Service Manual

Table Of Contents
Table 10. System setup optionsSecurity menu
Security
TPM 2.0 Security
TPM 2.0 Security On Enable or disable TPM 2.0 security options.
By default, the TPM 2.0 Security On option is enabled.
Attestation Enable Enables to control whether the Trusted Platform Module (TPM) Endorsement
Hierarchy is available to the operating system.
By default, the Attestation Enable option is enabled.
Key Storage Enable Enables to control whether the Trusted Platform Module (TPM) Storage
Hierarchy is available to the operating system.
By default, the Key Storage Enable option is enabled.
SHA-256 BIOS and the TPM will use the SHA-256 hash algorithm to extend
measurements into the TPM PCRs during BIOS boot.
By default, the SHA-256 option is enabled.
Clear Enables to clear the TPM owner information and returns the TPM to the
default state.
By default, the Clear option is disabled.
PPI ByPass for Clear Commands Controls the TPM Physical Presence Interface (PPI).
By default, the PPI ByPass for clear Commands option is disabled.
Chassis intrusion Controls the chassis intrusion feature.
By default, the option is disabled.
SMM Security Mitigation Enable or disable SMM Security Mitigation.
By default, the option is enabled.
Data Wipe on Next Boot
Start Data Wipe Enable or disable the data wipe on next boot.
By default, the option is disabled.
Absolute Enable or disable or permanently disable the BIOS module interface of the
optional Absolute Persistence Module service from Absolute software.
By default, the Enable Absolute option is enabled.
UEFI Boot Path Security Controls whether or not the computer will prompt the user to enter the admin
password (if set) when booting to a UEFI boot device from the F12 boot menu.
By default, the Always Except Internal HDD option is enabled.
Table 11. System setup optionsPasswords menu
Passwords
Admin Password Set, change, or delete the administrator password.
System Password Set, change, or delete the computer password.
Internal HDD-0 Password Set, change, or delete the Internal HDD-0 password.
NVMe SSD0 Set, change, or delete the NVMe SSD0 password.
Password Configuration
Upper Case Letter Reinforces password must have at least one upper case letter.
By default, the option is disabled.
Lower Case Letter Reinforces password must have at least one lower case letter.
System setup 85