Print | Rate this content

Advisory: 2015 Desktops, Notebooks, and Workstations - Announcing HP TPM Configuration Utility; Allows Updating TPM Firmware and Converting Between TPM 1.2 and 2.0

SUPPORT COMMUNICATION - CUSTOMER ADVISORY

Document ID: c05192291

Version: 3

Advisory: 2015 Desktops, Notebooks, and Workstations - Announcing HP TPM Configuration Utility; Allows Updating TPM Firmware and Converting Between TPM 1.2 and 2.0
NOTICE: The information in this document, including products and software versions, is current as of the Release Date. This document is subject to change without notice.

Release Date: 2016-06-30

Last Updated: 2017-01-31


DESCRIPTION

The HP TPM Configuration Utility (when used with an appropriate TPM firmware (FW) BIN file) allows for:

  • Upgrading from an older TPM 1.2 FW to a newer TPM 1.2 FW

  • Upgrading from an older TPM 2.0 to a newer TPM 2.0 FW

  • Converting from TPM 1.2 to TPM 2.0

  • Converting from TPM 2.0 to TPM 1.2

NOTE: SoftPaq 78910 has also been released. sp78910 contains the same version of the HP TPM Configuration Utility as SoftPaq 76423 (covered in this document), but has BIN files for compatibility with Windows 10 Anniversary Update (Version 1607, Build 10.0.14393, Redstone 1, RS1). Click here to view the advisory on sp78910: http://h20566.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c05381064 .

Warning!

To avoid a complete loss of data, the drive must be fully decrypted before using the utility. Merely suspending BitLocker is not good enough.

The utility has a built-in check for Microsoft BitLocker, HP Drive Encryption, and WinMagic SecureDoc solutions only. If BitLocker or HP Drive Encryption or SecureDoc is used, the utility will exit after advising that the disk must be decrypted first. The utility does not detect other disk encryption solutions.

Additional Notes

  • On Windows 7, TPM 1.2 must be activated in BIOS (Check TPM state in BIOS).

  • On Windows 8.x or Windows 10, the OS will automatically take ownership of TPM.

  • Windows 8.x and Windows 10 require GPT partition style when using TPM 2.0. The BIOS setting for boot mode should be set to "Legacy Support Disable and Secure Boot Enable" (recommended) or "Legacy Support Disable and Secure Boot Disable".

  • Windows 7-64, Windows 8.x, and Windows 10 will work with MBR or GPT partition style when using TPM 1.2.

SCOPE

Information in this document applies to the following:

Desktop Computers:

  • HP EliteDesk 705 G2 Desktop Mini PC

  • HP EliteDesk 800 35W G2 Desktop Mini PC

  • HP EliteDesk 800 65W G2 Desktop Mini PC

  • HP EliteDesk 800 G2 Small Form Factor PC

  • HP EliteDesk 800 G2 Tower PC

  • HP EliteOne 800 G2 23-inch Non-Touch All-in-One PC

  • HP EliteOne 800 G2 23-inch Touch All-in-One PC

  • HP ProDesk 400 G2 Desktop Mini PC

  • HP ProDesk 400 G3 Microtower PC

  • HP ProDesk 400 G3 Small Form Factor PC

  • HP ProDesk 480 G3 Microtower PC

  • HP ProDesk 490 G3 Microtower PC

  • HP ProDesk 498 G3 Microtower PC

  • HP ProDesk 600 G2 Desktop Mini PC

  • HP ProDesk 600 G2 Microtower PC

  • HP ProDesk 600 G2 Small Form Factor PC

  • HP ProOne 400 G2 20-inch Non-Touch All-in-One PC

  • HP ProOne 400 G2 20-inch Touch All-in-One PC

  • HP ProOne 600 G1 All-in-One PC

  • HP ProOne 600 G2 21.5-inch Non-Touch All-in-One PC

  • HP RP9 G1 Retail System Model 9015

  • HP RP9 G1 Retail System Model 9018

Notebook Computers:

  • HP EliteBook 1030 G1 Notebook PC

  • HP EliteBook 1040 G3 Notebook PC

  • HP EliteBook 725 G3 Notebook PC

  • HP EliteBook 745 G3 Notebook PC

  • HP EliteBook 755 G3 Notebook PC

  • HP EliteBook 820 G3 Notebook PC

  • HP EliteBook 840 G3 Notebook PC

  • HP EliteBook 850 G3 Notebook PC

  • HP EliteBook Folio G1 Notebook PC

  • HP Elite x2 1012 G1

  • HP ProBook 430 G3 Notebook PC

  • HP ProBook 440 G3 Notebook PC

  • HP ProBook 450 G3 Notebook PC

  • HP ProBook 455 G3 Notebook PC

  • HP ProBook 470 G3 Notebook PC

  • HP ProBook 640 G2 Notebook PC

  • HP ProBook 645 G2 Notebook PC

  • HP ProBook 650 G2 Notebook PC

  • HP ProBook 655 G2 Notebook PC

  • HP ZBook 15 G3 Mobile Workstation

  • HP ZBook 17 G3 Mobile Workstation

  • HP ZBook Studio G3 Mobile Workstation

Operating Systems:

  • Microsoft Windows 7

  • Microsoft Windows 8

  • Microsoft Windows 10

RESOLUTION

IMPORTANT! Before attempting to upgrade to TPM 2.0, make sure the system BIOS has been updated to the latest available version. Check for the latest BIOS version starting here: http://www.hp.com/drivers .

SoftPaq Contents: This SoftPaq contains the following:

HP TPM Configuration Utility

  • TPMConfig.exe for 32-bit OS

  • TPMConfig64.exe for 64-bit OS

Common Criteria (CC) certified TPM FW BIN files

  • TPM12_6.40.190.0_to_TPM12_6.41.197.0.BIN

  • TPM12_6.40.190.0_to_TPM20_7.41.2375.0.BIN

  • TPM12_6.41.197.0_to_TPM20_7.41.2375.0.BIN

  • TPM20_7.40.2098.0_to_TPM12_6.41.197.0.BIN

  • TPM20_7.40.2098.0_to_TPM20_7.41.2375.0.BIN

  • TPM20_7.41.2375.0_to_TPM12_6.41.197.0.BIN

Compatibility

  • The HP TPM Configuration Utility is supported on 2015 commercial platforms that have Infineon SLB9670 TPM chip and the latest Commercial BIOS (supported platforms listed in the SCOPE).

  • Windows 7 will only work with TPM 1.2. TPM 2.0 is not supported on HP platforms with Windows 7.

  • Windows 8.x and Windows 10 can support either TPM 1.2 or TPM 2.0.
  • TPM can be converted between TPM 1.2 and TPM 2.0 up to a maximum of 64 times.

  • The utility can only be run in Windows 7, Windows 8.x, or Windows 10. It does not support Windows PE.

  • Physical presence is required to use the utility.

Instructions

  • Run the softpaq to extract the files. By default it will extract the files in C:\SWSETUP\SPXXXXX folder.

  • Copy the desired TPM FW BIN file and the appropriate HP TPM Configuration Utility (either 32-bit or 64-bit) to a temporary folder. Only one TPM FW BIN file is allowed in the temporary folder.

  • Do not rename the TPM FW BIN file.

  • Open CMD Prompt in Administrator mode and run TPM.MSC to determine the TPM Manufacturer Information.
    - Manufacturer Name: IFX
    - For TPM 1.2, Manufacturer Version: Either 6.40 or 6.41
    - For TPM 2.0, Manufacturer Version: Either 7.40 or 7.41
    - Specification version: Either 1.2 or 2.0

  • The utility supports:

    - Graphical User Interface (GUI) for step-by-step execution
    - Command line mode (including silent execution)

  • Run MSINFO32 to determine 32-bit or 64-bit OS. Examine System Type (will show either "x64-based PC" or "32-based PC").

  • Run the appropriate utility (TPMConfig.exe for 32-bit OS or TPMConfig64.exe for 64-bit OS) as an Administrator from the folder where the utility and TPM FW BIN file are located.

Additional Notes

  • On Windows 7, TPM 1.2 must be activated in BIOS (Check TPM state in BIOS).

  • On Windows 8.x or Windows 10, the OS will automatically take ownership of TPM.

  • Windows 8.x and Windows 10 require GPT partition style when using TPM 2.0. The BIOS setting for boot mode should be set to "Legacy Support Disable and Secure Boot Enable" (recommended) or "Legacy Support Disable and Secure Boot Disable".

  • Windows 7-64, Windows 8.x, and Windows 10 will work with MBR or GPT partition style when using TPM 1.2.

Command Line Options

Option
Comments
-fBIN-file
Specifies the TPM firmware .BIN image file. Default is *.BIN in the executable folder. This switch is required if running in silent mode (-s).
Note: there is no space between -f and filename.
-ppassword-file
Specify encrypted password file created with the HpqPswd utility.
This file is required if there is a BIOS Setup password set.
Note: there is no space between -p and filename.
-s
Silent mode.
-c
Create HP_TOOLS partition if not present. On a GPT formatted system with native UEFI boot, this option is ignored. On MBR, the partition is not created if it already exists. If unable to create partition, exits with error code
-?
Show the same usage dialog that appears if an invalid command line is detected. This options overrides all other options, including -s.

Command Line Examples (assuming it is a 64-bit OS)

  1. Graphical user interface
    - Tpmconfig64

  2. Silent mode
    - Tpmconfig64 -s -fFirmwareFileName

  3. Silent mode, create EFI/HP_TOOLS partition if not existed
    - Tpmconfig64 -s -fFirmwareFileName -c

  4. Silent mode, password file is provided
    - Tpmconfig64 -s -fFirmwareFileName -pBiosPasswordFile

  5. To convert from TPM FW version 6.40.190.0 to TPM FW version 7.41.2375.02
    - Tpmconfig64 -s -fTPM12_6.40.190.0_to_TPM20_7.41.2375.0.BIN

  6. To convert from TPM FW version 7.41.2375.0 to TPM FW version 6.41.197.0
    - Tpmconfig64 -s - fTPM20_7.41.2375.0_to_TPM12_6.41.197.0.BIN

  7. To upgrade from TPM FW version 7.40.2098.0 to TPM FW version 7.41.2375.0
    - Tpmconfig64 -s -fTPM20_7.40.2098.0_to_TPM7.41.2375.0.BIN

  8. To upgrade from TPM FW version 6.40.190.0 to TPM FW version 6.41.197.10
    - Tpmconfig64 -s -fTPM6.40.190.0_to_TPM6.41.197.0.BIN

Download the TPM Configuration Utility

SoftPaq Description
Release Notes
Download SoftPaq
HP Trusted Platform Module (TPM) Configuration Utility
Version: 6.41-7.41
Revision: A Pass: 1

NOTE: A more recent version of this software may be available. Check for newer versions at http://www.hp.com/drivers .


Hardware Platforms Affected: HP Elite x2 1012 G1, HP EliteBook 1030 G1 Notebook PC, HP EliteBook 1040 G3 Notebook PC, HP EliteBook 725 G3 Notebook PC, HP EliteBook 745 G3 Notebook PC, HP EliteBook 755 G3 Notebook PC, HP EliteBook 820 G3 Notebook PC, HP EliteBook 840 G3 Notebook PC, HP EliteBook 850 G3 Notebook PC, HP EliteBook Folio G1 Notebook PC, HP EliteDesk 705 G2 Desktop Mini PC, HP EliteDesk 800 35W G2 Desktop Mini PC, HP EliteDesk 800 65W G2 Desktop Mini PC, HP EliteDesk 800 G2 Small Form Factor PC, HP EliteDesk 800 G2 Tower PC, HP EliteOne 800 G2 23-inch Non-Touch All-in-One PC, HP EliteOne 800 G2 23-inch Touch All-in-One PC, HP ProBook 430 G3 Notebook PC, HP ProBook 440 G3 Notebook PC, HP ProBook 450 G3 Notebook PC, HP ProBook 455 G3 Notebook PC, HP ProBook 470 G3 Notebook PC, HP ProBook 640 G2 Notebook PC, HP ProBook 645 G2 Notebook PC, HP ProBook 650 G2 Notebook PC, HP ProBook 655 G2 Notebook PC, HP ProDesk 400 G2 Desktop Mini PC, HP ProDesk 400 G3 Microtower PC, HP ProDesk 400 G3 Small Form Factor PC, HP ProDesk 480 G3 Microtower PC, HP ProDesk 490 G3 Microtower PC, HP ProDesk 498 G3 Microtower PC, HP ProDesk 600 G2 Desktop Mini PC, HP ProDesk 600 G2 Microtower PC, HP ProDesk 600 G2 Small Form Factor PC, HP ProOne 400 G2 20-inch Non-Touch All-in-One PC, HP ProOne 400 G2 20-inch Touch All-in-One PC, HP ProOne 600 G1 All-in-One PC, HP ProOne 600 G2 21.5-inch Non-Touch All-in-One PC, HP RP9 G1 Retail System Model 9015, HP RP9 G1 Retail System Model 9018, HP ZBook 15 G3 Mobile Workstation, HP ZBook 17 G3 Mobile Workstation, HP ZBook Studio G3 Mobile Workstation
Operating Systems Affected: Not Applicable
Software Affected: Not Applicable
Support Communication Cross Reference ID: IA05192291
©Copyright 2017 Hewlett-Packard Development Company, L.P.
Hewlett-Packard Company shall not be liable for technical or editorial errors or omissions contained herein. The information provided is provided "as is" without warranty of any kind. To the extent permitted by law, neither HP or its affiliates, subcontractors or suppliers will be liable for incidental,special or consequential damages including downtime cost; lost profits;damages relating to the procurement of substitute products or services; or damages for loss of data, or software restoration. The information in this document is subject to change without notice. Hewlett-Packard Company and the names of Hewlett-Packard products referenced herein are trademarks of Hewlett-Packard Company in the United States and other countries. Other product and company names mentioned herein may be trademarks of their respective owners.

Provide feedback

Please rate the information on this page to help us improve our content. Thank you!