If Modern Warfare 4 says your PC does not meet its security requirements, TPM 2.0 or Secure Boot may be disabled or configured incorrectly. TPM 2.0 and Secure Boot are required to play Modern Warfare 4 on PC.
This guide shows you how to check both settings, enable them, fix common UEFI and GPT problems, and troubleshoot MW4 TPM and Secure Boot errors.
MW4 TPM 2.0 & Secure Boot Requirements
Activision requires more than simply having a TPM chip inside your PC. Your system needs the correct TPM, firmware, boot mode, and disk configuration to meet the Modern Warfare 4 security requirements.
| Requirement |
MW4 PC Requirement |
| TPM |
TPM 2.0 |
| Secure Boot |
Enabled |
| BIOS Boot Mode |
UEFI |
| System Disk |
GPT |
| Windows 10 |
Version 22H2 or later |
| Windows 11 |
Supported |
| Intel CPU |
8th Gen or newer with Intel PTT |
| AMD CPU |
Ryzen 2000 series or newer with AMD CPU fTPM |
Windows 11 PCs are more likely to already have these security features available because TPM 2.0 is part of the Windows 11 requirements. However, you should still check your TPM and Secure Boot status instead of assuming your PC is ready for MW4.
Before changing BIOS settings: BIOS and UEFI menus are different on every motherboard. Incorrect changes can stop Windows from booting, so check your PC or motherboard manufacturer's instructions before changing settings you do not recognize.
First: Run the Call of Duty Secure Attestation Wizard
Before opening your BIOS, run Activision's
Call of Duty Secure Attestation Wizard. It is one of the easiest ways to find out which Call of Duty security requirement your PC is failing.
Download the
latest Secure Attestation Wizard from Activision rather than relying on an older saved version of the tool.
To use it:
- Download the latest Call of Duty Secure Attestation Wizard.
- Extract the downloaded ZIP file.
- Open
CODSecureAttestationWizard.exe.
- Accept the terms.
- Run the security scan.
- Check the result shown by the Wizard.
If you receive
System compliant, your PC meets the security requirements checked by the tool and no further changes should be needed.
If you receive
System not compliant, the Wizard should identify which part of your security configuration needs attention.
MW4 Secure Attestation Wizard Errors
The exact result tells you where to start troubleshooting.
| Wizard Result |
What It Means |
| TPM 2.0: Not Enabled |
TPM 2.0 needs to be enabled or configured correctly. |
| Secure Boot: Not Enabled |
Secure Boot is currently disabled. |
| Boot Partition Not Set to GPT |
Your Windows system disk needs the GPT partition style. |
| BIOS Boot Mode Not Set to UEFI |
Your PC is using an unsupported Legacy or CSM boot configuration. |
| BIOS Firmware Update Required |
Your motherboard firmware may need to be updated. |
| Authorization Key Failed |
The Wizard could not complete its authorization check through Windows UAC. |
| TCG Event Log Failed |
Windows may need to be updated and restarted. |
How to Check If TPM 2.0 Is Enabled
You can check TPM 2.0 from Windows before entering the BIOS.
- Press Windows + R.
- Type
tpm.msc.
- Press Enter.
- Look under the Status section.
If TPM is working correctly, Windows should report that
the TPM is ready for use.
Then look under
TPM Manufacturer Information and check
Specification Version. Modern Warfare 4 requires it to show
2.0.
If Windows reports that a compatible TPM cannot be found, your PC may still support TPM but have it disabled in UEFI or BIOS.
How to Check If Secure Boot Is Enabled
Windows also lets you check Secure Boot without changing anything in your BIOS.
- Press Windows + R.
- Type
msinfo32.
- Press Enter.
- Find BIOS Mode.
- Find Secure Boot State.
For Modern Warfare 4, you want to see:
- BIOS Mode: UEFI
- Secure Boot State: On
If Secure Boot State says
Off, your PC may support the feature but currently have it disabled.
If BIOS Mode says
Legacy, do not simply switch the BIOS to UEFI. First check whether your Windows system disk uses GPT or MBR because changing the firmware mode on an incompatible Windows installation can prevent the PC from starting.
How to Enable TPM 2.0 for Modern Warfare 4
TPM is normally enabled through your motherboard's UEFI or BIOS settings. The exact menus and names differ between Intel systems, AMD systems, laptops, and motherboard brands.
A general way to reach UEFI from Windows 11 is:
- Open Settings.
- Go to System โ Recovery.
- Find Advanced startup.
- Select Restart now.
- Select Troubleshoot.
- Select Advanced options.
- Select UEFI Firmware Settings.
- Select Restart.
On Windows 10, Advanced startup is found under
Settings โ Update & Security โ Recovery.
Once inside the BIOS, TPM settings may appear under sections such as
Advanced,
Security, or
Trusted Computing.
What Is TPM Called in BIOS?
Different CPU and motherboard manufacturers use different names for TPM.
| Platform |
Common TPM Name |
| Intel |
Intel PTT |
| Intel |
Intel Platform Trust Technology |
| AMD |
AMD CPU fTPM |
| AMD |
AMD PSP fTPM |
| Other Systems |
Security Device or Security Device Support |
| Other Systems |
TPM State |
| Discrete TPM |
dTPM |
Enable the appropriate TPM setting, save your changes, and reboot Windows.
After Windows starts again, run
tpm.msc and confirm that TPM is ready for use and that the Specification Version is
2.0.
How to Enable Secure Boot for Modern Warfare 4
Before enabling Secure Boot, your PC needs to use
UEFI boot mode and your Windows system disk needs to use
GPT.
If both are already correct, the general process is:
- Open your PC's UEFI or BIOS.
- Find the Boot or Security section.
- Find Secure Boot or Secure Boot State.
- Set Secure Boot to Enabled.
- Save your changes.
- Restart Windows.
- Open
msinfo32.
- Confirm that Secure Boot State now says On.
Some BIOS menus require you to save the UEFI setting and restart back into the BIOS before Secure Boot can be enabled.
Secure Boot Is Greyed Out or Won't Enable
A greyed-out Secure Boot option usually means another part of the required configuration is not ready yet.
First, check
msinfo32. If
BIOS Mode says Legacy instead of UEFI, you need to correct the boot configuration before Secure Boot can work.
Also check whether your Windows system disk uses
GPT. Modern Warfare 4 requires the UEFI and Secure Boot security configuration, which means the system disk needs to use GPT rather than the older MBR partition style.
If you already use UEFI and GPT but Secure Boot remains unavailable, check the instructions for your exact motherboard or PC model. Some systems require CSM to be disabled, Secure Boot keys to be installed, or another manufacturer-specific setting to be changed.
How to Check If Your Windows Drive Is GPT or MBR
You can check the partition style from Windows without changing anything.
- Right-click the Windows Start button.
- Select Disk Management.
- Find the disk containing your Windows installation.
- Right-click the disk number and select Properties.
- Open the Volumes tab.
- Find Partition style.
For the MW4 security requirements, you want:
GUID Partition Table (GPT)
If it says
Master Boot Record (MBR), the drive needs to be prepared for GPT before you can use the required UEFI and Secure Boot configuration.
What to Do If Your Windows Drive Uses MBR
Microsoft provides a tool called
MBR2GPT that can convert supported Windows system disks from MBR to GPT without deleting the existing data on the disk.
However, changing your system disk and boot configuration is more serious than simply enabling TPM. Back up important files first and follow Microsoft's official MBR2GPT instructions for your Windows installation.
After a successful MBR-to-GPT conversion, the PC firmware also needs to be changed to boot using
UEFI. Do not convert the disk or change Legacy and UEFI settings unless you understand the process or are following instructions for your specific system.
Important: Do not blindly change BIOS Mode from Legacy to UEFI on an existing MBR Windows installation. If the system is not prepared for UEFI boot first, Windows may fail to start.
MW4 Says "BIOS Boot Mode Not Set to UEFI"
If the Call of Duty Secure Attestation Wizard reports
BIOS Boot Mode Not Set to UEFI, your PC is probably booting through Legacy BIOS or CSM mode.
Check
msinfo32 and look at
BIOS Mode.
If it says Legacy:
- Check whether your Windows disk uses GPT or MBR.
- If it uses MBR, deal with the disk conversion first.
- Confirm that your motherboard supports UEFI boot.
- Follow your motherboard manufacturer's instructions for switching to UEFI.
- Enable Secure Boot only after Windows successfully boots using UEFI.
Once Windows loads successfully again, rerun the Secure Attestation Wizard.
MW4 Says "Boot Partition Not Set to GPT"
This error means Call of Duty detected that your Windows system disk is not using the required GPT partition style.
The MW4 Secure Boot configuration should look like this:
GPT system disk โ UEFI boot mode โ Secure Boot enabled
If the drive is still MBR, use the steps above to verify the partition style and then follow Microsoft's MBR2GPT guidance if your system is eligible for conversion.
TPM 2.0 Is Enabled but MW4 Still Says It Isn't
If
tpm.msc shows TPM 2.0 as ready but Modern Warfare 4 still fails the security check, the problem may be related to your motherboard firmware or TPM manufacturer version.
Start by running the latest Call of Duty Secure Attestation Wizard. Also install current Windows updates and check your motherboard manufacturer's support page for a newer BIOS or firmware update.
AMD TPM Firmware Problem
Activision identifies a specific problem with some AMD TPM firmware versions matching the pattern
AMD 3.*.0.*.
For example:
- AMD 3.92.0.5: firmware update required
- AMD 3.92.5.5: not affected by this specific check
You can see your TPM firmware version by opening
tpm.msc and looking under
TPM Manufacturer Information.
If you have an affected AMD version, check your motherboard manufacturer's support page for an appropriate BIOS or firmware update.
Intel TPM Firmware Problems
Activision also flags some Intel firmware versions beginning with:
- INTC 302.12.*.*
- INTC 303.12.*.*
Systems using these versions may need a motherboard firmware update. Check with your motherboard or PC manufacturer before updating your BIOS.
CODBrokerInstaller.exe or enrollaik.exe Pop-Up
When Call of Duty performs its TPM registration or security validation on PC, Windows may show a User Account Control prompt.
The expected prompt may come from:
CODBrokerInstaller.exe
enrollaik.exe
If you launched the official Call of Duty client and receive the expected prompt, approve it so the TPM validation process can complete.
Selecting
No or closing the prompt can prevent authorization from completing and may cause the security check to fail.
If
enrollaik.exe keeps appearing even after you approve it, check your TPM manufacturer version. Certain affected AMD firmware versions can cause repeated registration failures and may require a BIOS or firmware update.
MW4 "Authorization Key Failed" Error
If the Secure Attestation Wizard shows
Authorization Key Failed, it could not complete the required authorization through Windows User Account Control.
The Wizard may provide a
Generate Key option. This can trigger an
enrollaik.exe UAC prompt so the tool can validate TPM 2.0.
Approve the expected prompt and rerun the security check.
If
CODBrokerInstaller.exe reports that authorization was declined without displaying a UAC prompt, review your Windows User Account Control notification settings and restart Call of Duty afterward.
MW4 "TCG Event Log Failed" Error
A
TCG Event Log Failed message can appear when your Windows installation is not fully updated or the required security information cannot be read correctly.
Try the following first:
- Restart your PC.
- Install all available Windows updates.
- Restart again if required.
- Run the Secure Attestation Wizard again.
This is one of the errors worth troubleshooting through Windows Update before making unnecessary BIOS changes.
Does MW4 Require TPM 2.0 on Windows 10?
Yes. Using Windows 10 does not remove the TPM 2.0 or Secure Boot requirements for Modern Warfare 4.
For the required Call of Duty security configuration, Windows 10 players need:
- Windows 10 version 22H2 or later
- TPM 2.0
- Secure Boot
- UEFI boot mode
- A GPT system disk
A PC using only TPM 1.0 or TPM 1.2 does not meet the TPM 2.0 requirement.
Do Console Players Need TPM 2.0 or Secure Boot?
No. TPM 2.0 and Secure Boot are PC security requirements.
Console players do not need to enter a PC BIOS, configure Windows TPM settings, or change their system disk to play Modern Warfare 4.
This guide applies specifically to players launching Modern Warfare 4 on PC.
What Happens If You Don't Enable TPM 2.0 and Secure Boot?
Activision lists
TPM 2.0 and Secure Boot as required for Modern Warfare 4 on PC. If your system does not meet the required security configuration, MW4 can prevent access until the PC passes the required security checks.
These features are part of Call of Duty's wider PC security system and work alongside RICOCHET Anti-Cheat to help verify the integrity of the system from startup through gameplay.
If MW4 reports a TPM or Secure Boot problem, use the Secure Attestation Wizard and Windows checks in this guide before changing BIOS settings at random.
Modern Warfare 4 PC Security Checklist
Before launching MW4, run through this final checklist:
- Windows: Windows 10 22H2+ or Windows 11
- TPM version: 2.0
- TPM status: Ready for use
- BIOS Mode: UEFI
- Secure Boot State: On
- Windows system disk: GPT
- BIOS: Updated if required by the Secure Attestation Wizard
- Windows Update: Current
- Secure Attestation Wizard: System compliant
If all of these checks pass, your PC should meet the TPM 2.0 and Secure Boot configuration required for Modern Warfare 4.
MW4 TPM 2.0 & Secure Boot FAQ
Does Modern Warfare 4 require TPM 2.0?
Yes. Activision lists TPM 2.0 as a requirement for Modern Warfare 4 on PC.
Does MW4 require Secure Boot?
Yes. Secure Boot is required for Modern Warfare 4 on PC.
Can I play MW4 without Secure Boot?
Modern Warfare 4 officially requires Secure Boot on PC. If Secure Boot is disabled, your PC does not meet the listed MW4 security requirements.
Can I play MW4 with TPM 1.2?
No. The required TPM specification is
TPM 2.0.
How do I check my TPM version for MW4?
Press
Windows + R, type
tpm.msc, and check the Specification Version under TPM Manufacturer Information. It should show
2.0.
How do I check Secure Boot for MW4?
Press
Windows + R, type
msinfo32, and look for Secure Boot State. It should say
On.
Does MW4 require UEFI?
Yes. Secure Boot requires the PC to use
UEFI rather than Legacy BIOS or CSM mode.
Does my Windows drive need to use GPT for MW4?
Yes. The system disk needs to use GPT for the required UEFI and Secure Boot configuration.
What should BIOS Mode say for MW4?
BIOS Mode should show
UEFI, not Legacy or CSM.
What is Intel PTT?
Intel Platform Trust Technology is Intel's firmware-based implementation of TPM. It may appear in your BIOS as
Intel PTT or
Intel Platform Trust Technology.
What is AMD fTPM?
AMD fTPM is AMD's firmware-based TPM implementation. It may appear in BIOS as
AMD CPU fTPM or
AMD PSP fTPM.
Why is Secure Boot greyed out?
Check whether the PC is using UEFI mode and whether your Windows system disk uses GPT. Secure Boot may remain unavailable when Legacy or CSM boot mode is still active.
Why does MW4 still say TPM isn't enabled?
Run the latest Call of Duty Secure Attestation Wizard. If TPM 2.0 is already enabled, check Windows updates, your TPM firmware version, and whether your motherboard needs a BIOS or firmware update.
What is CODBrokerInstaller.exe?
CODBrokerInstaller.exe is used during Call of Duty's TPM registration and authorization process. An expected Windows UAC prompt may need to be approved for validation to complete.
What is enrollaik.exe?
enrollaik.exe can appear during TPM authorization and validation. Denying the expected prompt can stop the security validation from completing.
Do I need TPM 2.0 for MW4 on Windows 10?
Yes. Windows 10 players still need TPM 2.0 and Secure Boot for Modern Warfare 4. Call of Duty also requires Windows 10 version 22H2 or later.
Do PS5 or Xbox players need TPM 2.0 for MW4?
No. TPM 2.0 and Secure Boot requirements apply to PC players, not console players.