HP Business Notebook Intel® vProTM setup and configuration 2011 Business Notebook Models - Technical white paper
11
PIDs are 8 characters long and PPS are 32 characters. There are dashes between every set of four
characters so, counting dashes, PIDs are 9 characters and PPS are 40 characters. Once these PIDs
and PPS are generated, they are added to the Setup and Configuration Server’s secure PSK
database. This database can be transferred to another Setup and Configuration Server’s database.
Here is a brief outline of the initial communication between an AMT client system and an SCS:
1. The AMT system sends out a “hello” message which includes the PSK over the network.
2. The SCS receives the “hello” message and verifies the PSK.
3. If the verification passes, then the SCS begins setup and configuration.
4. Once setup and configuration completes, the original PSK is deleted from the AMT client system
and a new PSK is given.
The initial “hello” message is unencrypted. However, afterwards all communication between the AMT
client and the SCS can be encrypted with Transport Layer Security (TLS).
There are several independent software vendors (ISV) offering Setup and Configuration Servers on the
market. Here are some examples:
HP Client Configuration Manager
Altiris
LANDesk
Microsoft SMS
Enterprise Mode – AMT Setup and Configuration Steps
The AMT setup portion for enterprise mode is the same as SMB mode. Repeat steps 1 through 15 to
perform AMT setup. This will take the system from Factory mode to In-Setup mode. Refer to Manual
Mode – AMT setup and configuration for MEBx menus and full text. The following are quick steps for
AMT setup.
1. Get into the MEBx by pressing Ctrl-P during POST.
2. Enter the default password “admin”.
3. Change the MEBx password, follow strong password guidelines.
4. Go into Intel ME Platform Configuration.
5. Check the Intel ME State Control, select Enabled.
6. Check the Intel ME Firmware Local Update Qualifier, select Always Open.
7. Go into Intel ME Power Control.
a. Go into ME ON in Host Sleep States, select Option 2 (Desktop: ON in S0, ME
Wake in S3, S4-5)
8. Go into the Intel ME General Settings.
The Intel ME Platform Configuration screen has more options than could be displayed in one page.
More options are available if you scroll down the menu.
9. Password Policy
Default Setting : Default Password Only
Recommended Setting : Default Password Only