What TPM does and why you might want to disable it
TPM (Trusted Platform Module) is a small chip on your motherboard that stores encryption keys and security settings. Windows uses it to lock your drive, verify your system hasn't been tampered with, and protect passwords. If TPM is working, Windows trusts your hardware more — it's harder for malware to slip in undetected.
You might want to turn it off if you're troubleshooting a hardware problem, moving your drive to a different computer, or using older software that conflicts with TPM security checks. Disabling it makes your system less protected, but sometimes it's necessary to get something working again.
Key Takeaways
- TPM lives in your BIOS settings, not in Windows itself — you access it by restarting your computer and pressing a key during startup.
- The key you press varies by manufacturer: Dell uses F2, HP uses F10, Lenovo uses F1 or Enter, and Asus uses Delete — check your computer's startup screen or manual.
- Once in BIOS, look for "Security Chip", "TPM Device", or "PTT" (Intel Platform Trust Technology) and change it from Enabled to Disabled.
- Disabling TPM removes a layer of protection — your drive encryption and Windows security features become less effective.
- If you later want TPM back on, you return to BIOS and switch it back to Enabled.
Finding the BIOS menu on your computer
The BIOS is a menu that runs before Windows starts. To reach it, restart your computer and watch the screen during startup — you'll see a message like "Press F2 to enter Setup" or "Press Delete for System Settings". The exact key depends on your computer's manufacturer.
Common keys by brand: Dell and EMC use F2, HP and Compaq use F10, Lenovo uses F1 or Enter, Asus uses Delete, and Microsoft Surface uses Volume Up. If you miss the window, let Windows finish loading and try again — you have only a few seconds.
If your computer boots too fast to see the message, restart it and hold down the key as soon as you press the power button. Some newer computers also let you restart into BIOS from Windows Settings: go to Settings > System > Recovery, click "Restart now" under "Advanced startup", then choose "Troubleshoot" > "Advanced options" > "UEFI Firmware Settings".
Locating TPM in your BIOS settings
Once you're in BIOS, the TPM setting is usually under a "Security" tab or menu. Look for labels like "Security Chip", "TPM Device", "TPM 2.0", "PTT" (Intel's name for TPM), or "fTPM" (AMD's name). The exact location and name vary widely — some manufacturers bury it several menus deep.
If you can't find it, check your computer's manual or search the manufacturer's support site for "disable TPM" plus your exact model number. You can usually find your model number on a sticker on the bottom or back of your computer, or in Windows by right-clicking "This PC" and choosing "Properties".
Changing TPM from enabled to disabled
Once you find the TPM setting, it will show "Enabled" or "On". Highlight it and press Enter or click it to open a dropdown menu. Select "Disabled" or "Off", then move to the bottom of the BIOS screen and look for a "Save and Exit" or "Save Changes and Reset" button.
Press Enter on that button. Your computer will restart, and TPM will now be off. The whole process usually takes less than five minutes. If you change your mind later, you can go back into BIOS the same way and switch it back to Enabled.
What happens after you disable TPM
Windows will still run normally. However, some security features become less effective: BitLocker (Windows' drive encryption) may stop working or ask for a recovery key each time you start up, Windows Hello facial recognition might stop working, and some security checks will be less strict.
If you're using Windows 11, disabling TPM may trigger a warning that your system doesn't meet Windows 11 requirements — but Windows will continue to run. If you disabled TPM to fix a specific problem and the problem is solved, you should turn TPM back on to restore your security protections.
When to turn TPM back on
If you disabled TPM to troubleshoot a hardware issue or test compatibility with old software, turn it back on once you've solved the problem. Go back into BIOS the same way, find the TPM setting, change it to Enabled, save, and restart.
Leaving TPM off long-term weakens your protection against malware and unauthorized access. It's meant to be a temporary step, not a permanent setting. If you find that you need TPM off to use a particular program, that program may be outdated or incompatible with modern Windows security — consider whether you really need it.
Frequently Asked Questions
Will disabling TPM make Windows run faster?
No. TPM runs in the background and uses very little CPU or memory. You won't notice a speed difference. If your computer is slow, the problem is something else — check your disk usage, RAM, or running programs instead.
Can I disable TPM from Windows Settings instead of BIOS?
No. TPM is a hardware setting, not a Windows setting. You must access it through BIOS. Windows has no built-in way to turn it off — that's intentional, because TPM protects Windows itself.
What if I can't find the TPM setting in my BIOS?
Your computer may not have TPM, or it may be labeled differently. Search your manufacturer's support site for "TPM" plus your exact model number. If nothing comes up, your hardware doesn't have it and there's nothing to disable.
Will disabling TPM affect my files or passwords?
Not when ready. But if you had BitLocker encryption on, Windows may ask for a recovery key the next time you start up. Write down that recovery key if prompted — you'll need it to access your drive. Passwords stored in Windows are less protected without TPM, though they're still encrypted.
Can I disable TPM on a work or school computer?
Usually not. Work computers often have BIOS passwords that prevent changes. If you need TPM off for work purposes, contact your IT department — they manage those settings. Changing BIOS on a work computer without permission may violate your organization's policies.