220-1102 exam dumps

220-1102 practice question 74 of 828

A+ Core 2. Associate level, CompTIA. Free question with the correct answer and a full explanation.

220-1102 Question 74

Single answerTrusted Platform Module (TPM)

A technician is preparing several Windows 11 laptops for deployment. One laptop meets the CPU, RAM, and storage requirements, but the Windows 11 installer reports that the PC does not meet the security requirements. In the firmware settings, Secure Boot is already enabled. The technician suspects the issue is related to the Trusted Platform Module (TPM). Which action should the technician take NEXT to make the laptop eligible for installation?

  1. A

    Enable TPM 2.0 or Intel PTT/AMD fTPM in the UEFI firmware settings

  2. B

    Disable BitLocker so the installer can initialize the TPM automatically

  3. C

    Convert the drive from GPT to MBR so the TPM can be detected during setup

  4. D

    Install a third-party antivirus product that includes hardware security drivers

Show answer and explanation

Correct answer: A

Explanation

For Windows 11 deployment, Microsoft requires TPM 2.0 and Secure Boot on supported systems. In real-world setups, technicians often encounter systems where the TPM is present but disabled in UEFI/BIOS, or exposed through firmware-based implementations such as Intel PTT or AMD fTPM rather than a discrete TPM chip. The best next step is to enable TPM 2.0 in firmware settings and then verify detection in Windows Setup or with tools such as tpm.msc once an OS is available. This aligns with Microsoft's Windows 11 minimum system requirements and standard OEM deployment practices. TPM is commonly used with BitLocker, Windows Hello, and measured boot, but those features do not substitute for enabling the TPM itself.

  • A. Correct.

    Correct. Windows 11 requires TPM 2.0 as part of its supported security baseline. On many business-class systems, the TPM may exist but be disabled in UEFI/BIOS, or it may be implemented as firmware TPM such as Intel Platform Trust Technology (PTT) or AMD fTPM. Enabling TPM 2.0 in firmware is the appropriate next step when Secure Boot is already enabled and the installer reports a missing security requirement.

  • B. Incorrect.

    Incorrect. BitLocker depends on TPM for common deployments; disabling BitLocker does not enable or initialize a TPM for Windows 11 eligibility. This distractor reflects a common misunderstanding that BitLocker and TPM are interchangeable features. BitLocker uses TPM to protect keys, but it does not create TPM functionality.

  • C. Incorrect.

    Incorrect. GPT versus MBR affects partitioning and boot mode compatibility, especially with UEFI and Secure Boot, but it does not determine whether the system has an available TPM. A system can use GPT and still have TPM disabled, or use MBR and still have TPM hardware present. This option confuses storage layout with platform security hardware.

  • D. Incorrect.

    Incorrect. Antivirus software does not provide a hardware root of trust or satisfy the Windows 11 TPM requirement. TPM is a hardware or firmware-based security component used for cryptographic operations and secure key storage. Security software may improve protection, but it cannot replace the TPM requirement enforced by the installer.

Timed practice exam

Take a 220-1102 practice test under exam conditions

90 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam