Microsoft says the tool can validate and convert a supported system disk without deleting its data, but validation can fail if the disk does not meet its requirements.

First list the disks so you can identify the correct disk number:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

diskpart
list disk
exit

Replace <diskNumber> with the actual Windows system disk number and validate it:

mbr2gpt /validate /disk:<diskNumber> /allowFullOS

Only continue if validation succeeds:

mbr2gpt /convert /disk:<diskNumber> /allowFullOS

After conversion:

  1. Restart into UEFI firmware.
  2. Disable Legacy Boot or CSM.
  3. Select UEFI boot mode.
  4. Enable TPM 2.0 using the platform label described above.
  5. Enable Secure Boot if the system is ready for it.
  6. Save the settings and restart.

Important: Do not guess the disk number or proceed with a firmware-mode change if validation fails. Back up important files and have your BitLocker recovery key available.

Verify TPM 2.0 after enabling it

Once Windows starts again:

  1. Press Windows + R.
  2. Run tpm.msc.
  3. Confirm that the status says The TPM is ready for use.
  4. Confirm that Specification Version is 2.0.

You can also run Get-Tpm in PowerShell.

Finally, open PC Health Check, select Check now under the Windows 11 eligibility section, and review the result. Microsoft says Windows Update eligibility information can take up to 24 hours to refresh after a firmware or hardware change; PC Health Check can check eligibility sooner.

If your PC has no TPM option

If UEFI contains no TPM, PTT, fTPM, or Security Device setting:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Rank #3
NewHail TPM2.0 Module TPM SPI 12Pin Module with infineon SLB 9670 for MSI Motherboard Compatible with TPM2.0(MS-4462)
  • Compatible with:TPM2.0(MS-4462)
  • Chipset: INFINEON 9670 TPM 2.0
  • PIN DEFINE:12-1Pin
  • Interface:SPI
  • Supports:MSI Intel 400 Series and 500 Series Motherboards,MSI AMD B550 and A520 Series Motherboards,Windows 10 TPM 2.0
  1. Check the computer or motherboard specifications.
  2. Install firmware updates supplied by the manufacturer, following its instructions.
  3. Confirm whether the board supports TPM 2.0 or an approved discrete TPM module.
  4. Check the exact TPM header, pin layout, and module compatibility before buying hardware.

A generic TPM module is not necessarily compatible. Headers and firmware support differ between motherboards. Many laptops and prebuilt PCs use TPM functionality integrated into the platform, so there may be no user-installable module.

If a discrete module is supported, use one approved for the exact motherboard and firmware. Do not install an arbitrary module alongside an existing firmware TPM. Windows and BitLocker can be affected when the active TPM implementation changes.

Do you need to install a TPM driver?

Normally, no. Once a supported TPM is enabled and visible to Windows, Windows normally initializes it automatically. You generally do not need to create a TPM owner password or manually take ownership.

Use the TPM drivers supplied by Microsoft and Windows Update. A non-Microsoft TPM driver can prevent the standard TPM driver from loading and may make BitLocker report that no TPM is present.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Do not use “Clear TPM” to enable TPM 2.0

Clear TPM is a reset operation, not an enablement option. Clearing it resets the TPM and invalidates keys stored inside it. This can affect:

  • BitLocker and Device Encryption
  • Windows Hello PINs and biometric sign-in
  • Certificates
  • Applications that use TPM-protected keys

Only clear the TPM when troubleshooting or following specific manufacturer or Microsoft instructions, and after preparing recovery credentials. In Windows Security, the path is Device security > Security processor details > Security processor troubleshooting > Clear TPM.

Rank #4
Sale
Yeiwenl TPM 2.0 Module with 14 Pin, TPM 2.0 Encryption Security Module for ASUS Motherboard Compatible with Win11
  • TPM 2.0 module for Asus motherboard.
  • TPM 2.0 module chip 2.0mm pitch, 2x7P, 14 pin security module
  • LPC 14 Pin for AsusTPM chip is better compatible with DDR4 memory module of motherboard, built in support memory type higher than DDR3! Supported states may vary by motherboard specification.
  • Note: Don't support laptops and motherboards prior to X99; Don't support DDR3 memory.
  • Packing list:1x TPM 2.0 Module for ASUS

Common TPM 2.0 problems

“Compatible TPM cannot be found”

Check that Intel PTT or AMD fTPM is enabled in UEFI. Also check whether the system is using Legacy/CSM mode, whether a firmware update is available, and whether a third-party TPM driver is blocking Microsoft’s standard driver. If the setting is absent, the computer may not have a supported TPM implementation.

TPM shows version 1.2

TPM 1.2 does not satisfy Windows 11’s TPM requirement. A Windows driver cannot upgrade it to TPM 2.0. Any firmware update, replacement, or supported upgrade path is specific to the manufacturer and model.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

“TPM is ready for use, with reduced functionality”

This commonly occurs when TPM 2.0 is enabled but Windows is booting in Legacy BIOS mode. Check msinfo32. If the PC supports it, prepare the system disk and move to native UEFI mode rather than changing the boot setting without preparation.

BitLocker asks for a recovery key

This can happen after changing TPM state, UEFI settings, firmware, or boot configuration. Enter the recovery key. Do not clear the TPM as a first response.

Windows Update still says the PC is not eligible

Use PC Health Check to test eligibility, then allow Windows Update up to 24 hours to refresh. If the PC still fails, TPM may not be the only issue. Check CPU support, RAM, storage, UEFI capability, and Secure Boot capability.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

What will not install TPM 2.0

  • A downloadable TPM installer or ordinary device driver
  • Upgrading TPM 1.2 with a Windows utility
  • Clearing the TPM
  • Using a registry bypass for Windows 11 requirements

A Windows 11 bypass does not create TPM 2.0 and leaves the installation unsupported if the hardware fails Microsoft’s requirements. The correct solution is to enable a supported firmware or hardware TPM, or replace hardware that cannot provide one.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Best Value
Asus TPM-SPI Trusted Platform Module (TPM)
  • Product Color: Black
  • Width: 0.6"
  • Depth: 0.5"
  • Additional Information: Interface: SPI Features: TPM IC: Nuvoton NPCT750 TPM Version: TPM 2.0 Pin Dimension: 14-1pin System Requirements: Windows® 10, UEFI OS
  • Country of Origin: Vietnam

FAQ

Can I download TPM 2.0 for Windows 11?

No. TPM 2.0 is a hardware- or firmware-based security component, not a downloadable Windows package. Enable Intel PTT, AMD fTPM, or the appropriate TPM setting in UEFI.

How do I know whether my TPM is version 2.0?

Run tpm.msc and check Specification Version, or open Settings > Privacy & security > Windows Security > Device security > Security processor details. The value must be 2.0.

Does every Windows 11 PC need a physical TPM chip?

No. Many Intel systems use firmware TPM through Intel PTT, and many AMD systems use AMD fTPM. A separate physical module is not required when the built-in implementation is supported.

Will enabling TPM delete my files?

Enabling TPM normally does not delete files. However, changing TPM or boot settings can trigger a BitLocker recovery-key prompt, so back up important data and retrieve the recovery key first.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Should I clear TPM if Windows cannot find it?

No. Clear TPM is a reset function that can invalidate BitLocker, Windows Hello, certificate, and application keys. First check UEFI settings, firmware updates, boot mode, and drivers.

What if my computer only has TPM 1.2?

TPM 1.2 does not meet Windows 11’s TPM requirement. Check the manufacturer’s documentation for a model-specific firmware or hardware upgrade, but a standard Windows driver cannot convert TPM 1.2 to TPM 2.0.

The Bottom Line

For most supported PCs, “installing TPM 2.0” means enabling Intel PTT, AMD fTPM, or a similar setting in UEFI. Verify the result with tpm.msc and confirm Specification Version: 2.0. Back up your files and BitLocker recovery key before changing firmware, and do not clear the TPM unless you understand which keys and sign-in methods will be affected.

Quick Recap

SaleBestseller No. 1
NewHail TPM2.0 Module LPC 14Pin Module with Infineon SLB9665 for ASUS Motherboard Compatible with TPM-M R2.0
NewHail TPM2.0 Module LPC 14Pin Module with Infineon SLB9665 for ASUS Motherboard Compatible with TPM-M R2.0
Compatible with TPM-M R2.0; Chipset: Infineon SLB9665; PIN DEFINE:14Pin; Interface:LPC
$19.99
SaleBestseller No. 2
ASRock TPM2-S TPM Module Motherboard (V2.0)
ASRock TPM2-S TPM Module Motherboard (V2.0)
Nuvoton NPCT650; Low Standby Power Consumption
$24.99
Bestseller No. 3
NewHail TPM2.0 Module TPM SPI 12Pin Module with infineon SLB 9670 for MSI Motherboard Compatible with TPM2.0(MS-4462)
NewHail TPM2.0 Module TPM SPI 12Pin Module with infineon SLB 9670 for MSI Motherboard Compatible with TPM2.0(MS-4462)
Compatible with:TPM2.0(MS-4462); Chipset: INFINEON 9670 TPM 2.0; PIN DEFINE:12-1Pin; Interface:SPI
$24.99
SaleBestseller No. 4
Yeiwenl TPM 2.0 Module with 14 Pin, TPM 2.0 Encryption Security Module for ASUS Motherboard Compatible with Win11
Yeiwenl TPM 2.0 Module with 14 Pin, TPM 2.0 Encryption Security Module for ASUS Motherboard Compatible with Win11
TPM 2.0 module for Asus motherboard.; TPM 2.0 module chip 2.0mm pitch, 2x7P, 14 pin security module
$19.99
Bestseller No. 5
Asus TPM-SPI Trusted Platform Module (TPM)
Asus TPM-SPI Trusted Platform Module (TPM)
Product Color: Black; Width: 0.6"; Depth: 0.5"; Country of Origin: Vietnam
$33.00

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Free tools Windows power users keep installed

One-click scans. No signup required.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.