Manual
Table Of Contents
- Preface
- Chapter 1. Overview
- Chapter 2. Installation
- Chapter 3. Working with Client Security Solution
- Chapter 4. Working with ThinkVantage Fingerprint Software
- Chapter 5. Working with Lenovo Fingerprint Software
- Chapter 6. Best Practices
- Deployment examples for installing Client Security Solution
- Switching Client Security Solution modes
- Corporate Active Directory rollout
- Standalone Install for CD or script files
- System Update
- System Migration Assistant
- Generating a certificate using key generation in the TPM
- Using USB fingerprint keyboards with 2008 ThinkPad notebook computer models (R400/R500/T400/T500/W500/X200/X301)
- Appendix A. Special considerations for using the Lenovo Fingerprint Keyboard with some ThinkPad notebook models
- Appendix B. Synchronizing password in Client Security Solution after the Windows password is reset
- Appendix C. Using Client Security Solution on a reinstalled Windows operating system
- Appendix D. Using the TPM on ThinkPad notebook computers
- Appendix E. Notices
- Glossary

Fordesktopcomputers,dothefollowingtoactivatetheTPM:
1.GototheWebsiteathttp://support.lenovo.com/en_US/detail.page?LegacyDocID=MIGR-75407.
2.ClickVisualBasicsamplescriptstousewhenconguringBIOSsettingstodownloadthe
sample_script_m90.ziple.Thenextracttheziple.
3.Typecscript.exeSetCong.vbsSecurityChipActiveintheCommandPromptwindowtoexecutethe
SetCong.vbsle.
4.Restartyourcomputer.
ForallThinkStationdesktopcomputermodelsandThinkPadnotebookcomputermodelsearlierthanT400
(forexample,T61),activatetheTPMusingtheTPMactivationtoolorthecss_manage_vista_tpm.exele.
UsingtheTPMactivationtool(WindowsXP)
Thetpm_activate_cmd.exeleisusedtoactivateordeactivatetheTPMontheWindowsXPoperating
systems.
Note:Youneedadministratorprivilegestorunthistool.Beforerunningthistool,youneedtoinstallthelatest
SMBiosandSMBusdrivers.
Table17.ParametersforactivatingordeactivatingtheTPMontheLenovosystem
ParameterDescription
/helpor/?
Displaysthelistofparameters.
/biospw:passwordSpeciestheBIOSsupervisororadministratorpassword
ifoneisset.
/deactivate
DeactivatestheTPM.
Note:Ifyouruntpm_activate_cmd.exewithoutparameter
/deactivate,itwillactivatetheTPMbydefault.
/verbose
Displaysatextoutput.
Example:
tpm_activate_cmd.exe/?
tpm_activate_cmd.exe/verbose
tpm_activate_cmd.exe/biospw:pass
Usingthecss_manage_vista_tpm.exele(WindowsVistaorWindows7)
Thecss_manage_vista_tpm.exeleisusedtoactivateordeactivatetheTPMontheWindowsVistaor
Windows7operatingsystemswhenClientSecuritySolutionisinstalled.
Note:Y ouneedadministratorprivilegestorunthistool.
css_manage_vista_tpm.exe[/verbose][/showinfo|/getstate|setstate:<state>]
where
/verbosedisplaysthetextoutput.Thedefaultsettingissilentoperation.
/showinfodisplaystheTPMinformation,forexample,thevendor,rmwareversion,physicalpresence,
andinterfaceversion.
/getstatedisplaysthecurrentTPMstatus.TheTPMhasthefollowingtypesofstatus:
•Enabled
Chapter3.WorkingwithClientSecuritySolution39