User Manual

Table Of Contents
Security
Allow Wireless Switch Changes Enables or disables changes to the setup option when an Administrator password is
set.
Default: OFF.
Enable UEFI Capsule Firmware Updates Enables or disables BIOS updates through UEFI capsule update packages.
Computrace Enable or disable the BIOS module interface of the optional Computrace(R) Service
from Absolute Software.
Intel Platform Trust Technology On Enables or disables Platform Trust Technology (PTT) visibility to the operating
system.
Default: ON.
PPI Bypass for Clear Commands Enables or disables the operating system to skip BIOS Physical Presence Interface
(PPI) user prompts when issuing the Clear command.
Default: OFF.
Clear Enables or disables the computer to clear the PTT owner information, and returns the
PTT to the default state.
Default: OFF.
Intel SGX Enables or disables the Intel Software Guard Extensions (SGX) to provide a secured
environment for running code/storing sensitive information.
Default: Software Control
SMM Security Mitigation Enables or disables additional UEFI SMM Security Mitigation protections.
Default: OFF.
NOTE: This feature may cause compatibility issues or loss of functionality
with some legacy tools and applications.
Enable Strong Passwords Enables or disables strong passwords.
Default: OFF.
Password Conguration Control the minimum and maximum number of characters that are allowed for Admin
and System passwords.
Admin Password Sets, Changes, or deletes the administrator (admin) password (sometimes called the
"setup" password).
System Password Sets, Changes, or deletes the system password.
Enable Master Password Lockout Enables or disables the master password support.
Default: OFF.
Table 8. System setup options—Secure Boot menu
Secure Boot
Enable Secure Boot Enables or disables the computer to boos using only validated boot software.
Default: OFF.
NOTE: For Secure Boot to be enabled, the computer needs to be in UEFI
boot mode and the Enable Legacy Option ROMs option needs to be turned
o.
Secure Boot Mode Selects the Secure Boot operation mode.
Default: Deployed Mode.
62 System setup