The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Impact of FIPS mode

Prev Next

In FIPS mode, certain self-tests are performed in Windows and pre-boot environments.

These self-tests might impact the performance of the pre-boot.

If the self-tests of FIPS fail, the system's failed components stop completely in one of these ways.

  • If the Windows Drive Encryption FIPS component fails self-test, the system doesn't activate or enforce policies.

  • If the Windows Drive Encryption driver fails self-test, the driver performs a bug-check (BSOD).

  • If the Pre-Boot Drive Encryption FIPS component fails self-test, pre-boot stops functioning.

Move your mouse in Pre-Boot

Additionally, FIPS 140-2 defines minimum requirements for entropy during key generation. This might lead to key generation errors in pre-boot where insufficient entropy (randomness) is available at the point of key generation. To avoid this, you can supply entropy (randomness) into pre-boot by moving the mouse randomly before you perform the action that produced the error.