The Local Security Authority protection is off - Windows 11 Home

Anonymous
2023-03-17T06:10:20+00:00

A yellow triangle appeared on the Windows Security iron yesterday. It says that Local Security Authority protection is off. Your device may be vulnerable.

I can press Go to settings or Dismiss but when I click go to settings, a notification saying "the page You want to access doesn't contain required functions and is unavailable". 

There is also no option to turn the protection on in the Device Security panel (there is only "dismiss" option).

When I was looking at it yesterday, there was also a notification that "The tpm module is unavailable" but today it doesn't show. I checked the device manager and uefi and both say that the tpm is enabled.

I've found an advice to turn on SMV in UEFI (in the CPU settings) to solve the problem but I don't want to change anything in BIOS without consultation as I'm no expert. I've also found a reply from a truste source that this whole problem is a Microsoft bug and it's better to just wait till they fix it.

What should I do?

Screenshots are in Polish, I hope they can be useful somehow. The first one shows the notification about a page being not available and the second shows the Device security panel (the notification from the first screenshot displays when I close the device security page or when I click on "go to settings" below the information that the protection is turned off). There is also an information (second screenshot) that "standard device security is not supported".

Windows for home | Windows 11 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
Answer accepted by question author
Anonymous
2023-07-06T07:36:56+00:00

Microsoft have just posted that they have resolved the "Local Security Authority protection is off" issue in an update. Has anyone tried to apply it from Windows Update?

Resolution: This issue was resolved in an update for Windows Security platform antimalware platform KB5007651 (Version 1.0.2306.10002). If you would like to install the update before it is installed automatically, you will need to check for updates.

Was this answer helpful?

10+ people found this answer helpful.
0 comments No comments

174 additional answers

Sort by: Most helpful
  1. Anonymous
    2023-05-25T15:03:16+00:00

    i just noticed this issue today and it took research to try and find a fix, this is unacceptable from windows, users should NEVER have to make registry edits and manually fix these types of issues

    Exactly!

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments
  2. Anonymous
    2023-05-07T12:40:02+00:00

    This issue appeared to have been resolved (I just waited for an update to fix it), but now it is back. This time there isn't even a toggle to turn LSA on/off.

    Is this basically the same issue, and is my device secure?

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments
  3. Anonymous
    2023-05-04T08:56:34+00:00

    After half a century Windows still expects you to tinker with its registry and that still doesn't work.

    Just get a Mac!

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments
  4. Anonymous
    2023-03-25T07:45:58+00:00

    A Microsoft employee DID answer! IIRC they were the first person to suggest the Registry needing changed. And you're turning a molehill of a bug into freaking Mt. Everest my dude...

    Those two registry settings do nothing beyond enabling LSA on Windows boot, and were both present before the latest Windows update borked them out of existence for some (but not even close to all) users. Nothing more, nothing less. And this is EASILY verifiable by anyone who's even moderately computer literate.

    And the TPM is DIRECTLY tied to LSA being on or off! If LSA isn't working, NEITHER IS YOUR TPM! Your PC is way, WAAAAAAAAAY less secure w/ LSA disabled and your TPM turned off like it is now than after adding those Registry settings and then flipping your TPM off & then back on in the BIOS to ACTUALLY re-enable those security features!

    Should Microsoft fix this directly via Windows Update? Of COURSE THEY SHOULD! But is this issue easily fixable in literally 30 seconds RIGHT NOW if you just stop acting like a straight up paranoid schizophrenic and do what LITERALLY EVERYONE HAS BEEN TELLING YOU TO DO? Yes, yes it is. 🤦

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments