TPM 1.2 Firmware Update Guidance. for Infineon SLB9655 and SLB9660

Similar documents
How to Clear TPM HW on HP Personal Systems

Table of Contents. Frequently Asked Questions (FAQ) 1

How can I Clear a TPM module or Recover from Authorisation Lockout?

Full Image Restore with Modern Standby

Table of Contents. Table of Figures. 2 Wave Systems Corp. Client User Guide

Protecting your data with Windows 10 BitLocker

BitLocker to Go: Encryption for personal USB

Pocket PC e 740 Data Backup and Restore Procedure

Applied ICT Skills MS Windows

Dell EMC Repository Manager Version 3.1. Quick Start Guide

Finding information on your computer

Reset tpm owner password

The following documents are included with your Sony VAIO computer.

Dell EMC Repository Manager Version 3.2. Quick Start Guide

Firmware Update Guide

Procedure to Upgrade Verizon FiOS Router and Configure Xbox 360 to connect with Microsoft USB WiFi Adapter

Tofino CMP Installation & Upgrade Guide Tofino CMP Version Tofino Firmware Version 1.7.0

How To Encrypt a Windows 7, 8.1 or 10 laptop or tablet

BitLocker Group Policy Settings

How to install the software of ZNS8022

ThinkVantage Fingerprint Software

ADVANCED DRIVER MANAGEMENT IN WINDOWS 7

Cisco CTL Client setup

Image Backup and Recovery Procedures For Windows 7

MEEM Memory Ltd. User Guide ios

HP Manageability Integration Kit HP Client Management Solutions

HP Video Over Ethernet. User Guide

HP Image Assistant. User Guide

The following file is used for updating the boot loader: xboot.bin: XSTREAM development platform boot loader image

WinDSX New Installations

Fixed an issue where S.M.A.R.T. Attribute 194 would not report 128 if the temperature sensor on the I2C times out

INSIGHT Installation Instructions

Tactics, Techniques and Procedures (TTP): BitLocker End-User Guide

How to upgrade the firmware

IRONKEY WORKSPACE PROVISIONING TOOL 1.3. User Guide

FAQ No Q: What should we know before we start Windows 10 upgrade?

WES7 OS Recovery User Guide (Ver1.00) OS, Driver

SIMATIC. Industrial PC Microsoft Windows Embedded Standard 7. Safety instructions 1. Initial startup: Commissioning the operating.

The CLEAR Connection Manager and Windows 8 (64bit) CLEAR USB Modem (SKU: SGDN5094AA, SGDN5233AA, SGDN5250AA)

Table of Contents. Installation and Software 1

Pharos Uniprint 9.0. Upgrade Guide. Document Version: UP90-Upgrade-1.0. Distribution Date: May 2014

Dell Command Update. Version 2.4 User's Guide

Dell Lifecycle Controller Integration Version 2.2 For Microsoft System Center Configuration Manager User's Guide

IoT GSC-100 GSC-100. Table of Contents. SETUP GUIDE. GSC-100 Connection Overview. Version 1.0

Sophos Central Device Encryption. Administrator Guide

WINDOWS 8.1 RESTORE PROCEDURE

PAS. Installation Guide. BG0608 Rev. A1. Copyright SATEC Ltd.

Dell Lifecycle Controller Integration Version 3.0 For Microsoft System Center Configuration Manager User's Guide

Symantec Encryption (PGP) Installation Guide

RECOMMENDED PROCEDURE

SIMATIC. Industrial PC Microsoft Windows 7. Safety instructions 1. Initial startup: Commissioning the operating. system

WINDOWS 7 BITLOCKER DRIVE ENCRYPTION

Integration Guide. SafeNet Authentication Client. Using SAC CBA with BitLocker

UNIVERSITY OF EXETER BITLOCKER USER GUIDE

CONTENTS I. DEVICE SETUP II. INSTALLATION III. UNINSTALL RETAIL MODE

Web management. How to access to the web management. Log into the web management via a laptop

HP Manageability Integration Kit HP Client Management Solutions

BitLocker Encryption for non-tpm laptops

Cisco CTL Client Setup

LP Manual in PTP and MTP Mode.

mce100+ getting started guide Install mce100+ The disc will run and display the below screen: Choose Install mce to continue

Full System Restore Manually Run Cmd Prompt

Full System Restore Manually Windows 7 No Disk

Quick Installation Guide

Instruction Manual. for Windows 10 Recovery Image. Download Service

Third Party Products Third Party Products Copyright 2018 Stone Computers Ltd. All Rights Reserved. 5

Storage Security Software (Version )

IT Essentials v6.0 Windows 10 Software Labs

Allegro CX Field PC Release 1.07a

Configuring TPM Firmware Version

Eaglesoft 18.1 Installation Instructions

Trusted Stackware series. Rev D.O.I-Net Co., Ltd. Document No:TST E

SNC-HMX70. Version Upgrade Guide

Fujitsu STYLISTIC Q Series

Super USB. User Manual. 2007, March

Configuring a RAID Set (Z390 Series)

Managed Access Gateway. User Guide

DPS NG. Pitot-Static Test Set. Field Firmware Update Procedure Via USB and Barfield ADTS App P/N (DPS1000) P/N (1811NG)

TECHNICAL DOCUMENT. Upgrading to PathPilot v2.0.x. 1.1 What's New in PathPilot v2.0.x

ODBC Installation Instructions RecTrac 10.3 / Progress 11.3

Trusted Platform Module (TPM) Quick Reference Guide

Release Notes Life Technologies Attune NxT Software v2.3

Managed Access Gateway. User Guide

First Time Setup Guide

Introduction. Package Checklist. Minimum System Requirements. Registering Your Product. More Help

Apptix Online Backup by Mozy User Guide

Chapter. Managed Switch Software Advanced. Operations. In This Chapter...

Fujitsu Stylistic ST6000 Series

Overview. Introduction. Contents. Linksys Wireless-N Range Extender. Front

Getting to Know Your Mobile WiFi

Re-installing SQL Server 2012 Express

Using the hierarchy... 4 Using Filter Groups... 7 Defining Filter Groups... 7 Example... 8 Linking Filter Groups Limiting functionality...

DOCUMENT REVISION HISTORY

1 Covene Cohesion Administrator Guide A Modular Platform for Video Conferencing Management October 9, 2017

SafeNet Authentication Client

EntraPass (W10) Installation Guide Kantech-OnBoard systems

XL-RAID-SATA-USB Data Backup System. User s Guide

Guidelines of Ethernet for Using a Star Dvice. - Windows - Rev. 2.0

Installation & Administration Guide. savvi 5.3 & 5.4

IRONKEY D300S SECURE USB 3.0 FLASH DRIVE

Transcription:

TPM 1.2 Firmware Update Guidance for Infineon SLB9655 and SLB9660 Rev. 05 Toshiba Client Solutions Co., Ltd. Document Number: 3600xxxxx

1. Introduction This guidance described about in-field firmware update method for Infineon Trusted Platform Module (TPM) version 1.2 2. Target TPM Device and Firmware Update Tool The following table shows target TPM device of this document, and related Firmware Update Tool. Each Manufacturer Name, Manufacturer Version, and Specification Version column corresponds to text shown in Windows utility Trusted Platform Module (TPM) Management. Table 1 Manufacturer Manufacturer Specification Firmware Update Tool Name Version Version IFX 4.32 1.2 IFXTPMUpdate_TPM12_v0434.exe IFX 4.40 1.2 IFXTPMUpdate_TPM12_v0443.exe 2 3600xxxxx

3. Preconditions To run the update tool, administrative privilege is required. During the update tool executing, you may need the TPM Owner Password. If the operating system does not store the Owner Password or Owner Password Backup File, you may need to clear the TPM. WARNING Before starting update, it is strongly recommended to backup the computer. In case your drive was encrypted by BitLocker, it blocks the TPM firmware update. Before starting the firmware update, Suspend protection of BitLocker. In case clearing the TPM, it resets the TPM to factory defaults. It will lose every created keys and data protected by those keys. Clearing the TPM may cause you to be prompted for your BitLocker recovery key, or re-setting PIN, in case using these features. 4. How to Update the TPM Firmware To run the update tool, administrative privilege is required. 4.1. Windows 7 1. Run tpm.msc from Start Menu. (Type tpm.msc at Search programs and files.) Trusted Platform Module (TPM) Management on Local Computer appears. 3600xxxxx 3

2. To confirm whether the TPM firmware is subject to update, clarify Manufacturer Name and Specification Version are IFX and 1.2, and Manufacturer Version are shown in Table 1. 3. In case you have the TPM Owner Password or the TPM Owner Password Backup File, proceed to 10. In case both the TPM Owner Password and the TPM Owner Password Backup File are not found, you need to clear the TPM. WARNING Before starting update, it is strongly recommended to backup the computer. In case your drive was encrypted by BitLocker, it blocks the TPM firmware update. Before starting the firmware update, Suspend protection of BitLocker. In case clearing the TPM, it resets the TPM to factory defaults. It will lose every created keys and data protected by those keys. Clearing the TPM may cause you to be prompted for your BitLocker recovery key, or re-setting PIN, in case using these features. 4. On Trusted Platform Module (TPM) Management on Local Computer, choose Initialize TPM from Actions. 4 3600xxxxx

The following screen appears. Choose I do not have the TPM owner password. 5. The following screen appears. Choose Restart to restart the computer. After restart, BIOS warning message may appear. Press [F11] to clear TPM and proceed. 3600xxxxx 5

After restart, the following screen appears. Choose Restart to restart the computer. 6. The following screen appears. Choose how to create the TPM Owner Password. Usually, choose Automatically create the password (recommended). 7. Choose Save the password... and choose location to save the TPM Owner Password. USB memory is recommended. 6 3600xxxxx

8. After saving or printing the password, Initialize button becomes active. Choose Initialize to start TPM initialization. 9. After initialization completed, the following screen appears. 10. Right click Firmware Update Tool in Table 1 corresponds to Manufacturer Version, choose Run as administrator. 3600xxxxx 7

The following screen appears. 11. Check Accept the terms of this license agreement, and choose Next. In case AC adapter is not plugged, the following screen appears. Plug the AC adapter and choose Back to return previous screen once. 8 3600xxxxx

12. The following screen appears. Check platform details and choose Next. WARNING In case Manufacturer Version is 3.17 or 3.19, it is not a subject to firmware update, the following screen can appear. In the case, choose Cancel to cancel firmware update. Even if you choose Next, firmware update is not executed. 13. Provide the Owner Password. In case having the Owner Password as the Owner Password Backup File, choose I have the Owner Password Backup File and specify the file location by pressing Browse.... 3600xxxxx 9

14. Choose Update to start firmware update. WARNING On Windows 7, the firmware update may take up to 10 minutes. Do NOT turn off the computer until the update completes. 4.2. Windows 8.1, Windows 10 version 1507 and 1511 1. Right click Start Menu and choose Run. Run tpm.msc from Run. (Type tpm.msc at Open.) Trusted Platform Module (TPM) Management on Local Computer appears. 10 3600xxxxx

2. To confirm whether the TPM firmware is subject to update, clarify Manufacturer Name and Specification Version are IFX and 1.2, and Manufacturer Version are shown in Table 1. 3600xxxxx 11

3. In case you have the TPM Owner Password or the TPM Owner Password Backup File, proceed to 7. In case both the TPM Owner Password and the TPM Owner Password Backup File are not found, you need to clear the TPM. WARNING Before starting update, it is strongly recommended to backup the computer. In case your drive was encrypted by BitLocker, it blocks the TPM firmware update. Before starting the firmware update, Suspend protection of BitLocker. In case clearing the TPM, it resets the TPM to factory defaults. It will lose every created keys and data protected by those keys. Clearing the TPM may cause you to be prompted for your BitLocker recovery key, or re-setting PIN, in case using these features. 4. On Trusted Platform Module (TPM) Management on Local Computer, choose Clear TPM from Actions. 12 3600xxxxx

5. The following screen appears. Choose Restart to restart the computer. After restart, BIOS warning message may appear. Press [F11] to clear TPM and proceed. 6. After restart, the following screen appears. Choose Remember my TPM owner password, and choose location to save the TPM Owner Password. USB memory is recommended. After saving the password, choose Close on Manage the TPM security hardware. 7. Right click Firmware Update Tool in Table 1 corresponds to Manufacturer Version, choose Run as administrator. 3600xxxxx 13

The following screen appears. 8. Check Accept the terms of this license agreement, and choose Next. In case AC adapter is not plugged, the following screen appears. Plug the AC adapter and choose Back to return previous screen once. 14 3600xxxxx

9. The following screen appears. Check platform details and choose Next. TPM Owner Password is not queried. WARNING In case Manufacturer Version is 3.17 or 3.19, it is not a subject to firmware update, the following screen can appear. In the case, choose Cancel to cancel firmware update. Even if you choose Next, firmware update is not executed. 10. Choose Update to start firmware update. 3600xxxxx 15

4.3. Windows 10 version 1607 (Anniversary Update) and after 1. Run tpm.msc from Start Menu. (Type tpm.msc at Search programs and files.) Trusted Platform Module (TPM) Management on Local Computer appears. 2. To confirm whether the TPM firmware is subject to update, clarify Manufacturer Name and Specification Version are IFX and 1.2, and Manufacturer Version are shown in Table 1. 16 3600xxxxx

3. In case you have the TPM Owner Password or the TPM Owner Password Backup File, proceed to 10. In case both the TPM Owner Password and the TPM Owner Password Backup File are not found, you need to clear the TPM. WARNING Before starting update, it is strongly recommended to backup the computer. In case your drive was encrypted by BitLocker, it blocks the TPM firmware update. Before starting the firmware update, Suspend protection of BitLocker. In case clearing the TPM, it resets the TPM to factory defaults It will lose every created keys and data protected by those keys. Clearing the TPM may cause you to be prompted for your BitLocker recovery key, or re-setting PIN, in case using these features. 4. Run regedit from Start Menu. (Type regedit at Search programs and files.) Registry Editor appears. 5. Clarify registry key [HKEY_LOCAL_MACHINE SOFTWARE Policies Microsoft TPM] OSManagedAuthLevel, and record original key data. Choose Edit Find. Type OSManagedAuthLevel at Find what, then press Find Next. The following screen appears after a while. Clarify upper text shows HKEY_LOCAL_MACHINE SOFTWARE Policies Microsoft TPM, and lower 3600xxxxx 17

left text shows OSManagedAuthLevel, and take a note for the data. (In this screenshot case, 5.) After updating the firmware, this register key shall be restored, so do not miss to take a note. 6. Double click OSManagedAuthLevel. The following screen appears. 7. Change Value data as 4, and press OK. 8. Run tpm.msc from Start Menu, and choose Clear TPM from Actions. WARNING Before starting update, it is strongly recommended to backup the computer. In case your drive was encrypted by BitLocker, it blocks the TPM firmware update. Before starting the firmware update, Suspend protection of BitLocker. In case clearing the TPM, it resets the TPM to factory defaults. It will lose every created keys and data protected by those keys. Clearing the TPM may cause you to be prompted for your BitLocker recovery key, or re-setting PIN, in case using these features. 18 3600xxxxx

9. The following screen appears. Choose Restart to restart the computer. After restart, BIOS warning message may appear. Press [F11] to clear TPM and proceed. 10. Right click Firmware Update Tool in Table 1 corresponds to Manufacturer Version, choose Run as administrator. The following screen appears. 11. Check Accept the terms of this license agreement, and choose Next. In case AC adapter is not plugged, the following screen appears. Plug the AC adapter and choose Back to return previous screen once. In case the following screen appears (Preconditions shows BitLocker Drive Encryption blocks firmware update ), BitLocker is turned on. Press Cancel to cancel the firmware update, and Suspend protection of BitLocker, then go back to 10. 3600xxxxx 19

12. The following screen appears. Check platform details and choose Next. WARNING In case Manufacturer Version is 3.17 or 3.19, it is not a subject to firmware update, the following screen can appear. In the case, choose Cancel to cancel firmware update. Even if you choose Next, firmware update is not executed. 20 3600xxxxx

13. In case the following screen appears, provide the Owner Password. In case does not appears, skip to 14. In case having the Owner Password as the Owner Password Backup File, choose I have the Owner Password Backup File and specify the file location by pressing Browse.... 14. Choose Update to start firmware update. 15. Run regedit from Start Menu. (Type regedit at Search programs and files.) Registry Editor appears. 3600xxxxx 21

16. Search registry key [HKEY_LOCAL_MACHINE SOFTWARE Policies Microsoft TPM] OSManagedAuthLevel. Choose Edit Find. Type OSManagedAuthLevel at Find what, then press Find Next. The following screen appears after a while. Clarify upper text shows HKEY_LOCAL_MACHINE SOFTWARE Policies Microsoft TPM, and lower left text shows OSManagedAuthLevel. 17. Double click OSManagedAuthLevel. The following screen appears. 18. Change Value data as data noted at 5, and press OK. (End of Document) 22 3600xxxxx