TPM 2 7.85.4555.0 EK Certificate missing on Dynabook

Tip / Sign in to post questions, reply, level up, and achieve exciting badges. Know more

cross mob
MikeO
Level 1
Level 1
5 sign-ins First reply posted First question asked

We have many of these Dynabook Portege X30W-J laptops on site, but only one like this. When trying to reimage with Autopilot and finish the white glove setup, provisioning fails with 'TPM attestation timed out'. 

Anyone know what should be done to sort this?

Many thanks for looking.

 

Running the TPM tool gives the following info:

 

C:\Windows\system32>tpmtool getdeviceinformation

-TPM Present: True
-TPM Version: 2.0
-TPM Manufacturer ID: IFX
-TPM Manufacturer Full Name: Infineon
-TPM Manufacturer Version: 7.85.4555.0
-PPI Version: 1.3
-Is Initialized: True
-Ready For Storage: True
-Ready For Attestation: False
-Information Flags Description:
INFORMATION_EK_CERTIFICATE
-Is Capable For Attestation: False
-Clear Needed To Recover: False
-Clear Possible: True
-TPM Has Vulnerable Firmware: False
-PCR7 Binding State: 2
-Maintenance Task Complete: True
-TPM Spec Version: 1.38
-TPM Errata Date: Monday, January 08, 2018
-PC Client Version: 1.03
-Is Locked Out: False

 

 

 

0 Likes
1 Solution
Sneha_P
Moderator
Moderator
Moderator
250 replies posted 250 sign-ins First comment on blog

Hi @MikeO ,

Please go through the Windows Autopilot diagnostics page: https://learn.microsoft.com/en-us/mem/autopilot/troubleshooting for troubleshooting the issue.
Could you also provide error code or screenshot of “TPM attestation timed out" error.

View solution in original post

0 Likes
7 Replies
Sneha_P
Moderator
Moderator
Moderator
250 replies posted 250 sign-ins First comment on blog

Hi @MikeO ,

Could you please run GET-TPMEndorsementkeyInfo command using Win Power Shell and let us know the result of it.

Thanks,

Sneha

0 Likes
MikeO
Level 1
Level 1
5 sign-ins First reply posted First question asked

Thanks for looking 🙂

PS C:\Windows\system32> Get-TPMEndorsementkeyinfo

IsPresent : True
PublicKey : System.Security.Cryptography.AsnEncodedData
PublicKeyHash :
ManufacturerCertificates : {}
AdditionalCertificates : {}

PS C:\Windows\system32>

0 Likes
Sneha_P
Moderator
Moderator
Moderator
250 replies posted 250 sign-ins First comment on blog

Hi @MikeO ,

Thanks for the info. Please provide the following background information:

1. Windows OS version

2. If your organization has an NDA with us or if you have distribution who has an NDA with Infineon

Regards,

Sneha

0 Likes
MikeO
Level 1
Level 1
5 sign-ins First reply posted First question asked

@Sneha 

Windows 10.0.19044.1526 (21H2)

There is no NDA in place.

 

Thanks

 

Mike

0 Likes
Sneha_P
Moderator
Moderator
Moderator
250 replies posted 250 sign-ins First comment on blog

Hi @MikeO ,

Please go through the Windows Autopilot diagnostics page: https://learn.microsoft.com/en-us/mem/autopilot/troubleshooting for troubleshooting the issue.
Could you also provide error code or screenshot of “TPM attestation timed out" error.

0 Likes
Sneha_P
Moderator
Moderator
Moderator
250 replies posted 250 sign-ins First comment on blog

Hi @MikeO ,

Please let us know if you were able to troubleshoot the issue. 

0 Likes
Sneha_P
Moderator
Moderator
Moderator
250 replies posted 250 sign-ins First comment on blog

Please let us know if your query was resolved. We will lock the thread in 2 days. In case your issue is not resolved, please create a new thread and we will be happy to help.

0 Likes