TPM - Security Platform Initialization: what is this?

lister

New member
Hi, I recently tried to upgrade some drivers and I have been left with TPM - Infineon in the systems tray that keeps asking me initialize. When I clicked through the wizard it tells me to set up security on a removable USB Stick.

Forigve me, but can someone explain what this TPM is, and do I need it?

It seems to be a high tech security device?

How did I end up with it! This normal? Thanks!
 

My Computer

Computer Manufacturer/Model Number
Panasonic Toughbook CF F9
OS
Windows 7 Panasonic CF F9 (used to have CF F8)

My Computer

Computer Manufacturer/Model Number
Alienware AREA-51 M17x
OS
windows 7 ultimate 64bit
CPU
Intel Core2 Extreme x9000 2.8GHZ
Motherboard
Asus P965 Intel chipset
Memory
4Gig
Graphics Card(s)
2 NVidia GeForce 8800M GTX (SLi)
Sound Card
onboard
Monitor(s) Displays
17in. built-in, 47in JVC LCD
Screen Resolution
1080p
Hard Drives
2 250Gig Hitachi (RAID 0) @ 7200RPM
Case
17in. laptop
Mouse
touchpad, Logitech Anywhere Mouse cordless laser
Internet Speed
cable
right...from my understanding it is basically a security service which can enrcypt your drives.

Do you guys use it?

Thanks
 

My Computer

Computer Manufacturer/Model Number
Panasonic Toughbook CF F9
OS
Windows 7 Panasonic CF F9 (used to have CF F8)
i disabled mine.
 

My Computer

Computer Manufacturer/Model Number
Alienware AREA-51 M17x
OS
windows 7 ultimate 64bit
CPU
Intel Core2 Extreme x9000 2.8GHZ
Motherboard
Asus P965 Intel chipset
Memory
4Gig
Graphics Card(s)
2 NVidia GeForce 8800M GTX (SLi)
Sound Card
onboard
Monitor(s) Displays
17in. built-in, 47in JVC LCD
Screen Resolution
1080p
Hard Drives
2 250Gig Hitachi (RAID 0) @ 7200RPM
Case
17in. laptop
Mouse
touchpad, Logitech Anywhere Mouse cordless laser
Internet Speed
cable
Most of the people here have no need for TPM but for those who do then the capability of preventing unauthorized access to ones computer is a strong plus.

If you have to travel and your notebook/netbook goes with you and you have company/government classified info on your computer, then you should be using TPM.
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
you think bit locker would do the trick just as well?
 

My Computer

Computer Manufacturer/Model Number
Panasonic Toughbook CF F9
OS
Windows 7 Panasonic CF F9 (used to have CF F8)
How to enable full drive encryption on your system

If you want to encrypt your entire HDD, you'll need windows 7 ultimate or enterprise, a TPM and HDD password are necessary, and windows should be freshly installed without the system reserved partition present, otherwise the encryption process will take a long time and will not be as secure
   Note
Do not try this unless you have a flash drive to store a backup of the bitlocker key and are already skilled with computers

enable the Administrator account and sign in to it for the entire process
Set a password for all active accounts on the computer if you haven't already done so
Restart your computer and enter bios
In security settings, set an adminstrator and HDD password first, then restart your system. This is necessary to enable the full drive encryption, or the TPM will sometimes block it due to security concerns. It also has the added benefit of rendering your HDD useless to anyone without the HDD password. It won't work in any other computer without it
Enter bios again and navigate to TPM management. Enable the TPM and set it as active, then clear the TPM and boot to your operating system
Open the group policy editor, navigate to computer configuration> administrative templates > system > trusted platform module services
Enable "ignore the list of local blocked TPM commands" & "ignore the default list of blocked TPM commands"
Disable "turn on TPM backup to AD DS"
Then from an elevated command prompt, type TPM.
Initialize and turn the TPM on
Restart your computer. Ok any prompt if the TPM gives you one..

In control panel>system and security you will find the bitlocker drive encryption options. insert a flash drive to use for a backup of the bitlocker key, then turn on bitlocker. It takes about an hour to encrypt a typical HDD on a laptop.
 
you think bit locker would do the trick just as well?

There are some excellent tutorials here on bitlocker, plus there is always the info you get by using the WIN F1 key combo.

I installed BitLocker on my netbook to familiarize myself with the capabilities and performance. Performance slowed. I admit that the netbook is underpowered for such operations. The encryption took about an hour and a half for each drive, c: system and d: data.

The netbook does not have TPM so had to change a couple of registry settings, as documented by Brink in the main BitLocker tutorial.

I'm now in the process of removing the encryption since I'm not traveling on plane or overseas with such anytime soon. The removal takes just as long as the encryption itself.

I've never used the following, but many have recommended:
TrueCrypt - Free Open-Source On-The-Fly Disk Encryption Software for Windows 7/Vista/XP, Mac OS X and Linux
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
i disabled mine.

How do you do that? I disabled from the BIOS but it is still in the systems tray annoyingly...

is there anything setting I might have missed? Thanks!
 

My Computer

Computer Manufacturer/Model Number
Panasonic Toughbook CF F9
OS
Windows 7 Panasonic CF F9 (used to have CF F8)
look in your "startup" folder and delete the shortcut if its there, go to control panel/software&programs and uninstall the TPM software.
 

My Computer

Computer Manufacturer/Model Number
Alienware AREA-51 M17x
OS
windows 7 ultimate 64bit
CPU
Intel Core2 Extreme x9000 2.8GHZ
Motherboard
Asus P965 Intel chipset
Memory
4Gig
Graphics Card(s)
2 NVidia GeForce 8800M GTX (SLi)
Sound Card
onboard
Monitor(s) Displays
17in. built-in, 47in JVC LCD
Screen Resolution
1080p
Hard Drives
2 250Gig Hitachi (RAID 0) @ 7200RPM
Case
17in. laptop
Mouse
touchpad, Logitech Anywhere Mouse cordless laser
Internet Speed
cable
Back
Top