What is a TPM (Trusted Platform Module)?
D5 ยท Crypto ยท CompTIA Security+ SY0-701A TPM (Trusted Platform Module) is a specialized microcontroller chip integrated into a computer's motherboard that provides hardware-based security functions: secure key storage, random number generation, and platform integrity measurement.
Key capabilities: measured boot (records hash of each boot component), BitLocker key storage, attestation (proves device configuration hasn't changed).
TPM 2.0 is required for Windows 11.
Key capabilities: measured boot (records hash of each boot component), BitLocker key storage, attestation (proves device configuration hasn't changed).
TPM 2.0 is required for Windows 11.
TPM enables full-disk encryption keys to be tied to specific hardware โ if you move the drive to another machine, it won't boot. It also detects bootkit/rootkit tampering via measured boot. TPM โ HSM: TPM is on-board, HSM is a standalone device.