Windows 11 to Ship Without TPM Requirement for 'Special Purpose' Systems

TPM
(Image credit: Shutterstock)

Microsoft infused Windows 11 with an onerous new requirement that blocks any system without Trusted Platform Module (TPM) 2.0 tech from installing the new operating system, but it turns out the company will allow some systems to ship without the feature enabled. Unfortunately, normal users probably won't have access to the installation ISOs or workaround used for those builds, though it's conceivable that we could see them leak to the public. Instead, these special builds are likely tailored for use in countries that don't use Western encryption technologies, like China and Russia.

Windows 11 requires either a physical TPM key, resulting in an almost instant shortage of the devices and rampant scalping, or support for fTPM, excluding a large swath of relatively modern systems from receiving the update. And for those that thought Microsoft would bend under public pressure over the unpopular new TPM requirement, the company has doubled down — At first, Microsoft only listed support for TPM 1.2 as the baseline, but it has since clarified that Windows 11 would only support the newer 2.0 revision. That requirement further restricts the number of computers that can use Windows 11.

Now the company has clarified that some systems will work without any flavor of the TPM cryptoprocessor enabled [Edit: Clarified 'enabled'], which will certainly make the requirement seem superfluous to detractors. Microsoft lays out the full system requirements in its 'Windows 11 Minimum Hardware Requirements document (Warning - PDF), with the sixteen-page document giving us a much deeper look at the nuts and bolts of the OS than the basic version Microsoft published previously. 

Paul Alcorn
Editor-in-Chief

Paul Alcorn is the Editor-in-Chief for Tom's Hardware US. He also writes news and reviews on CPUs, storage, and enterprise hardware.

  • Diabl0
    Tried turning on fTPM and SecureBoot on my B450 board and I am still getting a no go on Win11 compatibility. Funny on a two year old PC. Might resort to this special ISO. Or just buy a TPM module for 11 Euro.
    Reply
  • rocky01
    Torque off half your users?
    Seems like folly added on top of the Windows10-Updates-breaking-stuff debacles. Something is wrong in Redmond. No mention of privacy in rollout? Multiple unforced errors -- keep coming.
    Reply
  • -Fran-
    What is Microsofts BS reason to require TPM in the first place? All I've read is they require it, but nowhere I've found a proper explained reasoning as to why they do. Anyone care to ellaborate, please?

    Regards.
    Reply
  • USAFRet
    Yuka said:
    What is Microsofts BS reason to require TPM in the first place? All I've read is they require it, but nowhere I've found a proper explained reasoning as to why they do. Anyone care to ellaborate, please?

    Regards.
    https://forums.tomshardware.com/threads/why-win-11-needs-trusted-platform-module.3710248/
    I think they are overreaching, but this, so far, is their justification.
    Reply
  • dimar
    Do you really need a TPM if you're not using storage encryption?
    I enabled PTT setting in the BIOS, and got Trusted Platform Module 2.0 in device manager on Asus Strix Z390-E.
    If Microsoft forces storage to become encrypted , how will that effect file recovery of damaged HDD/SSD?
    Reply
  • -Fran-
    USAFRet said:
    https://forums.tomshardware.com/threads/why-win-11-needs-trusted-platform-module.3710248/
    I think they are overreaching, but this, so far, is their justification.
    Thanks for that.

    So Windows is trying to control our PCs by making this mandatory further implying we will no longer even be able to run software we want to run.

    Great, just what we all needed: more nanny companies.

    Regards.
    Reply
  • ezst036
    This will get hacked real quick and that TPM requirement will be "gone".
    Reply
  • peachpuff
    ezst036 said:
    This will get hacked real quick and that TPM requirement will be "gone".
    I'll bet it'll be as easy as editing setup.ini in the windows iso and setting tpm flag to 0.
    Reply
  • velocityg4
    Diabl0 said:
    Tried turning on fTPM and SecureBoot on my B450 board and I am still getting a no go on Win11 compatibility. Funny on a two year old PC. Might resort to this special ISO. Or just buy a TPM module for 11 Euro.

    If you can still get one at 11 Euro. You better buy it whether you're sure you need it or not. They're already scalping at $80 to $100.
    Reply
  • ReallyBigMistake
    Sadly MS has betrayed us yet again
    Reply