BIOS Configuration
Configure your BIOS settings according to your processor type and manufacturer.
Intel BIOS Settings
Disable TPM
• Advanced → PCH-FW Configuration
• Set PTT → Disabled
• Trusted Computing → Security Device Support → Disabled
Disable CSM
• Boot → Launch CSM → Disabled
Disable Secure Boot
• Boot → Secure Boot → OS Type → Other OS
• Secure Boot Mode → Custom
• Key Management → Clear Secure Boot Keys → Yes
• Press F10 to save. Select OK to confirm changes.
Wi-Fi/Bluetooth (if applicable)
Desktops:
- • Advanced → Devices → Onboard Devices
- • Uncheck WLAN and Bluetooth
- • Press F10 and select OK to save changes
Laptops:
- • Physically remove the Wi-Fi card
- • Unscrew and remove it
Disable TPM
• Settings → Security → Trusted Computing
• Security Device Support → Disabled
Disable CSM
• Boot → Launch CSM → Disabled
Disable Secure Boot
• Settings → Security → Secure Boot
• Secure Boot Mode → Standard → Custom
• Provision Factory Default Keys → Disabled
• Key Management → Clear Secure Boot Keys → Yes
• Press F10 and select YES to save changes
Wi-Fi/Bluetooth (if applicable)
• Advanced → Onboard Devices
• Disable Wi-Fi Controller and Bluetooth
• Press F10 to save
Note: Secure Boot on MSI motherboards is typically found under Settings → Advanced → Windows OS Configuration (e.g., B450M Bazooka).
Disable TPM
• Settings → Miscellaneous → Trusted Computing
• Security Device Support → Set to Disabled
Disable CSM
• Boot → CSM Support → Disabled
Disable Secure Boot
• Boot → Secure Boot
• Secure Boot Mode → Standard → Switch to Custom
• Key Management
- • Clear Secure Boot Keys → Select Yes
- • Provision Factory Default Keys → Disabled
Wi-Fi/Bluetooth (if applicable)
Desktops:
• Physically remove the Wi-Fi card:
- • Unscrew and carefully remove the card from the M.2 Key-E slot
- • Detach the antenna connectors
Laptops:
• Physically remove the Wi-Fi card:
- • Unscrew and remove the card
Disable TPM
• Advanced → Trusted Computing
• Set Security Device Support → Disabled
Disable CSM
• Boot → CSM → Disabled
Disable Secure Boot
• Boot → Secure Boot → OS Type → Other OS
• Key Management → Clear Secure Boot Keys → Yes
• Press F10 to save and confirm OK
Wi-Fi/Bluetooth (if applicable)
• Advanced → Onboard Devices
• Disable Wi-Fi Controller and Bluetooth
• Press F10 to save
Disable TPM
• Security → TPM Configuration
• Set Security Device Support → Disabled
Disable CSM
• Boot → CSM → Disabled
Disable Secure Boot
• Boot → Secure Boot → OS Type → Other OS
• Key Management → Clear Secure Boot Keys → Yes
• Press F10 and select OK to save
Wi-Fi/Bluetooth (if applicable)
• Advanced → Onboard Devices
• Disable Wi-Fi and Bluetooth
• Press F10 to save
AMD BIOS Settings
Disable fTPM and Trusted Computing
• Advanced → AMD fTPM
• Set TPM Device Selection → Discrete TPM or Disabled
• Advanced → Trusted Computing → Security Device Support → Disabled
Disable CSM
• Boot → Launch CSM → Disabled
Disable Secure Boot
• Boot → Secure Boot → OS Type → Other OS
• Key Management → Clear Secure Boot Keys → Yes
• Press F10 to save. Select OK to confirm.
Wi-Fi/Bluetooth (if applicable)
Desktops:
• Advanced → Onboard Devices Configuration
• Disable WLAN and Bluetooth
• Press F10 and select OK to save changes
Laptops:
• Physically remove the Wi-Fi card:
• Unscrew and remove the card.
Disable fTPM and Trusted Computing
• Settings → Security → Trusted Computing
• Set Security Device Support → Disabled
Disable CSM
• Settings → Boot → Launch CSM → Disabled
Disable Secure Boot
• Settings → Security → Secure Boot
• Secure Boot Mode → Standard → Custom
• Provision Factory Default Keys → Disabled
• Key Management → Clear Secure Boot Keys → Yes
• Press F10 and select YES to save changes
Wi-Fi/Bluetooth (if applicable)
• Settings → Advanced → Integrated Peripherals
• Disable Wi-Fi Controller and Bluetooth
• Press F10 to save
Note: Secure Boot on MSI motherboards is typically found under Settings → Advanced → Windows OS Configuration (e.g., B450M Bazooka).
Disable fTPM and Trusted Computing
• Settings → Miscellaneous
• AMD CPU fTPM → Set to Disabled
• Settings → Miscellaneous → Trusted Computing
• Security Device Support → Set to Disabled
Disable CSM
• BIOS → CSM Support → Disabled
Disable Secure Boot
• Boot → Secure Boot
• Secure Boot Mode → Standard → Switch to Custom
• Key Management
- • Clear Secure Boot Keys → Select Yes
- • Provision Factory Default Keys → Disabled
Wi-Fi/Bluetooth (if applicable)
Desktops:
• Physically remove the Wi-Fi card:
- • Unscrew and carefully remove the card from the M.2 Key-E slot
- • Detach the antenna connectors
Laptops:
• Physically remove the Wi-Fi card:
- • Unscrew and remove the card
Disable Trusted Computing
• Advanced → Trusted Computing
• Set Security Device Support → Disabled
Disable CSM
• Boot → CSM → Disabled
Disable Secure Boot
• Boot → Secure Boot
• Set Secure Boot → Disabled
• Secure Boot Mode → Custom
• Key Management → Factory Key Provision → Disabled
• Clear Secure Boot Keys
• Press F10 to save and confirm OK
Wi-Fi/Bluetooth (if applicable)
• Advanced → Onboard Devices Configuration
• Disable Wi-Fi Controller and Bluetooth
• Press F10 to save
Disable fTPM and Trusted Computing
• Security → Trusted Computing
• Set Security Device Support → Disabled
Disable CSM
• Boot → CSM → Disabled
Disable Secure Boot
• Boot → Secure Boot
• Set Secure Boot → Disabled
• Press F10 and select OK to save
Wi-Fi/Bluetooth (if applicable)
• Advanced → Integrated Peripherals
• Disable Wi-Fi and Bluetooth
• Press F10 to save