Black Ops 7 & Warzone TPM 2.0 & Secure Boot Guide
PC Setup Guide
Black Ops 7 TPM 2.0 & Secure Boot Guide
Trying to launch Call of Duty: Black Ops 7 and being told that TPM 2.0 or Secure Boot isn't enabled? You're not alone. Black Ops 7 requires both features as part of Call of Duty's security and anti-cheat system — and on most modern gaming PCs, the hardware already supports them. They may simply need enabling or configuring correctly.
In this guide, we'll show you how to check your PC and explain what to look for before changing anything in your BIOS.
Important: BIOS menus vary between motherboard manufacturers. Changing the wrong BIOS settings can stop Windows from booting. If you're unsure, check your motherboard manufacturer's instructions before making changes.
What Does Black Ops 7 Require?
For Black Ops 7 to meet Call of Duty's current PC security requirements, your computer needs:
- ✓ TPM 2.0 enabled
- ✓ Secure Boot enabled
- ✓ UEFI boot mode
- ✓ Windows system disk using GPT rather than MBR
On compatible systems, TPM may appear in the BIOS under a different name:
You don't normally need to buy a separate TPM module.
Check Whether TPM 2.0 Is Already Enabled
Before entering the BIOS, check Windows first.
Press Windows Key + R, type tpm.msc and press Enter. The TPM Management window should appear.
If both are shown, TPM 2.0 is already working. If Windows instead says "Compatible TPM cannot be found," TPM may be disabled in your BIOS, incorrectly configured, or unsupported by your system.
Check Secure Boot in Windows
Press Windows Key + R, type msinfo32 and press Enter. This opens Windows System Information.
If both say UEFI and On, your Secure Boot configuration should already be correct.
Check Whether Your Windows Drive Is GPT
Right-click the Windows Start button and select Disk Management. Find the drive containing Windows (usually Disk 0), right-click the disk itself rather than an individual partition, and select Properties → Volumes.
If it instead says Master Boot Record (MBR), your Windows installation may need converting before Secure Boot can be correctly configured. Don't simply enable UEFI-only boot if Windows is currently installed in Legacy/MBR mode.
Enable TPM in Your Motherboard BIOS
If TPM isn't enabled, restart your PC and enter the BIOS (common keys: Delete or F2). The exact setting depends on your motherboard.
AMD Systems
Look for AMD CPU fTPM, Firmware TPM, Trusted Computing, or Security Device Support.
Intel Systems
Look for Intel PTT, Platform Trust Technology, Trusted Computing, or Security Device Support.
Save your changes and restart Windows, then run tpm.msc again to confirm TPM 2.0 is now active.
Enable Secure Boot
Return to the BIOS and locate the Secure Boot settings — often under Boot, Security, Windows OS Configuration, Advanced, or Trusted Computing. Make sure the PC is configured for UEFI boot; Secure Boot can then normally be enabled.
Some motherboards may also require you to disable CSM, select Windows UEFI Mode, install or restore default Secure Boot keys, or set Secure Boot Mode to Standard. Save your changes and restart Windows.
Check Everything Again in Windows
Once the PC restarts, re-check msinfo32 and tpm.msc:
If all three are correct, your basic configuration meets the TPM and Secure Boot requirements for Black Ops 7.
Common Edge Cases
Secure Boot says Off, but BIOS Mode says UEFI
Your system is already running in UEFI mode, so Secure Boot may simply need enabling in your motherboard BIOS. Don't randomly change Secure Boot options without checking your motherboard documentation first — depending on the manufacturer, you may need settings such as Secure Boot enabled, Windows UEFI mode, CSM disabled, Standard Secure Boot mode, or default Secure Boot keys installed. The exact wording varies considerably between ASUS, MSI, Gigabyte, ASRock and other manufacturers.
BIOS Mode says Legacy
This needs a little more care. Secure Boot requires your system to boot using UEFI. If Windows currently shows BIOS Mode: Legacy, your PC may also be using an older MBR partition layout. Simply changing the BIOS from Legacy to UEFI can result in Windows no longer booting — check whether your Windows disk uses GPT or MBR (Step 3) before changing anything.
TPM and Secure Boot are enabled, but Black Ops 7 still says they aren't
A PC can show TPM 2.0 enabled and Secure Boot State: On, but still fail Call of Duty's secure attestation checks. Possible causes include:
- Outdated motherboard BIOS
- TPM firmware issues
- Incorrect Secure Boot keys
- Firmware configuration problems
- Windows boot configuration
- Another member of your Call of Duty party failing attestation
Certain AMD TPM firmware versions can also produce attestation errors despite TPM apparently working correctly. If everything looks enabled but Call of Duty still reports an attestation failure, read our separate guide: Warzone / Call of Duty Attestation Failed Even Though Secure Boot Is Enabled.
Use the Official Call of Duty Secure Attestation Wizard
Call of Duty also provides an official Secure Attestation Wizard. This checks your BIOS and security configuration and can identify problems including TPM 2.0 not enabled, Secure Boot not enabled, boot partition not using GPT, BIOS not running in UEFI mode, or BIOS firmware needing an update.
If you're troubleshooting Black Ops 7, this is one of the best checks to perform before randomly changing BIOS settings. Download it only from the official Activision support website.
Frequently Asked Questions
Does Windows 11 already have TPM and Secure Boot?
Usually, yes. Windows 11 officially requires TPM 2.0 and Secure Boot-capable hardware, so many Windows 11 gaming PCs will already have the necessary features configured. However, BIOS updates, motherboard changes, Windows installations and custom configurations can result in systems where one of the required settings isn't correctly enabled — that's why it's always worth checking rather than assuming.
Does Windows 10 work with Black Ops 7?
Call of Duty currently supports Windows 10 version 22H2 or later for these security requirements, although compatible hardware and TPM 2.0 are still required. Older PCs are therefore more likely to run into compatibility problems.
Why does Call of Duty require TPM 2.0 and Secure Boot?
These technologies allow Call of Duty's RICOCHET Anti-Cheat system to verify more information about the security and integrity of the computer. Secure Boot helps make sure only trusted software is loaded during startup, and TPM provides hardware-backed security capabilities used as part of verifying the system. Together, they make certain types of cheating and system manipulation more difficult.
Still stuck after checking TPM 2.0, Secure Boot, UEFI mode, GPT and your motherboard BIOS? Don't repeatedly change random BIOS settings — identify exactly which part of the attestation check is failing first. If Secure Boot already shows On but Call of Duty still reports Failed Attestation, head to our dedicated attestation troubleshooting guide.
Pink Parsnip Computers
We build gaming PCs that are fully configured, updated, tested and ready to game. If you're shopping for a new system, you can also browse our gaming PCs by the games you actually want to play, rather than trying to decipher endless specification sheets.