Trusted Platform Module - Key Attestation not working

Dave 16 Reputation points
2021-06-23T10:18:45.08+00:00

Dear Community,

I've been on this for several days now and i just can't get it to work. So my hope lies with you guys! :-)

My issue is the following:

  • I have a Intel NUC with a TPM 2.0 device.
  • I try to use Auto-Deployment with Shared Multi-user Device.
  • I imported the HWID.csv with the correct hash into MS Endpoint Manager.

When i startup the computer it goes into OOBE correctly but it stops at ... with error.

After some research it appears to be something with the TPM module.

What i've tried so far:

  • Checked for a new firmware upgrade of the TPM device. There is none.
  • Cleared TPM so many times i can't remember.
  • Bios settings set at Secure Boot
  • Played with secure boot settings, tried ALL possible settings.
  • Did every possible TPM powershell command to fiddle with TPM settings.

The weird part is this. When i go to "Settings - Security - Device Security - Security Processor", it says that storage is Ready but Attestation is 'Not Supported'. But when i go to Powershell and use the command 'Get-TpmSupportedFeature' it says 'Key Attestation'. So which is it? Is it supported or not :-S...

Does anyone have an idea how to proceed on this matter?

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,780 questions
{count} votes

6 answers

Sort by: Most helpful
  1. paxin 0 Reputation points
    2024-05-04T12:24:28.3266667+00:00

    Screenshot 2024-05-04 154042

    Date of reporting problem: 2024-May-4th
    My System:
    Ryzen 7700 - Asus Rog Strix X670 E A Gaming - Crucial 5200 2*32Gb Ram (64Gb Total) - Ryzen iGPU
    **All Drivers and Bios Updated to the latest version

    Windows 11 Pro 23H2 - Fully up to date

    Description of problem:

    TPM security cometimes shows up with Attestation Not Supported and sometimes it disappears altogether in Device Security menu, as if there's no TPM present. This random malfunction causes random stutters while gaming 720p low graphic games.

    Tried solutions that did not work:
    Cleared TPM multiple times from tpm.msc as well as TPM troubleshooting in device desurity as well as bios. All attempts failed to resolve the issue. Aditionally, I reset bios settings, it did not solve the issue.

    My advice: people stay clear from making the mistake of buying AMD and Asus Products as well as Windows 11. I have a decade old Haswell i7 4790 PC on a Midrange Gigabyte Motherboard, it works flawlessly. AMD is very fast, but it fails where it truly matters. AMD is unstable like an experimental product that should never be marketed en masse.

    0 comments No comments