CLI Guide

Table Of Contents
License Required iDRAC Express or iDRAC Enterprise
Dependency Not applicable
BIOS.SysSecurity.Tpm2Hierarchy (Read or Write)
Description
Allows enabling, disabling, or clearing the storage and endorsement hierarchies. When set to Enabled, the
storage and endorsement hierarchies can be used. When set to Disabled, the storage and endorsement
hierarchies cannot be used. When set to Clear, the storage and endorsement hierarchies are cleared of
any values, and then reset to Enabled.
Requires TPM2 hardware to be installed and TPM Security set to On.
Legal Values
Enabled
Disabled
Clear
Default Value Not Applicable
Write Privilege Server Control
License Required iDRAC Express or iDRAC Enterprise
Dependency Not applicable
BIOS.SysSecurity.TpmActivation (Read or Write)
Description
This field allows changing the operational state of the Trusted Platform Module (TPM). When set to
Activate, the TPM will be enabled and activated. When set to Deactivate, the TPM will be disabled and
deactivated. When set to No Change, the operational state of the TPM remains unaltered. This field is
Read-Only when TPM Security is set to Off.
Legal Values
NoChange
Activate
Deactivate
Default Value Not Applicable
Write Privilege Server Control
License Required iDRAC Express or iDRAC Enterprise
Dependency Not applicable
BIOS.SysSecurity.TpmClear (Read or Write)
Description
WARNING: Clearing the Trusted Platform Module (TPM) will cause loss of all keys in the TPM. This could
affect booting to the Operating System (OS). When set to Yes, all the contents of the TPM will be
cleared. This field is read-only when TPM Security is set to Off.
Legal Values
Yes
No
Default Value Not Applicable
Write Privilege Server Control
License Required iDRAC Express or iDRAC Enterprise
Dependency Not applicable
404 BIOS Attributes