Driver FixRecommendedSound, Wi-Fi or graphics acting up? Check drivers firstFind missing or outdated drivers fast.Check DriversOctober DealsAmazon USOctober deal check: compare before you payAmazon US: current deals, useful picks and tech finds.Check DealsSlow PC?RecommendedPC slow today? Run a repair scan before it gets worseResolve common Windows issues and optimize system performance.Scan Now×
Skip to content
Bootable USB

How to Use Rufus to Bypass Windows 11’s TPM Check (Safe Clean-Install Guide)

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Rufus does not disable, remove, or emulate your computer’s TPM. It creates Windows 11 installation media that tells Windows Setup to skip the TPM 2.0 and Secure Boot checks. The dependable method is to boot the target computer from that USB and perform a clean installation. Microsoft considers hardware that fails its requirements unsupported, so back up your data and understand the update, driver, warranty, and compatibility risks before continuing.

What Rufus changes—and what it does not

TPM is a firmware or hardware security component. On Intel systems it may be called PTT; on AMD systems it is commonly fTPM. Other firmware labels include TPM Device and Security Device Support.

Rufus changes the Windows installation environment on the USB. Its Windows User Experience dialog can add Setup bypasses such as BypassTPMCheck and BypassSecureBootCheck, as documented in the Rufus FAQ. Your firmware TPM setting remains unchanged.

Check whether TPM can simply be enabled

  1. Press Windows + R, type tpm.msc, and press Enter.
  2. Check whether Windows detects a TPM and reports specification version 2.0.
  3. If none is found, restart and enter UEFI/BIOS setup.
  4. Look for Intel PTT, AMD fTPM, TPM Device, Security Device Support, or a similar setting. Enable it, save, and check again.

Enabling an existing TPM is preferable because it keeps the computer within Microsoft’s supported hardware configuration. Firmware menu names and locations vary by manufacturer; there is no universal BIOS path. Microsoft’s minimum requirement is described in its Windows 11 hardware requirements.

Free tools Windows power users keep installed

One-click scans. No signup required.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
#1 Best Overall
Lexar D40E 128GB Dual USB 3.2 Gen 1 Type-C Jump Drive, Champagne Silver
  • USB-C 2-in-1 storage OTG: The Lexar JumpDrive Dual Drive D40E features USB Type-A and Type-C connectors in a slim, portable form factor for easy device compatibility
  • Transfer speeds up to 100MB/s: Based on internal testing, performance may vary depending upon the host device, interface, and usage conditions. 1MB=1,000,000 bytes
  • Plug and Play: Widely compatible with USB Type-C smartphones, tablets, laptops, Macs, and traditional Type-A devices, no software installation required. The 360° swivel design allows for easy switching between connectors without the hassle of losing a cap
  • Durable & Compact: The Lexar D40E USB memory stick features a metal enclosure, withstands temperatures from 0° to 50° C (32°F to 122°F), and is lightweight at 26g with dimensions of 70.4 x 16.9 x 11.7mm
  • Security & Warranty: Securely protects files using an advanced security software solution with 256-bit AES encryption. Backed by a Lexar 3-year limited warranty

Before you create the USB

  • Back up everything: a clean installation can remove personal files, applications, profiles, recovery partitions, vendor utilities, and boot configuration.
  • Save encryption keys: export your BitLocker or device-encryption recovery key before changing firmware or reinstalling.
  • Use a blank USB: Rufus formats the selected drive. Verify its capacity and contents; choosing the wrong device can erase another disk.
  • Have a license: activation requires a valid product key or digital entitlement.
  • Confirm hardware basics: bypassing TPM does not bypass storage, memory, CPU-instruction, graphics, firmware, driver, or performance limitations.
  • Prepare boot access: find your computer’s one-time boot-menu key and confirm it can boot from USB.

Download Rufus and an official Windows 11 ISO

Download Rufus only from rufus.ie or its official downloads directory. The site listed Rufus 4.15, released June 30, 2026, as the latest release during the current documentation period. Most Intel- and AMD-based PCs need the Windows x64 build; the portable edition does not require installation.

Get the ISO from Microsoft’s Windows 11 download page. Microsoft currently identifies Windows 11 2025 Update, version 25H2, as its current release. Select the requested language; the multi-edition ISO uses your product key or digital license to select the applicable edition. Avoid modified third-party images and verify the download when possible.

Create the Rufus USB with the TPM bypass

  1. Insert the blank USB drive and start Rufus. Approve administrator access if Windows requests it.
  2. Confirm Device names the intended USB.
  3. Set Boot selection to Disk or ISO image, click SELECT, and open the Windows 11 ISO.
  4. For a modern UEFI computer, choose GPT for Partition scheme and UEFI for Target system. Use MBR/BIOS only when the target computer requires legacy booting. If unsure, check the manufacturer’s documentation.
  5. Click Start. Rufus may open a Windows User Experience dialog.
  6. Select the option whose wording removes the Windows 11 requirements for TPM 2.0 and Secure Boot. Older releases have shown wording such as “Remove requirement for 4GB+ RAM, Secure Boot and TPM 2.0.” Labels and available checkboxes vary with Rufus and the ISO. Select a 4 GB RAM bypass only when you understand the performance implications.
  7. Confirm the erase warning and wait for Rufus to finish.

The bypass is applied to this installation media; it does not permanently change TPM or Secure Boot in firmware.

Rank #2
SANDISK 128GB Ultra Flair, USB-A Flash Drive, Up to 150MB/s Read Speeds
  • High-speed USB 3.0 performance of up to 150MB/s(1) [(1) Write to drive up to 15x faster than standard USB 2.0 drives (4MB/s); varies by drive capacity. Up to 150MB/s read speed. USB 3.0 port required. Based on internal testing; performance may be lower depending on host device, usage conditions, and other factors; 1MB=1,000,000 bytes]
  • Transfer a full-length movie in less than 30 seconds(2) [(2) Based on 1.2GB MPEG-4 video transfer with USB 3.0 host device. Results may vary based on host device, file attributes and other factors]
  • Transfer to drive up to 15 times faster than standard USB 2.0 drives(1)
  • Sleek, durable metal casing
  • Easy-to-use password protection for your private files(3) [(3)Password protection uses 128-bit AES encryption and is supported by Windows 7, Windows 8, Windows 10, and Mac OS X v10.9 plus; Software download required for Mac, visit the SanDisk SecureAccess support page]

Boot the target PC from the USB

  1. Leave the USB connected and restart the target computer.
  2. Open the one-time boot menu. Common keys include F12, F9, Esc, or a manufacturer-specific key.
  3. Choose the USB, preferably its explicit UEFI entry when two entries appear.
  4. Start Windows Setup from the USB.

Do not open the USB in File Explorer and run setup.exe if your goal is Rufus’s normal TPM bypass. Rufus documents that bypass as applying when the computer boots from the created media, not as a general in-place-upgrade switch. See the Rufus upgrade FAQ.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Install Windows 11 without deleting the wrong disk

  1. In Setup, choose Custom: Install Windows only for a clean installation.
  2. Identify the target disk by capacity and existing layout before deleting or formatting anything.
  3. Delete or format partitions only after confirming your backup. Disconnecting unrelated internal drives is a useful precaution against selecting the wrong disk.
  4. When replacing an old Windows installation, leaving the target disk unallocated lets Setup create its required partitions automatically.

A clean install removes the old Windows environment. It is not the same as preserving applications and files through an in-place upgrade.

Finish with post-install checks

  1. Run Windows Update.
  2. Install missing drivers from Windows Update and, when necessary, the computer manufacturer.
  3. Open Device Manager and investigate unknown devices.
  4. Check Settings > System > Activation.
  5. Test networking, audio, graphics, sleep, Wi-Fi, Bluetooth, storage, Windows Hello, and your essential applications.
  6. Review firmware security settings after installation; do not change Secure Boot or TPM settings without confirming that your boot configuration supports the change.

What this bypass cannot guarantee

Rufus’s TPM option is not a universal Windows 11 compatibility bypass. Remaining barriers can include:

Rank #3
2 Pack 64GB USB Flash Drive USB 2.0 Thumb Drives Jump Drive Fold Storage Memory Stick Swivel Design - Black
  • What You Get - 2 pack 64GB genuine USB 2.0 flash drives, 12-month warranty and lifetime friendly customer service
  • Great for All Ages and Purposes – the thumb drives are suitable for storing digital data for school, business or daily usage. Apply to data storage of music, photos, movies and other files
  • Easy to Use - Plug and play USB memory stick, no need to install any software. Support Windows 7 / 8 / 10 / Vista / XP / Unix / 2000 / ME / NT Linux and Mac OS, compatible with USB 2.0 and 1.1 ports
  • Convenient Design - 360°metal swivel cap with matt surface and ring designed zip drive can protect USB connector, avoid to leave your fingerprint and easily attach to your key chain to avoid from losing and for easy carrying
  • Brand Yourself - Brand the flash drive with your company's name and provide company's overview, policies, etc. to the newly joined employees or your customers
  • Unsupported CPU architecture or missing instruction support.
  • Insufficient RAM or storage.
  • A 32-bit-only processor.
  • Unsupported graphics, firmware, or missing drivers.
  • A system too slow for acceptable daily use.
  • Firmware that cannot boot the selected GPT/UEFI or MBR/BIOS layout.
  • Setup changes tied to a particular Windows release.

For Windows 11 24H2 and later, SSE4.2 and POPCNT can be hard CPU requirements. Rufus states that systems lacking critical instruction support cannot be made compatible through a simple installer bypass; it also warns that bypassing memory or storage requirements can cause crashes, poor performance, or unresolved update issues. See the current Rufus FAQ.

Clean install versus in-place upgrade

Path How it works What to expect
Boot from Rufus USB Start the PC from the created media and run Windows Setup. The documented TPM/Secure Boot bypass is intended for this clean-install route; existing apps and files are normally removed if you format the system partition.
Run setup.exe inside Windows Launch Setup from the existing installation. The standard Rufus bypass does not automatically apply. Newer Rufus versions have separate, version- and ISO-dependent handling for some 24H2 in-place restrictions, but it is not equivalent to the basic USB procedure.

Troubleshooting

The bypass option is missing

Click Start first; the controls are in the Windows User Experience dialog, not the main window. The ISO must be recognized as a Windows image, and Rufus must run on Windows 8 or later. Rufus or the ISO version may also change the wording and available options.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Setup still reports unsupported hardware

  • Confirm you booted the USB rather than launching setup.exe.
  • Recheck that the correct USB was selected in the boot menu.
  • Use an official Windows 11 ISO and recreate the drive if Rufus reported an error.
  • Check for a CPU-instruction, RAM, storage, driver, or firmware failure unrelated to TPM.

The computer starts the old Windows installation

The internal disk was probably selected, the boot order did not change, or the USB’s boot mode does not match the firmware. Recreate the media with the appropriate partition scheme and select the explicit UEFI USB entry when available.

Rank #4
SIMMAX 32GB Memory Stick USB 2.0 Flash Drives Swivel Thumb Drive Pen Drive (32GB Purple)
  • GOOD VALUE PACKAGE - 1 Pack 32GB Memory Stick USB 2.0 Flash Drives with great cost performance and high quality.
  • BIG CAPACITY - The available capacity: 29.10GB-29.8GB, You can save the data of movies, music, photos, designs, programs, manuals, handouts in a high speed.Good performance in digital data storing, transferring and sharing with families, friends, workmates, clients and machines.
  • EASY TO USE & PLUG AND WORK - Support windows 7 / 8 / 10 / Vista / XP / 2000 / ME / NT Linux and Mac OS, Compatible with USB2.0 and below.
  • TWISTTURN DESIGN & EASY CARRY - The metal clip rotates 360° round the ABS plastic body which with rubber oil skin feeling finish. The capless design can avoid lossing of cap, and providing efficient protection to the USB port.
  • WARRANTY & SUPPORT - SIMMAX logo is laser printed on the USB connector surface, our products are of good quality and we promise that any problem about the product within one year since you buy.

The USB is not visible

Try another port (a rear motherboard port on a desktop), another flash drive, or a freshly recreated USB. Check that USB boot is enabled in firmware. Do not automatically disable Secure Boot: some systems boot the media with it enabled, while others may require a temporary change depending on the bootloader and firmware. Rufus discusses these variations in its FAQ.

Windows 11 25H2 shows a boot or Secure Boot certificate error

Rufus documents an advanced Windows UEFI CA 2023 case for systems where the older PCA 2011 certificate has been revoked. Rufus 4.10 or later can create media with CA 2023-signed bootloaders, but the procedure requires a compatible Windows 11 25H2 ISO; the FAQ says a 24H2 ISO does not work for that specific scenario.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

Support and update risks

Microsoft requires TPM 2.0 for supported Windows 11 hardware. Its download page warns that installing on ineligible devices can cause compatibility problems, loss of support, warranty limitations, and no entitlement to updates. Windows Update may work, but neither feature updates nor monthly updates are guaranteed on unsupported hardware.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Best Value
Sale
IMEASON Swivel Design 16GB USB Flash Drive with Keychain, USB 2.0 Portable Thumb Drive Memory Stick, FAT32 Format Flashdrive for Data Storage, Photos, Music, Files (Black, 16 GB)
  • 【16GB Flash Drive】USB flash drives with 16GB capacity, meet your needs of daily use on work, school, home and travelling for photos, music, videos, files storage and transfer. IMEASON thumb drives can be used to store different files, easy to data backup.
  • 【Metal Swivel Cap Design】USB thumb drive is metal swivel cover provides extra protection for the usb thumbdrive connector, no usb drive cap to lose; keychain design makes it easier to carry without worrying lose it.
  • 【Wide Compatibility】USB drive supports Windows 7/8/10/11 / Vista / XP / Unix / 2000 / ME / NT Linux and Mac OS, also Supports USB 2.0 and 1.1 ports. USB Stick support TV, desktop, notebook computer, car, audio and other device. The USB Memory Stick is your great data storage and transfer companion with traveling and working.
  • 【Easy to use】usb memory stick is plug and play without any software installation. Just simply plug the Flashdrive into the port of your USB-compatible devices such as computer, laptop to start data storage or transmission.
  • 【What You Get】16 GB USB Flash Drive Thumb Drive, The default format of the usb storage flash drive is FAT32.

Safer alternatives

  • Enable Intel PTT, AMD fTPM, or another firmware TPM when available.
  • Use Microsoft’s Installation Assistant, Media Creation Tool, or ISO on compliant hardware.
  • Keep the computer on Windows 10 when Windows 11 performance or compatibility is unacceptable; support dates depend on your edition and licensing situation.
  • Consider Linux or another lightweight operating system if keeping the hardware useful matters more than running Windows 11 specifically.
  • Upgrade or replace the computer when CPU instructions, firmware, drivers, or performance are fundamentally inadequate. Microsoft’s PC Health Check guidance outlines these options.

Frequently Asked Questions

Does Rufus disable TPM?

No. Rufus modifies Windows installation media so Setup skips selected checks. It does not disable, remove, or emulate the TPM in your computer.

Can I keep my files and applications?

The standard Rufus bypass is intended for booting from USB and performing a clean installation. That path can remove files, applications, profiles, and recovery partitions. An in-place upgrade is a separate scenario and the normal bypass does not automatically apply to it.

Will Windows Update continue to work?

It may, but Microsoft does not guarantee updates or support for installations on hardware that fails Windows 11 requirements.

Do I need to disable Secure Boot?

Not always. Whether it is necessary depends on the firmware, bootloader signing, ISO, and boot path. Try the created media with Secure Boot enabled before changing firmware settings.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Can this bypass CPU requirements?

Not reliably. CPU architecture and required instructions such as SSE4.2 and POPCNT can remain hard limits, and Rufus does not promise a universal CPU bypass.

What if the PC has no TPM at all?

The USB method may let Windows Setup proceed, but the resulting installation remains unsupported and can still fail other hardware, driver, performance, or update requirements.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Leave a Reply

Your email address will not be published. Required fields are marked *

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Read next

Recommended PC Tool
Recommended PC Tool
Outdated Drivers Are Slowing You DownFree scan - exact matches
Windows Errors? Fix Them Before They SpreadFree repair scan

Two free Windows tools

One Free Minute Could Fix That PC

Before you go - each of these free tools takes about a minute and tackles what quietly slows a Windows PC down.

Special offer. View Outbyte info, uninstall instructions, EULA, and Privacy Policy.