Turn On or Off Core Isolation Memory Integrity in Windows 10  

Page 15 of 16 FirstFirst ... 513141516 LastLast
  1. Brink's Avatar
    Posts : 35,344
    64-bit Windows 10 Pro build 18317
    Thread Starter
       23 Nov 2018 #140

      My ComputersSystem Spec


  2. Posts : 46
    Windows 10 Pro RS5 x64
       23 Nov 2018 #141

    Brink said: View Post
    It does activate like this. Still buggy/impossible to deactivate through the UI, just like in RS4.

    However I suspect it's not fully functional. I've ran the Device Guard Readiness Tool again, and HSTI still fails. So the incompatibility is there, that's for sure, it's just that we brute-forced past whatever is in the way. At least this would be my guess.

    I wonder if this will ever be fixed or this is just the way it's supposed to be and my PC is not meeting the requirements.
      My ComputerSystem Spec

  3. Brink's Avatar
    Posts : 35,344
    64-bit Windows 10 Pro build 18317
    Thread Starter
       23 Nov 2018 #142

    Hopefully, it will be fixed soon. Be sure to send feedback to MS about it to help.
      My ComputersSystem Spec

  4.    23 Nov 2018 #143

    t0yz said: View Post
    It does activate like this
      My ComputerSystem Spec

  5.    13 Dec 2018 #144

    I've just turned on core isolation in the settings, rebooted and it was off. Prior to using the registry method, should the core isolation work older systems? Here's the shortened system report:

    Click image for larger version. 

Name:	sysinfo.jpg 
Views:	14 
Size:	215.5 KB 
ID:	217170

    Does the core isolation require EUFI BIOS mode to work?
      My ComputerSystem Spec


  6. Posts : 46
    Windows 10 Pro RS5 x64
       13 Dec 2018 #145

    Cr00zng said: View Post
    I've just turned on core isolation in the settings, rebooted and it was off. Prior to using the registry method, should the core isolation work older systems? Here's the shortened system report:
    Does the core isolation require EUFI BIOS mode to work?
    I don't think so, but the feature is not really functioning properly in RS5/1809.

    For example, I can enable Memory Integrity on the more modern PC (see My Computer for specs) in 1803; I can also turn it on in my older FX8350 PC that boots with UEFI (CSM might be on, I will have to double check) but has VBS turned off.

    On 1809 I can only turn it on with the registry, it always fails as incompatible if I use the UI toggle.

    I'll edit this in a bit after I get to check on the other PC if it still works with CSM/Legacy boot.

    ---------------

    EDIT: Memory Integrity "just works" on my old PC that has the FX 8350. What doesn't work after enabling it is the HD4850 driver, the OS puts the PC on the Basic driver from Microsoft. It works with CSM, works with or without Safe Boot, but it wants SVM (AMD-V) and IOMMU enabled. On Intel it should be VT-x and VT-d. Also works without CSM, but... even if I set the PC to Legacy only, it still appears as UEFI in msinfo. I don't know why. Seems like Win 10 can pretty much decide to use UEFI even if I try to disable it in BIOS.
    PS: the Etron USB 3.0 driver is also not working with Memory Integrity. If you have an older PC which is most probably having older drivers that are not compatible, I wouldn't recommend bothering with this setting at all.
    Last edited by t0yz; 13 Dec 2018 at 15:05.
      My ComputerSystem Spec

  7.    13 Dec 2018 #146

    t0yz said: View Post
    I don't think so, but the feature is not really functioning properly in RS5/1809.

    For example, I can enable Memory Integrity on the more modern PC (see My Computer for specs) in 1803; I can also turn it on in my older FX8350 PC that boots with UEFI (CSM might be on, I will have to double check) but has VBS turned off.

    On 1809 I can only turn it on with the registry, it always fails as incompatible if I use the UI toggle.

    I'll edit this in a bit after I get to check on the other PC if it still works with CSM/Legacy boot.

    ---------------

    EDIT: Memory Integrity "just works" on my old PC that has the FX 8350. What doesn't work after enabling it is the HD4850 driver, the OS puts the PC on the Basic driver from Microsoft. It works with CSM, works with or without Safe Boot, but it wants SVM (AMD-V) and IOMMU enabled. On Intel it should be VT-x and VT-d. Also works without CSM, but... even if I set the PC to Legacy only, it still appears as UEFI in msinfo. I don't know why. Seems like Win 10 can pretty much decide to use UEFI even if I try to disable it in BIOS.
    PS: the Etron USB 3.0 driver is also not working with Memory Integrity. If you have an older PC which is most probably having older drivers that are not compatible, I wouldn't recommend bothering with this setting at all.
    Thanks t0yz...

    The chances are that my HD7800 card's driver, dated as 09.2017, may not work either. Interestingly, the BIOS is set to EUFI first, but the system information shows "Legacy" BIOS mode.

    Windows does not manage drivers on this system and some of them might be old, like from 2013, 2016, etc. Not to mention the latest BIOS version from 2012...

    Maybe Microsoft should have updated this feature, instead of the Candy Crush app, but what do I know... . I'll leave this feature alone, thanks for the advise...
      My ComputerSystem Spec


  8. Posts : 46
    Windows 10 Pro RS5 x64
       13 Dec 2018 #147

    Cr00zng said: View Post
    Thanks t0yz...

    The chances are that my HD7800 card's driver, dated as 09.2017, may not work either. Interestingly, the BIOS is set to EUFI first, but the system information shows "Legacy" BIOS mode.

    Windows does not manage drivers on this system and some of them might be old, like from 2013, 2016, etc. Not to mention the latest BIOS version from 2012...

    Maybe Microsoft should have updated this feature, instead of the Candy Crush app, but what do I know... . I'll leave this feature alone, thanks for the advise...
    If you want some fun trivia, the ideal case should look like image below.

    That would be a "Enhanced Hardware Security" compliant PC, with TPM, Secure Boot, UEFI only boot and Memory Integrity (which gives the "Enhanced" part of the status). Sadly it's also a Hyper V VM. Since 1809 is kinda broken in this aspect, HSTI is still showing as failing even with the HyperV Microsoft firmware (in msinfo), but Memory Integrity can easily be activated with the UI toggle. This is running on my main PC, which would have to force MI through the registry to achieve the same status. I have not bothered with it though. I just can't see the benefits of TPM and VBS and all of this for normal desktop users.


    That
      My ComputerSystem Spec

  9. Cliff S's Avatar
    Posts : 22,985
    Win10 Pro, Win10 Pro N, Win10 Home, Win10 Pro Insider Fast Ring, Windows 8.1 Pro, Ubuntu
       4 Days Ago #148

    Hey Shawn, I have just finished rebuilding and setting up my old 6700K system, and tried Memory integrity and it worked.
    So it works with my Z170 6700K, and worked with the Z370 8700K, but not with my Z370 board & 9900K(same memory sticks as the 8700K):

    The only thing I can think of is the hardware based spectre and meltdown hardware mitigations and how it might have changed how the memory controller in the CPU communicates with the RAM(thru the L caches):

    Meltdown: Variant 3 Rogue Data Cache Load
    Meltdown: Variant 5 L1 Terminal Fault
      My ComputersSystem Spec


  10. Posts : 46
    Windows 10 Pro RS5 x64
       4 Days Ago #149

    Cliff S said: View Post
    Hey Shawn, I have just finished rebuilding and setting up my old 6700K system, and tried Memory integrity and it worked.
    So it works with my Z170 6700K, and worked with the Z370 8700K, but not with my Z370 board & 9900K(same memory sticks as the 8700K):

    The only thing I can think of is the hardware based spectre and meltdown hardware mitigations and how it might have changed how the memory controller in the CPU communicates with the RAM(thru the L caches):

    Meltdown: Variant 3 Rogue Data Cache Load
    Meltdown: Variant 5 L1 Terminal Fault
    Well it's not working since 1809 on my Z370+8700K combo, with latest BIOS and drivers, unless forced through registry, yet VMs can enable it with ease with the toggle. I have a feeling that installed software could affect the "incompatibility" message popup, but I'm too lazy to clean install 1809 at this point in time, where the 19H1 is relatively close.
      My ComputerSystem Spec


 
Page 15 of 16 FirstFirst ... 513141516 LastLast

Tutorial Categories

Turn On or Off Core Isolation Memory Integrity in Windows 10 Tutorial Index Network & Sharing Instalation and Upgrade Browsers and Email General Tips Gaming Customization Apps and Features Virtualization BSOD System Security User Accounts Hardware and Drivers Updates and Activation Backup and Restore Performance and Maintenance Mixed Reality Phone


Related Threads
Microsoft 'Windows Core OS' aims to turn Windows 10 into a modular platform for the future 155644 Source: Windowscentral.com
If I copy a folder full of files does Windows check the integrity of the transfer to make sure that no 1s turned into 0s or whatever?
Just yesterday when i changed my pc case out, i noticed my fans spinning a lot faster than usual, i checked my windows task manager and noticed a "Windows Audio Device Graph Isolation" adding a 15% cpu load totaling 30% with all other processes. the...
Win 10 AU may turn 'off' Virtual Memory in Windows Updates and Activation
Just a note . . . while fixing the 'Restore' being turned off on my relatively old/slow mechanical HD machine, thought I should check to see if any other global settings were altered by the AU, and found my Virtual Memory settings were altered to...
Anyone out there who can tell me what to do to prevent Event Log errors reading as follows: They all start with the same: Microsoft-Windows-CodeIntegrity Code Integrity determined that a process...

Tags for this Thread

Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd
All times are GMT -5. The time now is 16:12.
Find Us