Introduction
In this article, we will discuss how to add a Trusted Platform Module (TPM) 2.0 to the ASRock Rack E3C256D2I motherboard for use with Windows 11. TPM is a crucial security feature that helps protect your system against unauthorized access and malware attacks. With Windows 11, TPM 2.0 is now a requirement for some security features, such as BitLocker encryption and Virtual Secure Mode (VSM).
TPM 2.0 Overview
TPM is a dedicated microcontroller that securely stores cryptographic keys and passwords. It is designed to protect the system's boot process and ensure the integrity of the operating system and its applications. TPM 2.0 is the latest version of TPM, which offers several improvements over its predecessor, TPM 1.2, such as:
- Increased storage capacity
- Improved security algorithms
- Support for remote attestation
ASRock Rack E3C256D2I Motherboard Overview
The ASRock Rack E3C256D2I is a single-socket server motherboard based on the Intel Xeon D-1500 series processor. It supports Intel Optane Memory, which provides faster response times and improved application performance. The motherboard also comes with several built-in security features, such as:
- Intel vPro Technology
- Intel Trusted Platform Technology (Intel TPM 2.0)
- Intel Active Management Technology (Intel AMT)
Adding TPM 2.0 Module
To add a TPM 2.0 module to the ASRock Rack E3C256D2I motherboard, follow these steps:
Step 1: Check Motherboard Compatibility
Before purchasing a TPM 2.0 module, make sure that it is compatible with the ASRock Rack E3C256D2I motherboard. You can check the motherboard's specifications on the ASRock Rack website:
https://www.asrockrack.com/general/productdetail.asp?Model=E3C256D2I
Look for the "TPM" section in the specifications and ensure that it supports TPM 2.0.
Step 2: Purchase a TPM 2.0 Module
Once you have confirmed that the motherboard supports TPM 2.0, you can purchase a compatible TPM 2.0 module. Some popular options include:
- Intel SGX TPM 2.0
- Infineon SLB9672 TPM 2.0
- Western Digital WD10SMF-XKEC
Step 3: Install the TPM 2.0 Module
To install the TPM 2.0 module, follow the manufacturer's instructions. Generally, the process involves:
- Connecting the module to the motherboard using the appropriate cable
- Powering on the system and entering the BIOS setup
- Locating the TPM setting in the BIOS and enabling it
- Saving and exiting the BIOS setup
Step 4: Enable TPM in Windows 11
Once the TPM module is installed, you can enable it in Windows 11:
- Press the Windows key + I to open Settings
- Click on "Privacy & security"
- Click on "Security features" in the left pane
- Scroll down to "Platform protections" and click on "Windows Security settings"
- Click on "Device encryption"
- Toggle on "Use BitLocker to encrypt my drives"
- Select the drive you want to encrypt and click "Manage BitLocker"
- Click on "Turn on BitLocker"
- Follow the prompts to create a recovery key and set up a password
In this article, we discussed how to add a TPM 2.0 module to the ASRock Rack E3C256D2I motherboard for use with Windows 11. We covered the basics of TPM 2.0 and the ASRock Rack E3C256D2I motherboard and provided step-by-step instructions for installing the module. For more information, check out the following resources: