What does HRESULT 0x80310067 (FVE_E_POLICY_STARTUP_TPM_REQUIRED) mean?

 
Previous Next
FVE_E_POLICY_STARTUP_TPM_NOT_ALLOWED FVE_E_POLICY_INVALID_PIN_LENGTH

FVE_E_POLICY_STARTUP_TPM_REQUIRED

FVE_E_POLICY_STARTUP_TPM_REQUIRED The effective BitLocker policy requires TPM-only startup protection, but the selected configuration uses a different startup option. This is a configuration-policy mismatch rather than a generic BitLocker failure.

What to check

  • Verify that TPM-only protection is truly the intended organizational requirement for this device class.
  • Ensure the TPM is enabled and ready before attempting to add the required protector.
  • Confirm recovery protection remains available before replacing other startup protectors.
manage-bde -protectors -get <drive>

Microsoft: Configure BitLocker policy settings

Microsoft: manage-bde -protectors

Microsoft: BitLocker boot and TPM countermeasures


Looking for a different code? Search another status or error code.