Windows Message During Reset Of PC

Questions on how we spend our money and our time - consumer goods and services, home and vehicle, leisure and recreational activities
Post Reply
Topic Author
tallguy3891
Posts: 361
Joined: Sat Jul 03, 2021 10:47 am

Windows Message During Reset Of PC

Post by tallguy3891 »

Decided to do a Recovery Reset with install from the cloud and clean the drive. I have done this before with the pc in question, but this time it got to a point and gave a black screen with the fairly common message:

"A configuration change was requested to clear this computer's TPM (Trusted Platform Module)
WARNING: Clearing erases information stored on the TPM. You will lose all created keys and access to data encrypted by these keys.
Press F12 to clear the TPM.
Press ESC to reject this change request and continue."

My questions are:

1) who/what requested this change or is it a normal process? Is it possibly due to a real problem?
2 which is the better choice--F12 or ESC, or does it matter? My search online gave varying answers one way or the other. I chose ESC and it continued with the reset and works fine. Should I reset again and choose F12?
gavinsiu
Posts: 2195
Joined: Sun Nov 14, 2021 11:42 am

Re: Windows Message During Reset Of PC

Post by gavinsiu »

tallguy3891 wrote: Thu May 25, 2023 12:41 pm Decided to do a Recovery Reset with install from the cloud and clean the drive. I have done this before with the pc in question, but this time it got to a point and gave a black screen with the fairly common message:

"A configuration change was requested to clear this computer's TPM (Trusted Platform Module)
WARNING: Clearing erases information stored on the TPM. You will lose all created keys and access to data encrypted by these keys.
Press F12 to clear the TPM.
Press ESC to reject this change request and continue."

My questions are:

1) who/what requested this change or is it a normal process? Is it possibly due to a real problem?
2 which is the better choice--F12 or ESC, or does it matter? My search online gave varying answers one way or the other. I chose ESC and it continued with the reset and works fine. Should I reset again and choose F12?
I would not clear the TPM unless you want to completely reset the computer. TPM is where you would store things like the encrpytion key to your drive, clearing it might mean you cannot decrypt your drive and have to reformat it.
User avatar
samsoes
Posts: 2629
Joined: Tue Mar 05, 2013 8:12 am
Location: Northeast Rat Race

Re: Windows Message During Reset Of PC

Post by samsoes »

Do you use Bitlocker.drive encryption?
"Happiness Is Not My Companion" - Gen. Gouverneur K. Warren. | (Avatar is the statue of Gen. Warren atop Little Round Top @ Gettysburg National Military Park.)
Topic Author
tallguy3891
Posts: 361
Joined: Sat Jul 03, 2021 10:47 am

Re: Windows Message During Reset Of PC

Post by tallguy3891 »

samsoes wrote: Thu May 25, 2023 3:59 pm Do you use Bitlocker.drive encryption?
No, but do use Device Encryption.
User avatar
samsoes
Posts: 2629
Joined: Tue Mar 05, 2013 8:12 am
Location: Northeast Rat Race

Re: Windows Message During Reset Of PC

Post by samsoes »

tallguy3891 wrote: Thu May 25, 2023 5:01 pm
samsoes wrote: Thu May 25, 2023 3:59 pm Do you use Bitlocker.drive encryption?
No, but do use Device Encryption.
Decrypt everything first, and then do your reset. Feel free to wipe the TPM at that point since it's not storing any valid keys for you. Re-encrypt later.
"Happiness Is Not My Companion" - Gen. Gouverneur K. Warren. | (Avatar is the statue of Gen. Warren atop Little Round Top @ Gettysburg National Military Park.)
gavinsiu
Posts: 2195
Joined: Sun Nov 14, 2021 11:42 am

Re: Windows Message During Reset Of PC

Post by gavinsiu »

tallguy3891 wrote: Thu May 25, 2023 5:01 pm No, but do use Device Encryption.
I have not use device encryption but it's basically a consumer version of Bitlocker that is automatic and uses TPM. As samsoes pointed out, it's best to decrypt it first. The following item might be installed in TPM that I can think of.

* Disk Encryption Key.
* Windows Hello fingerprint
* Passkeys saved in Windows Hello.
* Password manger key.

Of the items above I can think of, the disk encryption key and probably the most important. Erasing the disk encryption key means you lose all data on disk. I have actually done this in the past and lost the recovery method but end up restoring from backup.

The passkey would be a concern if you don't have a backup passkey.

The windows Hello and password manager key is probaby less of an issue since you can usually still login using the user name and password.
Topic Author
tallguy3891
Posts: 361
Joined: Sat Jul 03, 2021 10:47 am

Re: Windows Message During Reset Of PC

Post by tallguy3891 »

gavinsiu wrote: Fri May 26, 2023 2:39 pm
tallguy3891 wrote: Thu May 25, 2023 5:01 pm No, but do use Device Encryption.
I have not use device encryption but it's basically a consumer version of Bitlocker that is automatic and uses TPM. As samsoes pointed out, it's best to decrypt it first. The following item might be installed in TPM that I can think of.

* Disk Encryption Key.
* Windows Hello fingerprint
* Passkeys saved in Windows Hello.
* Password manger key.

Of the items above I can think of, the disk encryption key and probably the most important. Erasing the disk encryption key means you lose all data on disk. I have actually done this in the past and lost the recovery method but end up restoring from backup.

The passkey would be a concern if you don't have a backup passkey.

The windows Hello and password manager key is probaby less of an issue since you can usually still login using the user name and password.
Is it okay that I did not decrypt, did not erase TPM via F12, and used ESC option instead in the reset reinstall?
gavinsiu
Posts: 2195
Joined: Sun Nov 14, 2021 11:42 am

Re: Windows Message During Reset Of PC

Post by gavinsiu »

tallguy3891 wrote: Fri May 26, 2023 3:57 pm Is it okay that I did not decrypt, did not erase TPM via F12, and used ESC option instead in the reset reinstall?
Yes, but I would play it safe and decrypt first just to be on the safe side or if you had backed up the drive already and tested the restore first.
Post Reply