TPM event logger error after cpu swap, Event id 86

Arun Kandasamy 131 Reputation points
2021-09-02T14:44:56.32+00:00

I just swapped out my cpu, my previous chip had died and just received my replacement, both 5950x, Upon boot I received " New cpu installed, fTPM/PSP NV corrupted" and it asked me to reset, which I did, now im receiving the following error:

SCEP Certificate enrollment initialization for Local system via https://AMD-KeyId-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net/templates/Aik/scep failed:

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Thu, 02 Sep 2021 14:27:28 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: d623448f-ee97-4ff8-a54c-c552e6a999be

Method: GET(203ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)

How can I fix this?

Windows for business | Windows Client for IT Pros | User experience | Other

94 answers

Sort by: Oldest
  1. Paul Haywood 26 Reputation points
    2022-01-18T11:20:15.57+00:00

    I was having the same problems, SCEP faults and WHEA errors, with windows 11 and 10.
    Someone told me that there is a problem with the processors and the solution given to me was as follows:

    Disable Core Performance Boost

    Set Power Supply Idle to Typical

    I also use Insider Preview Dev version of Windows 11.

    I have had no errors since changing the bios settings, can't say if this works with everyone, but give it a try.

    Was this answer helpful?


  2. Giuseppe_Vellucci 6 Reputation points
    2022-01-19T20:01:34.25+00:00

    Just for reference, I installed a discrete TPM and the error is gone. Definitely an AMD fault.

    Was this answer helpful?


  3. Yves Geiser 21 Reputation points
    2022-01-26T08:13:54.41+00:00

    Quick update.

    It looks that after weeks of problems, my system is fine now. No crashes anymore in games or idle. I often had the problem that the system freezed but the mouse was fine or I had hard crashes into system reboot.

    At the end, this is what I did.

    • I installed Windows 11 by scratch, this was the result of a test as I tried Windows 10 but even on the old one, the problem remained.
    • Only installed whats really required and no bloatware like antivirus, cleaners or other rubish like driver fix tools.
    • Make sure you only connect devices by USB that you really need on a daily base. Don't use any USB extension cables or other fancy USB hubs - keep it simple.
    • I installed a discrete TPM modul for about 20$ (propably not the reason but hey... get rid of any evenviewer error to reduce reasons for crashes)
    • I fixed some 10016 events (https://www.kapilarya.com/fix-event-10016-error-the-application-specific-permission-settings-do-not-grant-local-activation-permission-in-windows-10)
    • Checked then also Reliability Monitor but if you take pkt 2 seriously... then there should be no surprises
    • This looks now fine as per default with a new OS installation but worth to check (https://www.tomshardware.com/how-to/disable-vbs-windows-11)
    • Turned off the powersaving on my drives within windows
    • Set the PSU on typical mode within BIOS.
    • If you have WHEA errors with auto mode and no OC... then propably your CPU is broken. A regular AMD system should have ZERO WHEA errors except you overclock to limits..
    • If you system crashes into system boot and the is no logical reason to explain.... then probably you PSU is broken or check the wires are often single cables can get loose especially with fancy sleeved cables. For example... my system was able to run stress test but crashed during games... it was the PSU.. makes no sense... then PSU..
    • Only connect usb devices that you need but also change positions.. for example the front usb is different wired that the back usb... so try to use no other usb then the backplate.
    • If you have messages like the disk was surprisingly removed with ID's you dont have... well thanks to you X-Box games.. MS does mount each game..
    • If you have a custom PC... check that your fans do not consume more then the plug on the MB can handle..
    • Make sure your beefy GPU if you have one is getting the power... if you have 3x8pin... you might need to switch to single rail mode. Do not overdrive the PSU at all..

    I am aware that this is not SCEP related only... but I am sure many of you have similiar problems.

    Was this answer helpful?

    1 person found this answer helpful.
    0 comments No comments

  4. GoldenVenom 26 Reputation points
    2022-01-26T23:27:37.337+00:00

    Long time no comment of me, but since i still get notifications that here get commented a fast update: 5800x on a x570. Win11 21H2(Build 22000.469 but even with previous versions, no problem)
    The error still occures in the event viewer, SCEP. But! I'm in Beta branch, and got no issues so far. No restarts, no crashes. If ther is anything that don't work, it's more of a beta-problem than a processor/tpm problem.
    I didn't changed anything, no settings, nothing. So as long as it works, ill stick with it until AM5 will get his release.

    Was this answer helpful?

    0 comments No comments

  5. Norm Geltz 171 Reputation points
    2022-02-06T18:40:38.273+00:00

    It's far more likely it is a combination of Microsoft's inability to get on-board w/ AMD prior to launch. It's no mystery Microsoft wrote their TPM module (attestation) with Intel and not with AMD - you only need to review/research the plethora of documentation on the Internet demonstrating both Intel & Microsoft were writing in collaboration. The ability to employ UEFI/TPM encryption & attestation should not be Intel processor specific - which it is turning out to be just the exact case. AMD & Intel most likely secure processor UEFI/TPM module encryption in vary similar manners. It's my understanding the delta resides in the fact AMD employ the best "core" CPU for running the OS & accommodating applications loaded within the OS when it boots. The best "core" may change during any particular boot operation on an AMD CPU. I'm implying that a Intel does not use the best "core" feature but instead uses the same steady configuration of each core - IOW the best "core" does not change as it does on the AMD CPU architecture. I do know the architecture is different at the hardware and software level. I don't know how the Microsoft TPM module secures the required TPM encryption algorithm to provide attestation; but, it's the attestation which fails repeatedly. These combinations are difficult to understand but it appears this is a Microsoft + AMD issue and not a Microsoft + Intel issue.

    I'm curious if anyone has noticed POST often changes during any particular BIOS boot process. One day it's one set of POST beeps & on any other day it's a different set of POST beeps. Interesting.

    Was this answer helpful?

    1 person found this answer helpful.

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.