Linux installation on PCs with TPM - Samsung Knox?

Considering various alternatives for a smaller and lighter notebook for travel, I ended up with accepting a very good offer on a new Samsung Galaxy Book5 Pro 14 which seemed to fit with my wishes. Contrary to many of its notebook competitors, it doesn’t have a Snapdragon ARM processor, but a Intel Core Ultra 7-258V so I thought installing Linux on it should be OK, as I have previously installed Linux Mint on a Samsung 900X notebook.

I may anyhow have done the wrong choice in this respect.

Before I opened the new PC to rip out its Windows SSD, to replace it with another to install Linux Mint on, I became aware that it has a Discrete Trusted Platform Module (TPM) related to some security features that Samsung calls Samsung Knox (About Knox). I have found postings around that indicate that this may make it very difficult or impossible to install Linux because of this.

Does anybody have any experience with Linux on PCs with TMP?

It is possible to use Linux with TPM and or Secure Boot but if I remember well it requires to know what you are doing, and it need additional configuration. Also know that if you encrypt your SSD with TPM keys you need to have a backup of your keys somewhere if you want to recover your data from a system failure…

I think it is easier to disable TPM and secure boot in the UEFI/BIOS setup, if you don’t need to boot Windows (because Windows required Secure Boot…). So maybe check if you can disable this on your laptop?

https://wiki.archlinux.org/title/Trusted_Platform_Module

https://wiki.archlinux.org/title/Unified_Extensible_Firmware_Interface/Secure_Boot

2 Likes