You usually do not install TPM 2.0 in Windows. On many compatible PCs, TPM 2.0 is already available as firmware security technology and only needs to be enabled in UEFI firmware. Intel systems commonly call it Intel PTT; AMD systems commonly call it AMD fTPM, AMD PSP fTPM, or Firmware TPM.
Microsoft does not provide a TPM 2.0 installer that can upgrade a computer from TPM 1.2 to TPM 2.0. Check your current TPM status before changing firmware settings. Windows 11 requires TPM 2.0, and TPM 2.0 is fully supported with UEFI rather than Legacy BIOS or CSM mode.
Check whether TPM 2.0 is already enabled
Before entering UEFI, check Windows. Many PCs already meet the TPM requirement.
Option 1: Use TPM Management
- Press Windows + R.
- Type tpm.msc and press Enter.
- Check the message in the TPM Management window.
| Result | Meaning |
|---|---|
| The TPM is ready for use | Inspect TPM Manufacturer Information. The Specification Version must be 2.0. |
| Compatible TPM cannot be found | TPM may be disabled in UEFI, hidden from Windows, unsupported, or affected by a firmware or driver problem. |
| Specification Version: 1.2 | The PC does not meet Windows 11’s TPM requirement. A Windows driver cannot convert TPM 1.2 into TPM 2.0. |
Option 2: Check Windows Security
- Open Start > Settings.
- Select Privacy & security > Windows Security.
- Open Device security.
- Under Security processor, select Security processor details.
- Check Specification version. It must show 2.0.
If the Security processor section is missing, TPM may be disabled or unavailable.
Crashes, No Sound, or Screen Glitches?
Random freezes, missing sound and display glitches usually trace back to one bad driver. Find and replace yours safely.Free scan · under a minuteWindows Errors? Fix Them Before They Spread
Repair common Windows errors and clear accumulated junk for a smoother, more stable PC - no reinstall needed.Free scan · no reinstall#1 Best Overall
- Compatible with TPM-M R2.0
- Chipset: Infineon SLB9665
- PIN DEFINE:14Pin
- Interface:LPC
- Please check the Pinout of mainboard at the official website and make sure it compatible with the pinout of TPM module before purchasing, thank you.
Option 3: Check with PowerShell
Open PowerShell and run Get-Tpm. The output shows whether Windows detects a TPM and whether it is ready. A TPM that is present but not ready may need firmware configuration or troubleshooting.
Prepare before changing UEFI settings
Changing TPM, boot, or firmware settings can make BitLocker request its recovery key. Complete these checks first:
- Back up important files.
- If BitLocker or Device Encryption is enabled, locate and save the 48-digit BitLocker recovery key. Check your Microsoft account, company account, printouts, or the location where your organization stores recovery keys.
- Press Windows + R, type msinfo32, and press Enter.
- In System Information, check BIOS Mode and Secure Boot State.
BIOS Mode should normally be UEFI. Legacy BIOS and Compatibility Support Module (CSM) configurations do not provide full TPM 2.0 functionality and may prevent Windows 11 eligibility. Microsoft requires UEFI and Secure Boot capability for Windows 11; Secure Boot does not necessarily have to be enabled to meet the requirement, though Microsoft recommends enabling it for stronger security.
Enable TPM 2.0 in UEFI firmware
The exact menu names vary by manufacturer and model. Use the manual for the exact computer or motherboard if a setting is difficult to find.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
- Open Start > Settings > System > Recovery.
- Under Advanced startup, select Restart now.
- After the restart, select Troubleshoot > Advanced options > UEFI Firmware Settings.
- Select Restart to enter UEFI.
- Open a menu named Security, Advanced, or Trusted Computing.
- Enable the TPM-related setting for your platform.
- Save the change and exit UEFI.
Common names include:
| System type | UEFI labels to look for |
|---|---|
| Intel | Intel PTT, Intel Platform Trust Technology, Security Device Support |
| AMD | AMD fTPM, AMD PSP fTPM, Firmware TPM, AMD CPU fTPM |
| Physical TPM module | dTPM, Discrete TPM, TPM Device |
Depending on the firmware, the option may be under Security Device, Security Device Support, TPM State, or Trusted Computing. Enable only the implementation supported by the system. If both firmware TPM and a discrete TPM are present, switching between them can affect BitLocker and other TPM-protected keys.
What if Windows is using Legacy BIOS?
Do not simply switch Legacy Boot or CSM to UEFI. A Windows installation in Legacy mode commonly uses an MBR system disk, while UEFI normally boots from a GPT disk. Changing the firmware mode first can leave Windows unable to start.
Rank #2
- Nuvoton NPCT650
- TCG PC Client Platform TPM Profile (PTP) Specification; Family 2.0 (Trusted Platform Module Library; Family 2.0)
- TCG PC Client Specific TPM Interface Specification (TIS), Version 1.3 (TPM Main Specification; Family 1.2 Revision 116)
- Low Standby Power Consumption
Check the current mode in msinfo32. If it reports Legacy, identify the Windows system disk and validate it with Microsoft’s built-in MBR2GPT.exe tool from an elevated Command Prompt. Microsoft says the tool can validate and convert a supported system disk without deleting its data, but validation can fail if the disk does not meet its requirements.
First list the disks so you can identify the correct disk number:
diskpart
list disk
exit
Replace <diskNumber> with the actual Windows system disk number and validate it:
mbr2gpt /validate /disk:<diskNumber> /allowFullOS
Only continue if validation succeeds:
mbr2gpt /convert /disk:<diskNumber> /allowFullOS
After conversion:
- Restart into UEFI firmware.
- Disable Legacy Boot or CSM.
- Select UEFI boot mode.
- Enable TPM 2.0 using the platform label described above.
- Enable Secure Boot if the system is ready for it.
- Save the settings and restart.
Important: Do not guess the disk number or proceed with a firmware-mode change if validation fails. Back up important files and have your BitLocker recovery key available.
Verify TPM 2.0 after enabling it
Once Windows starts again:
- Press Windows + R.
- Run tpm.msc.
- Confirm that the status says The TPM is ready for use.
- Confirm that Specification Version is 2.0.
You can also run Get-Tpm in PowerShell.
Finally, open PC Health Check, select Check now under the Windows 11 eligibility section, and review the result. Microsoft says Windows Update eligibility information can take up to 24 hours to refresh after a firmware or hardware change; PC Health Check can check eligibility sooner.
If your PC has no TPM option
If UEFI contains no TPM, PTT, fTPM, or Security Device setting:
Rank #3
- Compatible with:TPM2.0(MS-4462)
- Chipset: INFINEON 9670 TPM 2.0
- PIN DEFINE:12-1Pin
- Interface:SPI
- Supports:MSI Intel 400 Series and 500 Series Motherboards,MSI AMD B550 and A520 Series Motherboards,Windows 10 TPM 2.0
- Check the computer or motherboard specifications.
- Install firmware updates supplied by the manufacturer, following its instructions.
- Confirm whether the board supports TPM 2.0 or an approved discrete TPM module.
- Check the exact TPM header, pin layout, and module compatibility before buying hardware.
A generic TPM module is not necessarily compatible. Headers and firmware support differ between motherboards. Many laptops and prebuilt PCs use TPM functionality integrated into the platform, so there may be no user-installable module.
If a discrete module is supported, use one approved for the exact motherboard and firmware. Do not install an arbitrary module alongside an existing firmware TPM. Windows and BitLocker can be affected when the active TPM implementation changes.
Do you need to install a TPM driver?
Normally, no. Once a supported TPM is enabled and visible to Windows, Windows normally initializes it automatically. You generally do not need to create a TPM owner password or manually take ownership.
Use the TPM drivers supplied by Microsoft and Windows Update. A non-Microsoft TPM driver can prevent the standard TPM driver from loading and may make BitLocker report that no TPM is present.
Do these 3 things before closing this tab:
1Scan for outdated or missing drivers - takes under a minute2Clear out junk files and repair common Windows errors3Fix the driver behind crashes, sound loss and screen glitchesDo not use “Clear TPM” to enable TPM 2.0
Clear TPM is a reset operation, not an enablement option. Clearing it resets the TPM and invalidates keys stored inside it. This can affect:
- BitLocker and Device Encryption
- Windows Hello PINs and biometric sign-in
- Certificates
- Applications that use TPM-protected keys
Only clear the TPM when troubleshooting or following specific manufacturer or Microsoft instructions, and after preparing recovery credentials. In Windows Security, the path is Device security > Security processor details > Security processor troubleshooting > Clear TPM.
Rank #4
- TPM 2.0 module for Asus motherboard.
- TPM 2.0 module chip 2.0mm pitch, 2x7P, 14 pin security module
- LPC 14 Pin for AsusTPM chip is better compatible with DDR4 memory module of motherboard, built in support memory type higher than DDR3! Supported states may vary by motherboard specification.
- Note: Don't support laptops and motherboards prior to X99; Don't support DDR3 memory.
- Packing list:1x TPM 2.0 Module for ASUS
Common TPM 2.0 problems
“Compatible TPM cannot be found”
Check that Intel PTT or AMD fTPM is enabled in UEFI. Also check whether the system is using Legacy/CSM mode, whether a firmware update is available, and whether a third-party TPM driver is blocking Microsoft’s standard driver. If the setting is absent, the computer may not have a supported TPM implementation.
TPM shows version 1.2
TPM 1.2 does not satisfy Windows 11’s TPM requirement. A Windows driver cannot upgrade it to TPM 2.0. Any firmware update, replacement, or supported upgrade path is specific to the manufacturer and model.
“TPM is ready for use, with reduced functionality”
This commonly occurs when TPM 2.0 is enabled but Windows is booting in Legacy BIOS mode. Check msinfo32. If the PC supports it, prepare the system disk and move to native UEFI mode rather than changing the boot setting without preparation.
BitLocker asks for a recovery key
This can happen after changing TPM state, UEFI settings, firmware, or boot configuration. Enter the recovery key. Do not clear the TPM as a first response.
Windows Update still says the PC is not eligible
Use PC Health Check to test eligibility, then allow Windows Update up to 24 hours to refresh. If the PC still fails, TPM may not be the only issue. Check CPU support, RAM, storage, UEFI capability, and Secure Boot capability.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.What will not install TPM 2.0
- A downloadable TPM installer or ordinary device driver
- Upgrading TPM 1.2 with a Windows utility
- Clearing the TPM
- Using a registry bypass for Windows 11 requirements
A Windows 11 bypass does not create TPM 2.0 and leaves the installation unsupported if the hardware fails Microsoft’s requirements. The correct solution is to enable a supported firmware or hardware TPM, or replace hardware that cannot provide one.
Best Value
- Product Color: Black
- Width: 0.6"
- Depth: 0.5"
- Additional Information: Interface: SPI Features: TPM IC: Nuvoton NPCT750 TPM Version: TPM 2.0 Pin Dimension: 14-1pin System Requirements: Windows® 10, UEFI OS
- Country of Origin: Vietnam
FAQ
Can I download TPM 2.0 for Windows 11?
No. TPM 2.0 is a hardware- or firmware-based security component, not a downloadable Windows package. Enable Intel PTT, AMD fTPM, or the appropriate TPM setting in UEFI.
How do I know whether my TPM is version 2.0?
Run tpm.msc and check Specification Version, or open Settings > Privacy & security > Windows Security > Device security > Security processor details. The value must be 2.0.
Does every Windows 11 PC need a physical TPM chip?
No. Many Intel systems use firmware TPM through Intel PTT, and many AMD systems use AMD fTPM. A separate physical module is not required when the built-in implementation is supported.
Will enabling TPM delete my files?
Enabling TPM normally does not delete files. However, changing TPM or boot settings can trigger a BitLocker recovery-key prompt, so back up important data and retrieve the recovery key first.
Recommended Free Tools
Should I clear TPM if Windows cannot find it?
No. Clear TPM is a reset function that can invalidate BitLocker, Windows Hello, certificate, and application keys. First check UEFI settings, firmware updates, boot mode, and drivers.
What if my computer only has TPM 1.2?
TPM 1.2 does not meet Windows 11’s TPM requirement. Check the manufacturer’s documentation for a model-specific firmware or hardware upgrade, but a standard Windows driver cannot convert TPM 1.2 to TPM 2.0.
The Bottom Line
For most supported PCs, “installing TPM 2.0” means enabling Intel PTT, AMD fTPM, or a similar setting in UEFI. Verify the result with tpm.msc and confirm Specification Version: 2.0. Back up your files and BitLocker recovery key before changing firmware, and do not clear the TPM unless you understand which keys and sign-in methods will be affected.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.
Free tools Windows power users keep installed
One-click scans. No signup required.

