Check Your System Settings and Try Again

Windows 11 update on a laptop

If you lot saw that your PC is not uniform with Windows 11, it may be because your system doesn't have two security settings turned on, Secure Boot and TPM 2.0. Here'south how to do information technology.

Sarah Tew/CNET

Microsoft started a phased rollout of Windows xi earlier this twelvemonth with a preview version of its flagship Os. But if y'all're trying to use the earliest version of the software on your existing PC, you lot might come across some speed bumps due to the system requirements for the new operating system. (Here's how to download Windows 11 and how to create a Windows 11 install drive.)

If you've tried installing Windows eleven Insider Preview or using theMicrosoft PC Health Bank check app and were greeted with an error message reading, "This PC tin can't run Windows 11," your organization might not have ii essential security settings turned on: Secure Boot and TPM 2.0. (Here are two other things you must do before downloading Windows 11.) Many modern computers and processing fries from Intel and AMD have these features built in, and both are at present required for all machines running Windows xi.

Once you've downloaded the PC Health Check app, yous can click Check Now to brainstorm the scanning procedure. The app will tell y'all whether your computer will support Windows 11, or what information technology's missing, and y'all tin click See All Results for more than information.

If your automobile is new plenty to support both, enabling TPM (short for Trusted Platform Module) and Secure Boot is often quite like shooting fish in a barrel. No special skills are needed, and you'll merely be clicking through menus. If yous've never heard the words "BIOS carte" y'all might feel out of your element, but don't be intimidated. With a trivial patience, whatsoever starting time-timer tin practice this.

Here's what you need to know.

Read more:Windows 11 review: Microsoft's Os upgrade is subtle, but nosotros similar that

What are TPM and Secure Boot?

TPM microchips are small-scale devices known as secure cryptoprocessors. Some TPMs are virtual or firmware varieties but, as a chip, a TPM is attached to your motherboard during the build and designed to enhance hardware security during figurer startup. A TPM has been a mandatory piece of tech on Windows machines since 2016, so machines older than this may non have the necessary hardware or firmware. Previously, Microsoft required original equipment manufacturers of all models built to run Windows x to ensure that the machines were TPM ane.2-capable. TPM 2.0 is the well-nigh recent version required.

TPMs are controversial among security specialists and governments. An updated and enabled TPM is a strong preventative against firmware attacks, which have risen steadily and drawn Microsoft'south attention. However, information technology too allows remote attestation (authorized parties can come across when you make certain changes to your computer) and may restrict the kinds of software your machine is allowed to run. TPM-equipped machines more often than not aren't shipped in countries where western encryption is banned. China uses its state-regulated alternative, TCM. In Russian federation, TPM use is merely immune with permission from the authorities.

Secure Boot is a feature in your reckoner's software that controls which operating systems are immune to be agile on the automobile. It's both a good and bad matter for a Windows machine. On the one paw, it can foreclose certain classes of invasive malware from taking over your motorcar and is a cadre defense against ransomware.

On the other hand, it can preclude you from being able to install a 2d operating system on your auto, giving you 2 to choose from when you first start upward your computer. And so, if you wanted to experiment with Linux operating systems, for instance, Secure Boot could terminate you. Secure Kick also plays a role in preventing Windows pirating.

windows-11-laptops

TPM and Secure Kick could be the cardinal to getting your device to run Windows 11.

Microsoft

A few words of caution

Now that you know about the secure technologies you'll exist using, at that place are a few things you lot should keep in mind before yous swoop into fixing the result on your ain.

  • Microsoft confirmed in that location are four types of problems that might accept given you a "This PC tin can't run Windows 11" error message if yous used its PC Wellness Bank check tool. If you are missing the hardware or firmware necessary for Windows 11, the instructions beneath won't aid -- you'll need to buy a new device to run the Os.
  • Keep in mind that these instructions are written equally broadly as possible. That's because Windows machines vary so much that information technology's not feasible to cover all the possible means to enable TPM and Secure Kicking across every device. For the most office, though, the procedure is similar enough across machines that you should be able to use the instructions equally a guide and, where your computer differs, still identify the equivalent menu or label in your own organisation.
  • If your machine is still covered past a warranty, always speak with the manufacturer beginning before doing anything that could potentially void it. If your machine is owned and maintained by your visitor or school, information technology may have a unique security configuration that your IT staff will need to handle. It's also a adept idea to arrive contact with your local PC repair shop; having a qualified professional on standby is the best way to go back on rail if y'all get turned around or run across roadblocks.
  • Always dorsum up your important files before making any big changes to your computer. Ever. Just exercise it. Y'all'll give thanks us afterwards.
  • If this is your first time working in a BIOS menu, stick close to the instructions and don't veer as well far from the beaten path. We're on a very unproblematic mission here, and nix I recommend beneath will do whatever damage to your car or information, simply changing firmware settings in your BIOS carte tin can take a wide-ranging impact. There are few guardrails here, and you can lose a lot of important information very fast. Some mistakes can be permanent and, in nigh cases, there won't be any polite pop-ups gently asking whether y'all're certain you want to make those mistakes.

You should definitely look around, explore your options and familiarize yourself with what's under the hood, but avoid changing any settings or saving any of those changes unless you lot know specifically what's going to happen when yous exercise.

microsoft-windows-11-announcements-june-24-2021-cnet-023.png

New Windows 11 features include Microsoft Teams integration.

Microsoft/Screenshot by Sarah Tew/CNET

Is my device capable of TPM 2.0 and Secure Kick?

If the PC Wellness Checker suggested that TPM isn't enabled, you should kickoff find out whether that's an authentic diagnosis. Here's how.

1. From your desktop, printing theWindows key next to the spacebar + R. This volition bring up a dialog box.

ii. In the text field of the box, type tpm.msc and hit Enter. This should bring up a new window labelled "TPM Direction on Local Computer."

three. Click Condition. If yous run into a bulletin that says "The TPM is ready for apply" then the PC Health Checker has misdiagnosed y'all, and the steps beneath won't help. At this point, at that place are several reasons y'all might be receiving the wrong error message from Microsoft, so your best bet is to go a professional person to take a look at your car.

If you lot don't see that message, and instead see "Compatible TPM cannot be found" or another message indicating the TPM may be disabled, follow the next steps.

At present playing: Watch this: How to enable TPM 2.0 and Secure Boot to install Windows...

six:39

How practise I enable TPM 2.0?

You're going to need to become to your BIOS menu so you can get to your TPM switch, and there are two ways to do that. We'll comprehend both here. The first is for much newer PCs, the second method for those a few years older. Regardless of which you cull, though, you're going to need to restart your motorcar. So save whatsoever work and shut any open up windows or programs before proceeding.

From Windows 10'southward Offset menu

If you lot have a newer machine running Windows 10, your boot time may be too fast for you to try the traditional method of hit a particular central to get to your BIOS carte before Windows can fully load. Here's how to get to it from inside your normal desktop.

how-to-tech-tips-logo-badge.png
Brett Pearce/CNET

i. Offset your reckoner commonly and open the Get-go card by clicking on that Windows button on the far left bottom of your screen. Click on the gear-shaped Settings icon on the left side of the bill of fare.

2. Within the Settings window that appears, click Update & Security. On the left-side pane that appears, click Recovery. Under the Advanced startup header, click Restart at present.

Your computer volition immediately restart, and instead of restarting and bringing you to your normal desktop screen, yous'll be brought to a blue screen with a few options.

3. Click Troubleshoot, followed by Advanced options, followed past UEFI Firmware Settings.

Your device will restart again.

From here, go to Step ii in the section below and follow the remaining steps.

From start-up

You're going to need to motility very quickly for Pace i. You'll only take a few seconds to get into the BIOS earlier your operating organisation loads. If you miss your window, no harm done, you'll just have to restart the reckoner and endeavor again. After Step i, though, feel free to accept your sweet time.

1. Restart your computer, and equally it'south booting up you should see a message telling you to press a certain primal to enter the BIOS, whether it uses that give-and-take or another. On most Dells, for instance, yous should see "Press F2 to enter Setup." Other messages might be "Setup = Del" (pregnant Delete) or "Organization Configuration: F2." Press whatever key the prompt tells you to and enter the Setup bill of fare.

Depending on what kind of estimator you take, a different key may be needed to enter your Setup menu. It could be F1, F8, F10, F11, Delete or another key. If there'south no bulletin on the screen with instructions, the general rule is to hit the key when yous run across the manufacturer's logo only before Windows loads. To observe out which cardinal will become you in, search online for your laptop'south brand and model along with the phrase "BIOS key."

2. In the BIOS or UEFI menu, at that place should be at least ane choice or tab labelled Security. Using your keyboard, navigate to it and hit Enter. On some systems, y'all might need to use the + central to expand a submenu instead.

3. Once y'all're within the Security section, you're going to be looking for the TPM settings. This might be conspicuously labeled "TPM Device," "TPM Security" or some variation. On Intel machines, it will sometimes be labeled "PTT" or "Intel Trusted Platform Technology." Information technology might as well appear as "AMD fTPM Switch."

Alarm: Stay alert hither. Inside most TPM settings menus, y'all generally have an option to clear your TPM, update it or restore it to manufacturing plant default. Do non practise that right now. Clearing the TPM will cause y'all to lose all data encrypted by the TPM and all keys to the encryption. This activeness can not exist undone or reversed.

4. From inside the TPM settings menu, you're on one mission merely: Find the switch that turns on the TPM. Y'all're not touching anything else. Expect through the options within this bill of fare for one that shows some grade of toggle or switch abreast the word "Enable" or "Unavailable" or even merely "Off." Use your arrow keys to flip that toggle or switch.

5. In one case y'all've kicked on the TPM, expect around the screen for Save. Once you've saved this setting, restart the computer.

windows-11-focus.png
Microsoft

How do I enable Secure Boot?

You lot'll save yourself a headache if you keep i affair in mind near enabling Secure Boot. Sometimes afterwards you enable Secure Boot on a machine that'southward running software incompatible with Secure Kicking, the machine will turn down to load Windows properly on restart. If that happens, don't panic. You didn't intermission anything.

No matter which method yous've used to get to the kicking menu to brainstorm with -- either via Windows ten's Start menu, or by the traditional method of hitting a specific key during showtime-upwardly -- you can notwithstanding utilise the traditional method to get dorsum to the boot carte and disable Secure Boot again.

From Windows 10's Starting time bill of fare

Follow the steps to a higher place to access the UEFI Firmware Settings.

1. Once yous're in the UEFI, you're going to exist looking for the Secure Kick setting. There are a few possible places this could exist -- cheque under any tabs labelled Boot, Security or Authentication.

2. Once y'all've checked the tabs and establish the Secure Boot setting, toggle the switch beside information technology to plow it on or enable it.

3. Find your Save characteristic and, after y'all've saved your changes and exited the menu, your computer should reboot and bring yous back to a normal Windows desktop.

In that location are some PCs on which you may not be able to readily find the Secure Kick setting. Some computers will load Secure Boot keys under a Custom tab. Some computers won't allow you lot to enable Secure Kick until sure factory settings are restored. If yous're unable to admission Secure Kicking, or become roadblocked here, it's best to get help from a professional rather than take chances.

From outset-up

If you're not working with UEFI, so you should be able to just enable Secure Boot in BIOS.

i. Simply as you did when enabling your TPM, hitting F2 (or whichever key your manufacturer specifies) as your computer is booting up and enter the BIOS carte.

2. Go to the tab or option that says BIOS Setup, and then select Avant-garde.

3. Adjacent, select Boot Options and a listing of them should appear.

4. In that list, notice Secure Boot. Enable it.

five. Hit Salve, exit the card organization, and restart your calculator if it does not restart automatically.

Now playing: Sentinel this: Windows 11: Top new features in 2021

iii:22

What if I don't take a TPM scrap?

As noted by CNET sister publication ZDNet back in 2017, motherboard manufacturers sometimes skimp on installing the actual TPM chip and instead send the boards out with just the part that allows the chip to connect to the board. If y'all find out that you were shorted on your TPM scrap when you bought your PC, and you don't have a virtual or firmware TPM version, you still accept a few options.

Your beginning selection is to try to return your automobile via your manufacturer warranty. That is, of course, assuming your machine's manufacturer is willing to install the chip it already sold yous, or supersede your model with one that has a chip. Your 2d, and most expensive, option is to simply purchase a newer car after verifying that it does, indeed, have an actual TPM 2.0-capable scrap.

If your warranty is already voided, your third choice -- less expensive, merely perhaps more than difficult -- is to buy a whole new motherboard with a TPM ii.0 fleck installed, then either swap out the boards yourself or have your local aftermarket repair shop handle the task. Be warned, however, that the ongoing global chip shortage has squeezed the globe's supply of motherboards, making them more difficult to find and pushing prices to upward of $300 to $400 dollars for some brands. That'due south another place your local repair shop may be able to help.

Finally, either you or your repair shop tin try your fourth choice: hunting down a TPM scrap with the right specifications for your motherboard and installing information technology. Depending on the blazon y'all go with and where you become it from, a TPM ii.0-capable chip can run you anywhere from $70 up. Luckily, the basic structures of the boards and chips are similar plenty that -- if yous'd like to get your hands dingy nether the hood -- information technology'southward possible to install a TPM chip yourself. ZDNet has step-by-step instructions (with a helpful gallery of pictures to guide you lot).

Whichever road you go, we strongly suggest yous to first consult either your manufacturer or a device repair specialist earlier you lot endeavour to take apart your machine. Spending a few moments with a knowledgeable professional could be all it takes to turn your upgrade nightmare into a quick fix, and spare you excessive replacement costs.

Now playing: Watch this: Windows xi review: New OS has u.s. asking, update or wait?

8:32

For more, check out how to download Windows eleven, and the best new Windows 11 features and how to apply them.

milleronsing.blogspot.com

Source: https://www.cnet.com/tech/computing/how-to-fix-this-pc-cant-run-windows-11-error-tpm-and-secure-boot/

0 Response to "Check Your System Settings and Try Again"

Publicar un comentario

Iklan Atas Artikel

Iklan Tengah Artikel 1

Iklan Tengah Artikel 2

Iklan Bawah Artikel