Reference Guide

Table 22. Security (continued)
Attribute Name Description
Ppibypassforblocksid When there is no drive ownership and the ppibypassforblocksid is enabled, the BIOS
requires user input while sending the Block SID authentication command to SED
drives. When disabled, BIOS does not require user input while sending the Block SID
command. The following are the possible values:
Enabled
Disabled
SafeShutter The device camera shutter opens automatically when you grant permission to the
application and closes when permission is terminated. Disable dynamic behavior by
pressing F9. The following are the possible values:
Dynamic Shutter
Manual Shutter Control
SedBlockSidAuthentication When there is no drive ownership and the SedBlockSidAuthentication is enabled,
BIOS sends the Block SID authentication command to SED drives. When disabled,
BIOS does not send the Block SID command. The following are the possible values:
Enabled
Disabled
NOTE: You can disable SedBlockSidAuthentication in manufacturing mode or
while setting up the BIOS Setup Administrator password.
NOTE: The read-only mechanism can be changed when the system is in
manufacturing mode, while the SedBlockSidAuthentication is disabled.
Smmsecuritymitigation Enables or disables the additional UEFI SMM Security Mitigation protections. The
operating system uses this feature to protect the secure environment created by
virtualization-based security. Enabling this feature provides the additional UEFI SMM
Security Mitigation protections support. However, this feature may cause
compatibility or functionality issues with some legacy tools and applications. The
following are the possible values:
Enabled
Disabled
NOTE: You can disable Smmsecuritymitigation in manufacturing mode.
NOTE: The read-only mechanism can be changed when the system is in
manufacturing mode, while the Smmsecuritymitigation is disabled.
StrongPassword Enables or disables the enforced use of a strong password. If enabled, the admin and
system passwords must contain at least one upper case character, at least one
lowercase character, and minimum eight characters. The following are the possible
values:
Enabled
Disabled
SystemPassword Sets, changes, or clears the system password (also known as the user password).
Enter the system password, if set, when the system is powered on. Possible values:
String containing minimum 4 and maximum 32 characters including whitespace.
WirelessSwitchChanges Determines if changes to the wireless switch setting are permitted or restricted when
an administrator password is set. The following are the possible values:
EnabledPermits the changes to the wireless switch setting when an
administrator password is set.
DisabledRestricts the changes to the wireless switch setting when an
administrator password is set.
NOTE: Provide the administrator password to be able to change the wireless
switch setting. If the Administrator password is not set, this setting has no effect.
32 Attributes supported in Dell Command | PowerShell Provider 2.4