TPM 2.0 Not Ready in Windows 11: 5 Proven Fixes to Restore Security Features

Why the TPM Device Is Not Ready Error Occurs in Windows 11

The “TPM Device Is Not Ready” error in Windows 11 typically signals that the Trusted Platform Module (TPM) 2.0 is disabled, improperly initialized, or experiencing driver/firmware issues. Since TPM 2.0 is a mandatory security requirement for Windows 11, resolving this error is critical for system stability and access to features like BitLocker, Secure Boot, and Windows Hello.

This error may appear due to:

  • TPM being disabled in BIOS/UEFI settings
  • Outdated or corrupted TPM drivers
  • Firmware incompatibility or missing updates
  • TPM requiring a reset or re-provisioning
  • Legacy BIOS mode instead of UEFI with Secure Boot enabled

How to Fix the TPM Device Is Not Ready Error

1. Verify TPM Status in Windows

Before making changes, confirm whether TPM is detected and its current state:

  • Using TPM Management Console: Press Win + R, type tpm.msc, and hit Enter. If the status reads “The TPM is not ready for use” or “Compatible TPM cannot be found”, proceed to the next steps.
  • Via Windows Security: Open Windows Security > Device security > Security processor details. If the TPM section is missing, the module may be disabled or unsupported.

2. Enable TPM in BIOS/UEFI

Most modern systems have TPM 2.0 hardware, but it may be disabled by default. To enable it:

  1. Restart the PC and enter BIOS/UEFI by pressing the designated key (e.g., F2, F10, Del, or Esc) during boot.
  2. Navigate to Security, Advanced, or Trusted Computing settings.
  3. Locate the TPM option, which may appear as:
    • TPM 2.0 (generic)
    • Intel Platform Trust Technology (PTT) (Intel CPUs)
    • AMD fTPM (AMD CPUs)
  4. Set the option to Enabled, save changes, and exit. The system will reboot.

Note: Windows 11 requires UEFI mode with Secure Boot enabled. If your system uses Legacy BIOS, convert the disk to GPT and switch to UEFI in BIOS before enabling Secure Boot.

3. Clear the TPM to Reset Security Keys

If TPM is detected but still not ready, clearing it can resolve initialization issues. Warning: Back up BitLocker recovery keys first, as clearing TPM may lock encrypted drives.

Method 1: TPM Management Console

  1. Open tpm.msc via Win + R.
  2. In the Actions pane, click Clear TPM.
  3. Restart the PC and follow on-screen prompts to confirm.

Method 2: Windows Security

  1. Go to Windows Security > Device security > Security processor details.
  2. Click Security processor troubleshooting > Clear TPM.
  3. Select Clear and restart and follow instructions.

4. Update TPM Drivers

Outdated drivers can cause TPM malfunctions. To update:

  1. Open Device Manager (right-click Start > Device Manager).
  2. Expand Security devices and right-click Trusted Platform Module 2.0.
  3. Select Update driver > Search automatically for drivers.
  4. If no updates are found, check Windows Update > Optional updates for TPM driver updates.

5. Update BIOS/UEFI Firmware

If TPM options are missing or the error persists, a BIOS/UEFI update may resolve compatibility issues:

  1. Identify your motherboard model via msinfo32 (search for BaseBoard Manufacturer/Model).
  2. Download the latest BIOS firmware from the manufacturer’s website (e.g., ASUS, MSI, Dell, HP).
  3. Follow the manufacturer’s instructions to update BIOS. Caution: Incorrect updates can brick your system.

Final Checks

After applying fixes, verify TPM functionality by:

  • Reopening tpm.msc to confirm the status reads “The TPM is ready for use”.
  • Ensuring Windows Security shows TPM 2.0 as active.
  • Testing BitLocker or other TPM-dependent features.

If the issue remains, consult your PC manufacturer’s support or consider hardware diagnostics, as the TPM chip itself may be faulty.

Leave a Reply

Your email address will not be published. Required fields are marked *

Close filters
Products Search