If we find PCs that are too cheat-capable (e.g., because of outdated Windows or specific configurations that are conducive to allow cheating), Vanguard will restrict that PC's access to Riot games and display an error message. The VAN: RESTRICTION error message tells you what settings are necessary to remove the restriction.
IMPORTANT: About editing your BIOS settings
If you’re not familiar with navigating through your BIOS, please reach out to a professional. Incorrectly configuring BIOS settings can cause issues with your computer–including failure to start up.
The BIOS is highly variable depending on the brand and type of computer or motherboard you are using. So we highly recommend that you reach out to your computer or motherboard manufacturer's support resources to assist you.
For your actual checklist of tasks, refer to the specific VAN: RESTRICTION error message you received from Vanguard.
Update Windows
Check the requirements and update accordingly: [Microsoft] Update Windows
Enable TPM 2.0
TPM 2.0 settings vary across different PC manufacturers. For detailed instructions and troubleshooting steps, refer to our TPM 2.0 Guide.
Secure Boot
Unsure how to turn on Secure Boot or what your system status means? Our Secure Boot Guide has everything you need.
Update BIOS Firmware (AMD/Intel)
If you are unable to enable Secure Boot or have already enabled TPM 2.0 but are still seeing the prompt in-game, your motherboard may need a BIOS firmware update. Follow the steps below to check if that’s the case.
- Press Windows Key + R to open the Run dialog box
- Type tpm.msc and press Enter
- Under TPM Manufacturer Information, look for your Manufacturer Version
- Note down the version number
If your TPM firmware is outdated, reach out to your motherboard manufacturer’s customer support to confirm whether a BIOS update is available for your model.
For AMD users, you can find more details about this known issue here: AMD FAQ: TPM 2.0 and Firmware Update Information
Enable IOMMU
IOMMU (Input Output Memory Management Unit) must be enabled for certain virtualization and security features to work correctly. If it is turned off, Windows may not be able to isolate memory or run virtualization based protections, which can cause configuration errors or prevent features like VBS and HVCI from activating. Enable IOMMU before continuing with the steps below.
- Press Windows Key + R.
- Type msinfo32 and press Enter. Identify your motherboard brand and CPU.
- Using a search engine, look up for your motherboard manufacturer's procedure to enable IOMMU. Make sure to add the CPU brand as this will likely to influence the steps. Alternatively, you can reach out to your motherboard manufacturer for more details.
Here are some common ones:
ASUS MOTHERBOARDS
- Enter BIOS/UEFI
- Navigate to Advanced → AMD_CBS.
- Locate and set IOMMU from Disabled/AUTO to ENABLE.
- If available after enabling IOMMU:
Advanced\AMD_CBS → NBIO Common options.- Set DMA Protection from Disabled/AUTO to ENABLE.
- Set DMAr Support from Disabled/AUTO to ENABLE.
- Enter BIOS/UEFI
- Navigate to Advanced → System Agent SA Configuration.
- Set Control IOMMU Pre-boot behavior to Enable IOMMU during boot.
- If the Enable IOMMU during boot option is unavailable, choose Enable IOMMU.
MSI MOTHERBOARDS
- Enter BIOS/UEFI
- Navigate to Overclocking → Advanced CPU Configuration → AMD CBS
- Under AMD CBS - NBIO Common Options, set IOMMU from Disabled/AUTO to ENABLED.
- If available, also set:
- Set DMA Protection from Disabled/AUTO to ENABLE.
- Set DMAr Support from Disabled/AUTO to ENABLE.
- Enter BIOS/UEFI
- Navigate to Overclocking → CPU Features.
- Set Control IOMMU Pre-boot Behavior to Enable IOMMU during boot
- If the Enable IOMMU during boot option is unavailable, choose Enable IOMMU.
Enable HVCI/VBS Memory Integrity (Core Isolation)
Memory Integrity is part of Windows Core Isolation and helps protect your system from attacks. To function correctly, it relies on hardware virtualization provided by your CPU. This means BIOS Virtualization must be enabled; otherwise, Windows cannot create the secure virtual environment required for HVCI and Memory Integrity. If virtualization is turned off in your BIOS, you may see errors or the feature may not load at all.
You can enable Memory Integrity using the steps below once BIOS Virtualization is active.
- Click the Windows Start menu, then ⚙️Settings.
- Go to Update & Security > Windows Security > Device Security.
- Under Core isolation, find Memory Integrity.
- Toggle the switch on.
- Restart your system when prompted.
Potential Issues
Update Windows
- Ensure your system is up to date with the latest Windows updates.
Run SFC and DISM
- Press the Windows key, type PowerShell, right-click on it, select Run as administrator.
- Paste and run the following:
- sfc /scannow; DISM /Online /Cleanup-Image /ScanHealth
- DISM /Online /Cleanup-Image /RestoreHealth
- DISM /Online /Cleanup-Image /StartComponentCleanup
Update BIOS (if needed):
- Press Windows Key + R.
- Type msinfo32 and press Enter. Identify your motherboard details.
- Download the latest BIOS update from the manufacturer’s website.
- Follow manufacturer instructions to update BIOS.
Related articles
Motherboard Manufacturer Resources
BIOS and firmware menus can vary significantly depending on your motherboard manufacturer and model. If you’re unable to locate required security or system settings (such as Secure Boot, TPM, virtualization, or DMA-related options), we recommend reviewing your motherboard manufacturer’s official support documentation.
Below are links to common motherboard vendors where you can find model-specific BIOS guidance:
| Manufacturer | Resources |
|---|---|
| Acer | |
| ASRock | |
| BIOSTAR | |
| Colorful | TPM 2.0, Secure Boot & BIOS Update support based on model |
| Dell / Alienware | |
| GIGABYTE | |
| HP | |
| MSI |
TPM 2.0 & Secure Boot for AM4 Motherboards |
Reminder
BIOS settings, names, and locations may differ even between models from the same manufacturer. If you’re unsure about changing any firmware settings, we strongly recommend contacting your system or motherboard manufacturer for assistance.