
it is enabled, activated, owned, fully managed.
Asus infineon trusted platform module windows 10 driver windows#
Windows does not report this failure in its "tpm.msc" module, and not even in Powershell scripts. Link to PCR 7 becomes unavailable, Bitlocker cannot be activated.Īnd I see TPMActivePCRBanks=(REG_DWORD)1 (only PCR 0 available).


The MeasuredBoot logfile contain only the basic info for endorsing only PCR 0 with a weak key, and no other PCR bank can be made to endorse the DRTM policy. My TPM module supports BOTH algorithms, but the automatic endorsement made by windows picks the incorrect one (the 1st available reported by BIOS?). The BIOS settings indicate a configuration for SHA-256 (with the TIS interface). In BIOS settings, and as required for UEFI secure boot with hypervisors, SHA-1 should not be used. instead of: TPMDigestAlgID=(DWORD)0xB (i.e. contains: TPMDigestAlgID=(DWORD)0x4 (i.e.

the registry key: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\IntegrityServices Is that normal that on an activated TPM2.0 (enabled in BIOS settings, running in UEFI secure boot mode).
