User's Manual

Table Of Contents
Table4.Securitymenuitems(continued)
Menuitem
SubmenuitemSelectionComments
SecurityChipSelection
DiscreteTPM
IntelPTT
IfyouselectDiscreteTPM,youcan
useadiscreteTPMchipwithTPM
1.2mode.
IfyouselectIntelPTT,youcanuse
IntelPlatformTrustedTechnology
withTPM2.0mode.
Note:TheIntelPTTcanbeused
withMircorosftWindows8.1
operatingsystem.
SecurityChip
Active
Inactive
Disabled
IfyouselectActive,thesecurity
chipwillbefunctional.Ifyouselect
Inactive,theSecurityChipoption
willbevisible,butthesecuritychip
willnotbefunctional.Ifyouselect
Disabled,theSecurityChipoption
willbehiddenandthesecuritychip
willnotbefunctional.
SecurityReporting
Options
Enableordisablethefollowing
SecurityReportingOptions:
BIOSROMStringsReporting:
BIOStextstring
CMOSReporting:CMOSdata
NVRAMReporting:Security
datastoredintheAssetID
SMBIOSReporting:SMBIOS
data
ClearSecurityChip
EnterThisoptionisusedtoclear
encryptionkeys.Itwill
notbepossibletoaccess
already-encrypteddataafter
thesekeysarecleared.
PhysicalPresencefor
Provisioning
Disabled
Enabled
Thisoptionenablesordisablesthe
conrmationmessagewhenyou
changethesettingsofthesecurity
chip.
SecurityChip
PhysicalPresencefor
Clear
Disabled
Enabled
Thisoptionenablesordisablesthe
conrmationmessagewhenyou
clearthesecuritychip.
FlashBIOSUpdatingby
End-Users
Disabled
Enabled
IfyouselectEnabled,alluserscan
updatetheUEFIBIOS.Ifyouselect
Disabled,onlythepersonwho
knowsthesupervisorpasswordcan
updatetheUEFIBIOS.
UEFIBIOSUpdateOption
SecureRollBack
Prevention
Disabled(if
OSOptimized
Defaultsis
Disabled)
Enabled(if
OSOptimized
IfyouselectDisabled,youcanash
theolderversionoftheUEFIBIOS.
Chapter7.Advancedconguration69