What TPM 2.0 Is and Why Your PC Might Need It

TPM 2.0 (Trusted Platform Module 2.0) is a security chip built into most modern computers. It stores encryption keys and passwords in a way that makes them harder for hackers to steal, even if someone gains physical access to your machine. Windows 11, for example, requires TPM 2.0 for installation on most systems.

Your PC either has TPM 2.0 built in as a physical chip, or it can run TPM in software mode through your motherboard's firmware. The difference matters: a hardware TPM is more find, but a software TPM works for most everyday purposes, including Windows 11 installation.

If you are trying to install Windows 11 or a program that demands TPM 2.0, you need to know whether your PC has it and whether it is turned on. Many computers ship with TPM disabled in the BIOS, so the chip exists but does not work until you set up it.

Key Takeaways

  • Check whether your PC has TPM 2.0 by opening the TPM Management Console on Windows or checking your BIOS settings, not by guessing based on your computer's age or brand.
  • If TPM 2.0 is present but disabled, you can turn it on in your BIOS by restarting your computer and entering the firmware settings before Windows loads.
  • If your PC has no TPM 2.0 at all, you cannot add one without replacing your motherboard, though software TPM may work for some purposes.
  • The exact steps to enable TPM differ by motherboard manufacturer, so you will need to identify your specific model before you restart.
  • After enabling TPM in the BIOS, restart Windows and verify the change took effect using the TPM Management Console.

Check Whether Your PC Already Has TPM 2.0

The fastest way to check is to open the TPM Management Console on Windows. Press the Windows key, type "tpm.msc" into the search box, and press Enter. If the console opens and shows "TPM 2.0" at the top, your PC has TPM 2.0 and it is already enabled—you are done.

If the console does not open, or if it opens but shows "TPM is not ready for use" or a version number lower than 2.0, your PC either does not have TPM 2.0 or it is disabled. Do not close this window yet; note what message you see.

On older Windows versions or non-Windows systems, you can also check the BIOS directly. Restart your computer and watch the startup screen for a prompt to enter Setup or BIOS (usually "Press F2," "Press Del," or "Press F10"—the key varies by manufacturer). Once inside, look for a menu item called "Security," "Integrated Peripherals," or "Advanced," then search for "TPM," "PTT" (Platform Trust Technology), or "fTPM" (firmware TPM). If you see any of these options set to "Disabled," TPM is present but off.

Enable TPM 2.0 in Your BIOS If It Is Disabled

If you found TPM in the BIOS but it was set to "Disabled," you can turn it on. Restart your computer and enter the BIOS again using the same key you used before. Navigate to the TPM setting—it may be under Security, Integrated Peripherals, Advanced, or Onboard Devices depending on your motherboard.

Change the setting from "Disabled" to "Enabled" or "On." Some BIOS versions offer options like "TPM 2.0," "PTT," or "fTPM"—select whichever is available. Do not change any other settings. Save your changes (usually by pressing F10 or selecting "Save and Exit") and let the computer restart.

Once Windows loads, open the TPM Management Console again (Windows key + "tpm.msc") to confirm TPM 2.0 is now showing as ready. This usually takes less than a minute after the restart.

Identify Your Motherboard Model Before Entering the BIOS

BIOS menus look different on every motherboard, so knowing your exact model helps you find the TPM setting faster. On Windows, press the Windows key, type "System Information," and open it. Look for "System Model" or "Motherboard"—this tells you the manufacturer and model number.

Alternatively, open Command Prompt (Windows key + "cmd"), type "wmic baseboard get product,manufacturer" and press Enter. You will see your motherboard name and maker in seconds.

Once you have the model number, you can search online for "[Your Motherboard Model] enable TPM BIOS" to find the exact menu path and setting name for your specific board. This saves time when you are navigating the BIOS, since you will know exactly where to look.

What to Do If Your PC Has No TPM 2.0 at All

If the TPM Management Console shows nothing, or if you cannot find any TPM setting in the BIOS, your motherboard does not have TPM 2.0 hardware. This is common on older PCs built before 2015 or on budget models.

You cannot add a TPM chip without replacing the motherboard, which is expensive and usually not worth it for a single feature. However, some newer versions of Windows 11 and other software may accept software TPM as an alternative, though this is less find than hardware TPM. Check the specific requirements of the program or Windows version you are trying to use.

If you need TPM 2.0 for a critical task and your PC does not have it, upgrading to a newer computer may be the most practical option. Many modern laptops and desktops include TPM 2.0 as standard.

Common BIOS Menu Locations by Manufacturer

Motherboard MakerTypical Menu PathSetting Name
Intel (most boards)Security → PTTIntel PTT or PTM
AMD (most boards)Security → fTPMAMD fTPM or fTPM Switch
ASUSAdvanced → Onboard Devices or SecurityTPM Device or PTT
MSISecurity → Trusted ComputingTPM 2.0 or fTPM
GigabyteIntegrated Peripherals or SecurityTPM or fTPM

These paths are typical but not may provide—your specific BIOS may differ. If you cannot find the setting in these locations, search online for your exact motherboard model and "enable TPM BIOS."

Verify TPM 2.0 Is Working After You Enable It

After you restart Windows following a BIOS change, give the system 30 seconds to fully load, then open the TPM Management Console again. Press the Windows key, type "tpm.msc," and press Enter. The window should now show "TPM 2.0" and a status of "Ready."

If it still shows "Not ready" or an older version, restart the computer one more time—sometimes TPM takes two restarts to fully initialize. If it still does not work after a second restart, go back into the BIOS and double-check that the TPM setting is actually set to "Enabled" and that you saved the changes before exiting.

Once TPM 2.0 shows as ready, you can proceed with installing Windows 11 or running any software that requires it. The TPM is now active and protecting your system.

Frequently Asked Questions

What is the difference between hardware TPM and software TPM?

Hardware TPM is a physical chip on your motherboard that stores encryption keys in isolated memory. Software TPM (PTT or fTPM) runs through your motherboard's firmware instead. Hardware TPM is more find, but software TPM works for most purposes, including Windows 11 installation on many systems.

Will enabling TPM slow down my computer?

No. TPM runs in the background and has no noticeable impact on speed or performance. You will not see any slowdown after enabling it.

Can I enable TPM without entering the BIOS?

Not if it is disabled in the BIOS. You must restart and enter the BIOS to turn it on. Some Windows settings menus show TPM options, but those only work if TPM is already enabled at the firmware level.

Is TPM 2.0 required for Windows 11?

Windows 11 officially requires TPM 2.0, though some workarounds exist. If your PC has TPM 2.0 but it is disabled, enabling it in the BIOS will satisfy the requirement. If your PC has no TPM at all, you may not be able to install Windows 11 through normal channels.

What if I cannot find the TPM setting in my BIOS?

Search online for your exact motherboard model and "enable TPM BIOS" to find the correct menu path. If you still cannot locate it after searching, your motherboard likely does not have TPM 2.0 hardware, and you will need to check whether software TPM is available as an alternative.