WEBVTT

00:00:00.080 --> 00:00:07.040
hey great news for everybody who actually wants to upgrade their pcs to Windows 11 the system requirements don't

00:00:05.279 --> 00:00:10.960
look too onerous in terms of how powerful a machine you'll need but if

00:00:09.440 --> 00:00:16.400
you look down the list you'll see something called trusted platform module

00:00:13.200 --> 00:00:18.880
2.0 which would be fine if everyone knew

00:00:16.400 --> 00:00:23.279
what the heck that was well as the word trusted might imply a tpm is a chip

00:00:20.960 --> 00:00:28.080
that's responsible for some of your pc's encryption features it can both generate

00:00:25.760 --> 00:00:32.399
and store encryption keys used for a variety of applications and the really

00:00:30.080 --> 00:00:37.920
cool thing is that tpms even feature true random number generators

00:00:35.520 --> 00:00:42.000
so random you see typical software based random number generators take an initial

00:00:39.760 --> 00:00:46.640
number called a seed and run it through some algorithms which spit out a pseudo

00:00:44.719 --> 00:00:51.440
random number because the outcome is partly determined by what that seed is

00:00:49.039 --> 00:00:55.280
these numbers aren't completely random tpms on the other hand can use truly

00:00:53.600 --> 00:00:59.039
random natural phenomena like temperature fluctuations to generate

00:00:57.039 --> 00:01:03.440
numbers and encryption keys that are more unpredictable and thus more secure

00:01:02.239 --> 00:01:08.960
you don't know where i'm going to come in that's how it works

00:01:06.720 --> 00:01:13.920
but how does Windows actually use the features of a tpm one big time tpm

00:01:11.680 --> 00:01:18.560
application is device encryption which encrypts your entire hard drive or SSD

00:01:16.000 --> 00:01:21.920
storing the encryption key on the tpm when you boot up your computer and log

00:01:20.000 --> 00:01:26.720
in with the correct password the tpm provides the key to decrypt the drive

00:01:24.320 --> 00:01:29.920
and allow you to continue whatever you do

00:01:27.680 --> 00:01:34.000
on your computer in this way if someone tries to steal your drive and plug it

00:01:31.840 --> 00:01:38.000
into another pc to access your data it won't work without a recovery key and

00:01:36.240 --> 00:01:42.240
even if an attacker tries to steal your data without physically removing the

00:01:39.680 --> 00:01:46.720
drive from your pc like say they bypass the Windows login by booting a different

00:01:43.840 --> 00:01:50.880
os from a usb stick tpm can protect from that as well sounds like a good thing

00:01:48.640 --> 00:01:54.640
for an os to have tpms also have other benefits aside from drive encryption

00:01:52.960 --> 00:01:59.520
Windows and other programs like web browsers can store keys and certificates

00:01:57.119 --> 00:02:03.520
inside a tpm so that they don't have to live in your system RAM which is easier

00:02:01.200 --> 00:02:07.360
for malware to exploit tpms can lock your system down for a period of time

00:02:05.040 --> 00:02:12.560
after too many incorrect pin guesses and tpms can even detect if malicious code

00:02:09.920 --> 00:02:16.319
has made any changes to your BIOS they do a little bit of everything so it's

00:02:14.480 --> 00:02:22.319
pretty obvious why having a tpm in your system is a good idea but why is Windows

00:02:18.800 --> 00:02:24.400
11 requiring it well malware attacks

00:02:22.319 --> 00:02:28.400
especially ransomware that have specifically targeted a computer's

00:02:26.160 --> 00:02:32.239
firmware have been on the Ryzen recent years which can bypass software

00:02:30.319 --> 00:02:36.720
protections built into the operating system a tpm in conjunction with secure

00:02:35.040 --> 00:02:41.120
boot which authenticates your pc's firmware and os when it starts up can

00:02:38.800 --> 00:02:44.640
help prevent these low-level attacks and since they're becoming more common

00:02:42.640 --> 00:02:48.400
microsoft obviously has a vested interest in ensuring Windows doesn't

00:02:46.640 --> 00:02:53.280
gain a reputation for being an operating system with poor security which is what

00:02:51.200 --> 00:02:59.440
apple apparently thinks of macOS but how easy is it to get a tpm is it

00:02:56.239 --> 00:03:03.040
expensive do i have one already am i a

00:02:59.440 --> 00:03:05.920
tpm well there's good and bad news here

00:03:03.040 --> 00:03:10.640
most pcs manufactured since about 2016 should have tpm 2.0 especially as modern

00:03:08.800 --> 00:03:16.800
cpus have it baked in in an implementation called ftpm with the f

00:03:13.599 --> 00:03:19.360
standing for firmware if your CPU

00:03:16.800 --> 00:03:23.760
doesn't have tpm 2.0 you can get yourself an add-on chip that should

00:03:21.280 --> 00:03:27.360
connect to your motherboard at least on desktops these have traditionally been

00:03:25.920 --> 00:03:30.720
rather inexpensive though there have been some reports of scalping recently

00:03:29.440 --> 00:03:34.400
after microsoft announced the requirement regardless you'll want to

00:03:32.560 --> 00:03:38.879
make sure that tpm is enabled in your BIOS as some people have failed Windows

00:03:36.400 --> 00:03:43.920
11 compatibility checks because the tpm that is there is just not enabled

00:03:41.440 --> 00:03:49.040
confusingly however microsoft has seemed to suggest that systems with the older

00:03:45.840 --> 00:03:50.959
tpm 1.2 might still be able to upgrade

00:03:49.040 --> 00:03:56.159
to Windows 11 with the caveat that doing so is not advised and they've also

00:03:53.840 --> 00:04:00.879
published a list of compatible cpus which seems to imply anything older than

00:03:58.000 --> 00:04:05.200
Intel 8th gen or ryzen 2nd gen aren't compatible and while there's speculation

00:04:03.360 --> 00:04:09.599
this might be just because these chips all have tpm 2.0 support we don't know

00:04:07.760 --> 00:04:13.519
at this point whether older cpus will flat out refuse to run Windows 11 even

00:04:11.599 --> 00:04:17.759
with an add-on chip once it officially launches in late 2021 or what other

00:04:15.920 --> 00:04:22.240
changes microsoft might make before release so hopefully you didn't drop two

00:04:20.239 --> 00:04:26.479
grand on a kb lake system that'll miss out on the return of those beautiful

00:04:24.639 --> 00:04:30.639
desktop widgets that we all definitely want

00:04:28.080 --> 00:04:35.040
i can't imagine anything i'd regret more one thing you would definitely not

00:04:32.479 --> 00:04:39.040
regret is checking out our sponsor for this video you green they're bringing

00:04:37.280 --> 00:04:43.360
high quality audio to an affordable price point with their new high tune x5

00:04:41.520 --> 00:04:47.840
true wireless earbuds they have 10 millimeter dynamic drivers and you

00:04:45.280 --> 00:04:52.720
green's signature super bass enhancement tech for a rich and deep audio

00:04:50.560 --> 00:04:56.720
experience you get ergonomic in-ear design with an oval-shaped stem to

00:04:54.400 --> 00:05:01.520
enhance comfort and stability hey need to make a call the four built-in mics

00:04:59.120 --> 00:05:06.320
and clear voice capture algorithm filter out ambient sounds and echoes these

00:05:03.360 --> 00:05:11.520
earbuds also feature bluetooth 5.2 noise cancellation touch controls ipx5

00:05:08.880 --> 00:05:15.039
waterproofing and up to 28 hours of play time there's seven hours of playback on

00:05:13.440 --> 00:05:19.919
a single charge and with a 15 minute charge you'll get another hour of audio

00:05:17.600 --> 00:05:24.960
get your high tune x5 earbuds today with a 30 launch discount by using the link

00:05:22.800 --> 00:05:28.479
below well i certainly don't regret the fact that you made it this far into the

00:05:26.320 --> 00:05:32.080
video thanks for watching i really appreciate you hey you know what you can

00:05:30.400 --> 00:05:36.000
like the video you can dislike the video you can check out our other videos and

00:05:33.840 --> 00:05:38.400
comment below with video suggestions and that's all that's all in your power to

00:05:37.759 --> 00:05:43.840
do because i believe you can do it

00:05:41.680 --> 00:05:46.479
subscribe and follow too i guess i don't know
