--- title: TPM Group Policy settings (Windows 10) description: This topic for the IT professional describes the Trusted Platform Module (TPM) Services that can be controlled centrally by using Group Policy settings. ms.assetid: 54ff1c1e-a210-4074-a44e-58fee26e4dbd ms.pagetype: security ms.prod: W10 ms.mktglfcycl: deploy ms.sitesec: library author: brianlic-msft --- # TPM Group Policy settings **Applies to** - Windows 10 This topic for the IT professional describes the Trusted Platform Module (TPM) Services that can be controlled centrally by using Group Policy settings. ## The TPM Services Group Policy settings are located at: **Computer Configuration\\Administrative Templates\\System\\Trusted Platform Module Services\\**
Setting | Windows 10 | Windows Server 2012 R2, Windows 8.1 and Windows RT | Windows Server 2012, Windows 8 and Windows RT | Windows Server 2008 R2 and Windows 7 | Windows Server 2008 and Windows Vista |
---|---|---|---|---|---|
[Turn on TPM backup to Active Directory Domain Services](#bkmk-tpmgp-addsbu) |
X |
X |
X |
X |
X |
[Configure the list of blocked TPM commands](#bkmk-tpmgp-clbtc) |
X |
X |
X |
X |
X |
[Ignore the default list of blocked TPM commands](#bkmk-tpmgp-idlb) |
X |
X |
X |
X |
X |
[Ignore the local list of blocked TPM commands](#bkmk-tpmgp-illb) |
X |
X |
X |
X |
X |
[Configure the level of TPM owner authorization information available to the operating system](#bkmk-tpmgp-oauthos) |
X |
X |
X |
||
[Standard User Lockout Duration](#bkmk-tpmgp-suld) |
X |
X |
X |
||
[Standard User Individual Lockout Threshold](#bkmk-tpmgp-suilt) |
X |
X |
X |
||
[Standard User Total Lockout Threshold](#bkmk-tpmgpsutlt) |
X |
X |
X |
Value Data | Setting |
---|---|
0 |
None |
2 |
Delegated |
4 |
Full |