VAN 9005 in VALORANT: TPM 2.0, Secure Boot and VBS aren't all set up
Riot VanguardVALORANTThe message
VAN9005: This version of Vanguard requires TPM version 2.0 and UEFI compliant firmware in order to use Virtualization-based Security (VBS)What it means
Vanguard wants to use Virtualization-based Security, which needs TPM 2.0 and UEFI firmware, and it can't find that setup on this PC.
What to try first
Check TPM 2.0 is enabled, then Secure Boot, then Memory Integrity, restarting after each change.
Is it you or Riot? If a lot of players got the same code at once, it's likely the servers. Check Riot's service status page for VALORANT before you start reinstalling things.
Seeing it in League instead? VAN 9005 is a Vanguard code, so League can throw it too. The League version is here: VAN 9005 in League of Legends.
Three settings, one code
VAN 9005 bundles the requirements behind 9001 and 9003 and adds a third. Vanguard wants Virtualization-based Security (VBS), the Windows feature that runs some security code in an isolated space, and VBS needs TPM 2.0 and UEFI firmware underneath it. Riot's fix is to check all three pieces in order: TPM 2.0, Secure Boot, then Memory Integrity.
Riot's VALORANT support site used to cover this as a Windows 10 VBS problem. The link now forwards to the shared Vanguard article, but the Windows 10 angle still holds. On older Windows 10 setups, the piece to check most carefully is Memory Integrity, since it's a Windows switch rather than a BIOS one.
When Memory Integrity won't switch on
If the toggle in Core isolation is grayed out, CPU virtualization is probably off in the BIOS (VT-x on Intel, SVM on AMD). If Windows names a driver that's blocking it, update or remove that driver. Riot's last step, once all three settings check out, is a ticket with logs.
Riot's fix, in Riot's order
Turn on TPM 2.0
Press Win+R and run
tpm.msc. "The TPM is ready for use" with Specification Version 2.0 means you're fine. Version 1.2 isn't enough, and "Compatible TPM cannot be found" means it's switched off in the BIOS.To switch it on, reach the firmware settings from Windows (Settings, Recovery, Advanced startup, then Troubleshoot, Advanced options, UEFI Firmware Settings) or press Del, F2 or F10 while the PC starts. On Intel boards enable PTT (Platform Trust Technology); on AMD enable fTPM. Save with F10. A plug-in TPM chip covers VAN 9001, but a VAN: RESTRICTION wants the firmware TPM specifically.
Riot's guide: Turn on TPM 2.0
Turn on Secure Boot
Run
msinfo32. You want BIOS Mode: UEFI and Secure Boot State: On. UEFI with Secure Boot off means flipping one switch in the BIOS.If BIOS Mode says Legacy, stop. Your Windows drive has to be converted from MBR to GPT before you switch the BIOS to UEFI, or Windows won't boot at all. Riot's Secure Boot guide covers the conversion and its requirements (64-bit Windows 10 1703 or newer, BitLocker off, no dual boot).
Riot's guide: Turn on Secure Boot
Turn on Memory Integrity (HVCI/VBS)
Run
msinfo32and look at Virtualization-based security near the bottom. Running is good. Enabled but not running means virtualization is off in the BIOS. Not enabled means you haven't switched it on in Windows yet.In Windows Security, open Device security, then Core isolation, and turn on Memory integrity. If the switch is grayed out, enable CPU virtualization in the BIOS first (Intel VT-x, AMD SVM). An incompatible driver can also block the toggle, and Windows names it when that happens.
Riot's guide: Turn on Memory Integrity (HVCI/VBS)
Other wordings of the same error
VAN 9005 VALORANTVALORANT VAN9005VAN9005Virtualization-based Security VALORANT
Related VALORANT errors
Source: Riot Games Player Support, Error VAN 9005, updated January 15, 2026. Riot's steps are paraphrased here, not copied; checked October 8, 2026.