Tip / Sign in to post questions, reply, level up, and achieve exciting badges. Know more

OPTIGA™ TPM Forum Discussions

MikeO
Level 1
Level 1
First reply posted First question asked Welcome!

We have many of these Dynabook Portege X30W-J laptops on site, but only one like this. When trying to reimage with Autopilot and finish the white glove setup, provisioning fails with 'TPM attestation timed out'. 

Anyone know what should be done to sort this?

Many thanks for looking.

 

Running the TPM tool gives the following info:

 

C:\Windows\system32>tpmtool getdeviceinformation

-TPM Present: True
-TPM Version: 2.0
-TPM Manufacturer ID: IFX
-TPM Manufacturer Full Name: Infineon
-TPM Manufacturer Version: 7.85.4555.0
-PPI Version: 1.3
-Is Initialized: True
-Ready For Storage: True
-Ready For Attestation: False
-Information Flags Description:
INFORMATION_EK_CERTIFICATE
-Is Capable For Attestation: False
-Clear Needed To Recover: False
-Clear Possible: True
-TPM Has Vulnerable Firmware: False
-PCR7 Binding State: 2
-Maintenance Task Complete: True
-TPM Spec Version: 1.38
-TPM Errata Date: Monday, January 08, 2018
-PC Client Version: 1.03
-Is Locked Out: False

 

 

 

0 Likes
5 Replies
snehapra
Moderator
Moderator
Moderator
100 replies posted 25 likes received 100 sign-ins

Hi @MikeO ,

Could you please run GET-TPMEndorsementkeyInfo command using Win Power Shell and let us know the result of it.

Thanks,

Sneha

0 Likes
MikeO
Level 1
Level 1
First reply posted First question asked Welcome!

Thanks for looking 🙂

PS C:\Windows\system32> Get-TPMEndorsementkeyinfo

IsPresent : True
PublicKey : System.Security.Cryptography.AsnEncodedData
PublicKeyHash :
ManufacturerCertificates : {}
AdditionalCertificates : {}

PS C:\Windows\system32>

0 Likes
snehapra
Moderator
Moderator
Moderator
100 replies posted 25 likes received 100 sign-ins

Hi @MikeO ,

Thanks for the info. Please provide the following background information:

1. Windows OS version

2. If your organization has an NDA with us or if you have distribution who has an NDA with Infineon

Regards,

Sneha

0 Likes
MikeO
Level 1
Level 1
First reply posted First question asked Welcome!

@Sneha 

Windows 10.0.19044.1526 (21H2)

There is no NDA in place.

 

Thanks

 

Mike

0 Likes
snehapra
Moderator
Moderator
Moderator
100 replies posted 25 likes received 100 sign-ins

Hi @MikeO ,

Please go through the Windows Autopilot diagnostics page: https://learn.microsoft.com/en-us/mem/autopilot/troubleshooting for troubleshooting the issue.
Could you also provide error code or screenshot of “TPM attestation timed out" error.

0 Likes
This widget could not be displayed.
This widget could not be displayed.