Deployment Guide

System BIOS
51 Setting up BIOS on 15th Generation (15G) Dell EMC PowerEdge Servers | 508
When set to Activate, the TPM will be enabled
and activated.
When set to Deactivate, the TPM will be
disabled and deactivated.
When set to Clear, all the contents of the TPM
will be cleared.
WARNING: Clearing the TPM will cause loss of all
the keys in the TPM. This could affect booting to the
OS.
Note: This field is read-only when TPM Security is
set to Off. The action requires an additional reboot
before it can become effective.
TPM Hierarchy (TPM 2.0
only)
Allows enabling, disabling, or clearing the storage
and endorsement hierarchies.
When set to Enabled, the storage and
endorsement hierarchies can be used.
When set to Disabled, the storage and
endorsement hierarchies cannot be used.
When set to Clear, the storage and endorsement
hierarchies are cleared of any values, and then
reset to Enabled.
TPM PPI Bypass Provision
Enabled
Disabled
When set to Enabled, allows the OS to bypass
Physical Presence Interface (PPI) prompts when
issuing PPI Advanced Configuration and Power
Interface (ACPI) provisioning operations.
TPM PPI Bypass Clear
Enabled
Disabled
When set to Enabled, allows the OS to bypass
Physical Presence Interface (PPI) prompts when
issuing PPI Advanced Configuration and Power
Interface (ACPI) clear operations.
TPM2 Algorithm Selection
(TPM2.0 only)
SHA1
SHA256
SM3 (if TPM
supports it)
Enables or disables Trusted Execution Technology.
To enable Intel(R) TXT, Virtualization Technology
must be enabled, TPM Security must be On, and
TPM2 Algorithm must be SHA256.
Intel TXT
Off
On
Allows you to enable or disable the Intel Trusted
Execution Technology (TXT).
To enable Intel TXT the following must be set:
TPM 1.2
Virtualization Technology must be enabled
TPM Security must be “On with Pre-boot
Measurements
TPM Status must be “Enabled, Activated”
TPM 2.0
Virtualization Technology must be enabled
TPM Security must be On
TPM2 Algorithm Selection must be set to
SHA256