User's Manual

Table 34. Security (continued)
Options Description
Clear
This section contains toggle switch which clears the TPM
owner information, and returns the TPM to the default state.
TPM State
This section allows the user to enable or disable the TPM. this
is the normal operating state for the TPM when you want to
use its complete arrays of capabilities.
Intel Software Guard Extension
Intel SGX
This sections allows the user to select the Intel Software
Guard Extension Enclave Reserve Memory Size. The options
are as follows:
Disabled
Enabled
Software Control
SMM Security Mitigation
This section allows the user to enable or disable UEFI SMM
security Mitigation protections.
Data Wipe on Next Boot
Start Data Wipe
This section contains toggle switch which when enabled
ensures that the BIOS will queue up a data wipe cycle for
storage device(s) connected to the motherboard on the next
reboot.
Absolute
Absolute
This section lets the user enable, disable or permanently
disable the BIOS module interface of the optional Absolute
Persistence Module service from Absolute Software. The
options available are as follows:
Enable Absolute - Enables Absolute Persistence and load
the firmware Persistence Module
Disable Absolute - Disables Absolute Persistence. The
firmware Persistence Module is not installed.
Permanently Disable Absolute - Permanently disables
Absolute Persistence module interface from further use.
UEFI Boot Path Security
UEFI Boot Path Security
This section lets the user control whether or not the system
will prompt the user to enter the admin password(if set) when
booting to a UEFI booth path device from F12 boot menu. The
options available are as below:
Never
Always
Always Except Internal HDD
Always Except Internal HDD&PXE
Passwords
This section provides details on password settings.
System setup
33