Technical whitepaper HP PC Commercial BIOS (UEFI) Setup Administration Guide For Business Notebook and Desktop 2015 Models May 2016 857394-002
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Table of contents 1 Abstract ................................................................................................................................. 5 2 Introduction ........................................................................................................................... 6 2.1 Supported models ....................................................................................................................................
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 7 Computer Notifications ....................................................................................................... 46 7.1 Introduction ................................................................................................................................................... 46 7.2 Blink and Beep Codes ..................................................................................................................................
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 List of tables Table 1 Notebook Generations........................................................................................................................... 6 Table 2 Desktop Generations ............................................................................................................................. 7 Table 3 Additional 2014 Models....................................................................................................
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 1 Abstract HP redesigned the 2015 generation of BIOS to support the requirements of the latest CPU and operating systems. HP took this opportunity to create a new BIOS architecture based on the UEFI specification version 2.4 with a common set of core modules capable of supporting both notebook and desktop models.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 2 Introduction This white paper provides detailed information about features adjusted through the F10 BIOS setup menu. The section on computer notifications provides an explanation for the LED blink codes and screen messages that may occur.
HP PC Commercial BIOS (UEFI) Setup Platforms May 2016 857394-002 2013 2014 2015 HP ProBook 450 G2 G3 HP ProBook 440 G2 G3 HP ProBook 430 G2 G3 HP ProBook 445 G2 G3 HP EliteFolio 940 x HP EliteBook Folio HP EliteBook G3 Revolve 810 G3 HP ProBook G2 HP ZBook Studio G3 HP ProBook 455 G3 Table 2 Desktop Generations Platforms 2014 2015 HP EliteDesk 800 TWR G2 HP EliteDesk 880 TWR G2 HP EliteDesk 800 SFF G2 HP EliteDesk 800 DM (35W) HP EliteDesk 800 DM (65W) G2
HP PC Commercial BIOS (UEFI) Setup Platforms May 2016 857394-002 2014 2015 HP ProDesk 400 SFF (2x2) HP ProDesk 480 MT G2 G3 HP ProDesk 490 MT G2 G3 HP ProDesk 498 MT G2 G3 HP ProDesk 400 DM G1 HP ProDesk 400 DM G2 HP ProOne 400 AiO 20 T/NT G2 HP ProOne 460/480 AiO 20 T G2 HP Collaboration PC G2 Table 3 Additional 2014 Models Platforms 2014 HP EliteOne 800 AiO 21.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 To be sure that this document applies to your product simply look at the header of the F10 setup menu. The new BIOS has four tabs: Main Security Advanced UEFI Drivers. This is completely new for Desktops and Notebooks since the UEFI Drivers tab has been added recently. © Copyright 2016 HP Development Company, L.P.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 3 F10 Main Menu Main Security Advanced UEFI Drivers HP Computer Setup Organization of the F 10 section: The hierarchy of the table of contents matches the sequence of the menus found in the F10 Setup menu, currently three levels deep. The top level tabs are: Main, Security, Advanced and UEFI Drivers. The next level are the menus found under these tabs. At the beginning of each major section is a diagram of the sub-menu items for each tab.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Notes Some features are not available for all types of models. The notes will describe when a feature is Intel only, AMD only, notebook only or desktop only. Some actions require a reboot or physical presence. Physical presence is a menu that requires a human response to validate that a person is physically present before the action is completed. Actions that require physical presence are security sensitive changes.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Update System BIOS Menu Update system firmware from FAT 32 partition on the hard drive, a USB disk–on-key, or the network Default Notes 2014 Desktop: New menu. The equivalent 2014 feature for File -> Flash system ROM is located under this menu System IDs Menu Identification strings that assigned by an enterprise to track the system.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 3.2 Update System BIOS Menu This sub-menu under the Main menu provides information about the current system firmware, settings; these control updates, the ability to check for updates over the internet or on the local network, and the ability to update system firmware from a FAT 32 partition on the hard drive, or a USB disk–on-key. For the BIOS flash to succeed, do not remove power or turn off the system during any phase of the process.
HP PC Commercial BIOS (UEFI) Setup Network Configuration Settings May 2016 857394-002 Menu Configure the network connection to the server that is the host for your system firmware updates. 2014 Notebook & Desktop: New Update BIOS using Local Media Action Updates the system BIOS by using an image stored on local media such as the hard drive or a USB drive formatted as FAT32 or EFI system partition. Reboot required 2014 Desktop: File -> Flash System ROM -> Hard Drive 3.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Automatic BIOS Update Setting Setting Defines how automatic updates behave.
HP PC Commercial BIOS (UEFI) Setup Feature May 2016 857394-002 Type Description Default Notes 2014 Notebook & Desktop: New IPv4 Address Setting When IPv4 settings are manual, setup for static IPv4 address 2014 Notebook & Desktop: New IPv4 Subnet Mask Setting When IPv4 settings are manual, configure a valid IPv4 address for subnet mask 2014 Notebook & Desktop: New IPv4 Gateway Setting When IPv4 settings are manual, configure a valid IPv4 address for gateway.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 4 Security Menu Main Security Advanced UEFI Drivers HP Computer Setup Administrator Tools Create/Change BIOS Administration Password Create/Change POST Power-On Password Fingerprint Reset on Reboot (Notebook with Fingerprint Reader Only) Password Policies Security Configuration TPM Embedded Security BIOS SureStart Smart Cover (Desktop Only) Trusted Execution Technology (TXT) TXT cannot be enabled unless VTx, VTd and TPM are enable
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Table 9 Security Menu features Feature Type Description Create BIOS Administrator Password Setting The Administrator password controls access to the setup menu (F10), 3rd Party Option ROM Management (F3), Update System ROM, WMI commands that change system settings and the BIOS Configuration Utility (BCU). When no Administrator password is set, anyone can change the system settings, add 3rd Party Option ROM or update the system ROM.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description BIOS Sure Start Menu Settings that control the behavior of HP Sure Start. HP Sure Start is a built-in hardware security system that protects your BIOS from accidental or malicious corruption by (1) detecting BIOS corruption and then (2) automatically restoring the BIOS to its last installed HP certified version. Default Notes 2014 Notebook: Security -> Sure Start 2014 Desktop: New.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes System Management Command Setting When checked, allows authorized HP service personnel in possession of the PC to reset security settings in case of a customer service event. For customers that require more BIOS security, uncheck this to prevent this type of HP service command.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Prompt for Administrator password on F9 (Boot Menu) Setting When checked, the administrator password is required to enter the boot menu Checked Prompt for Administrator password on F11 (System Recovery) Setting When checked, the administrator password is required to enter system recovery Checked Prompt for Administrator password on F12 (Network Boot) Setting When checked, the administrator password
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 4.2 Trusted Platform Module (TPM) Embedded Security Menu This sub-menu for the Trusted Platform Module (TPM.) is a dedicated microprocessor that provides security functions for secure communication and software and hardware integrity. The built in TPM hardware solution is more secure than a software only solution.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 4.3 BIOS Sure Start Menu Settings menu for Enhanced hardware based assurance that only HP approved Embedded Controller firmware will run on the HP Embedded Controller and that only HP approved BIOS will run on the host CPU.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Dynamic Runtime Scanning of Boot Block Setting When checked, allows HP Sure Start © will verify the integrity of the HP firmware in the non-volatile (flash) memory every 15 minutes while the system in the On state with the user operating system active Checked Notes 2014 Desktop: New 4.4 Smart Cover Menu (Desktop Only) This sub-menu controls settings for Cover Lock and Cover Sensor.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Table 14 Hard Drive Utilities Menu features Feature Type Description Default Notes Save/Restore MBR of the system hard drive Setting When checked, saves a baseline MBR that can be restored if a change is detected Unchecked Reboot Required NOTE: Not applicable for UEFI boot modes 2014 Notebook: Security -> Hard Drive Tools -> Save/Restore MBR of the system hard drive 2014 Desktop: Security -> Master Boot Record Security DriveLock Menu Se
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes Automatic DriveLock Setting Requires the BIOS to authenticate the user before the drive is unlocked. The user can be a BIOS user (managed by F10 Setup) or a HP Client Security Software Suite user (managed by the OS) Disabled Reboot Required Following authentication, the BIOS automatically supplies the DriveLock password.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 5 Advanced Menu Main Security Advanced UEFI Drivers HP Computer Setup Display Language Scheduled Power-On Boot Options Secure Boot Configuration System Options Built-In Device Options Port Options Option ROM Launch Policy Power Management Options Remote Management Options (Intel Only) Electronic Labels (Notebook Only) © Copyright 2016 HP Development Company, L.P.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 5.1 Advanced Menu For detailed information on the features in the advanced menu, see the following table: Table 16 Advanced Menu features Feature Type Description Display Language Menu Select the display language and the keyboard language. Choose between 14 languages. You can display the menu in English, French, German, Spanish, Italian, Dutch, Danish, Japanese, Norwegian, Portuguese, Swedish, Finnish, Chinese Traditional, or Chinese Simplified.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Power Management Options Menu Settings that control power saving features and the behavior of the system in low power modes Notes 2014 Notebook: New 2014 Desktop: New Menu.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 5.3 Scheduled Power-On Menu This sub-menu controls the days of the week and a single time of day for the system to power-on. This feature wakes the system up from a powered off state.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Network PXE Boot Setting When checked, allows system to boot from a network card Checked Notes 2014 Notebook: Advanced -> Boot Options -> PXE Internal NIC boot 2014 Desktop: Security -> Network Boot After Power Loss Setting Specifies the desktop state after power loss.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Legacy Boot Order Setting When checked, allows the system to boot from non-UEFI devices. Checked Notes 2014 Notebook: New 2014 Desktop: Storage -> Boot Order -> Legacy Boot Sources -> F5 key Requires “Legacy Boot Enable and Secure Boot Disable.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 5.5 Secure Boot Configurations Menu Submenu to configure Secure Boot. Starting with Windows 8, Secure Boot is a UEFI feature that helps resist attacks and infection from malware. From the factory, your system came with a list of keys that identify trusted hardware, firmware, and an operating system loader code. It also created a list of keys to identify known malware.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 5.6 System Options Menu Table 21 System Options Menu features Feature Type Description Default Notes Configure Storage Controller for RAID Setting When checked, configures SATA Controller for RAID mode 2014 Desktop: Storage -> Storage Options -> SATA Emulation Unchecked Desktop Only PCIE GEN Support Speed Setting Allows you to restrict the maximum speed of the PCI Express devices to previous generations.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes Virtualization Technology (VTx) Setting When checked, enables VT on Intel-based systems Unchecked Intel Only Unchecked Intel Only Unchecked AMD Only Unchecked Notebook Only Unchecked Intel Notebook Only Checked Desktop Only Checked Desktop Only Checked Desktop Only Checked Desktop Only Checked Desktop Only 2014 Notebook: Advanced -> Device Configurations -> Virtualization Technology
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes Power Button Override Setting Sets the time required to hold the power button down for the desktop to turn off, overriding the power button behavior defined by the operating system. The following settings are possible: 4 sec Desktop Only Notes Disable 4 sec 15 sec 2014 Desktop: New 5.7 Built-in Device Options Menu This menu provides settings built-in devices on the system.
HP PC Commercial BIOS (UEFI) Setup Feature Type VGA Boot Device May 2016 857394-002 Description Default Notes The firmware can only support one graphic device when booting up; so, when a graphics card is added, this feature selects the graphics system to use as the primary VGA device during boot-up Add-in graphics is set as primary Desktop with add-in graphics card Only The integrated graphics Add-in graphics card 2014 Desktop: New Video Memory Size Setting System memory reserved for video
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Internal Speakers Setting When checked, enables the internal speaker Checked Notes 2014 Notebook: New. The most similar feature is Advanced –> Built-In Options -> Speakers and Headphones 2014 Desktop: New. The most similar feature is Security > Device Security -> System Audio Headphone Output Setting When checked, enables the headphone jack Checked Notebook Only 2014 Notebook: New.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes Fan Always on while on AC Power Setting When checked, leaves the fan on while running on AC power Unchecked Notebook Only Boost Converter Setting When checked, the notebook draws power from the battery when the system is on AC in order to give the CPU a momentary performance gain by increasing the overall power available to the CPU Checked Notebook Only Backlit Keyboard Timeout Setting Specif
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes USB Charging Port Setting When checked, enables the USB charging port to charge devices during hibernation or shutdown. This setting is equivalent to the “USB Charging Port Function” setting on a desktop. Unchecked Notebook Only Checked Notebook Only 2014 Notebook: New Media Card Reader Setting When checked, enables integrated media card reader.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes USB Charging Port Function Setting When checked, enables the USB charging port to charge devices during hibernation or shutdown. This setting is equivalent to the “USB Charging Port” setting on a notebook.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 5.10 Power Management Options Menu The following table describes varous setting options for Power Management Options.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes Wake when Lid is Opened Setting When checked, opening the lid wakes the notebook from sleep mode Unchecked Notebook Only Checked Notebook Only Unchecked Notebook Only 2014 Notebook: Advanced -> Built-In Device Options -> Wake unit from sleep when lid is opened Wake on USB Setting When checked, allows the system to resume from sleep when a USB input device is triggered (such as mouse movement o
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 Feature Type Description Default Notes SOL Terminal Emulation Mode Setting Specifies the Serial Over Lan (SOL) terminal emulation mode.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 6 UEFI Drivers Main Security Advanced UEFI Drivers HP Computer Setup This will restart the system into the 3rd Part Option ROM Management application. You can get to this application directly by pressing F3 during startup 3rd Party Option ROM Management © Copyright 2016 HP Development Company, L.P.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 7 Computer Notifications 7.1 Introduction The power LED on the Intel® NUC will blink in a pattern if an error occurs during POST. Intel NUC products that include a front panel audio jack will also produce an audible beep pattern heard through headphones or speakers plugged into that jack.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 7.2 Blink and Beep Codes Some system errors prevent the use of the video screen; instead, the system provides error information through blink codes using LED lights. The LED light used depends on the system being a notebook or a desktop. The codes are presented in a sequence. For desktop, this means red blinks followed by white blinks. Audible long and short beeps accompany red or white blinks, respectively.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 7.3 Popup Messages Onscreen notification can involve popup (toaster) messages. These describe several events involving USB Type C ports. Table 28 Popup messages Event Code Message Detail Power Adapter Accepted: Matches capabilities to charge while in Sx 1 Title: USB Type-C Connector A user plugs in a power adapter that is too small to operate the system while the device is powered on.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 8 Appendix 1 8.1 What is UEFI? Unified Extensible Firmware Interface (UEFI) defines the interface between the operating system and platform firmware during the boot, or start-up process. Compared to BIOS, UEFI supports advanced pre-boot user interfaces. The UEFI network stack enables implementation on a richer network-based OS deployment environment while still supporting traditional PXE deployments. UEFI supports both IPv4 and IPv6 networks.
HP PC Commercial BIOS (UEFI) Setup May 2016 857394-002 8.5 The UEFI Forum For more information contact the Unified Extensible Firmware Interface (UEFI) Forum, it is a world-class non-profit industry standards body that works in partnership to enable the evolution of platform technologies. The UEFI Forum champions firmware innovation through industry collaboration and the advocacy of a standardized interface that simplifies and secures platform initialization and firmware bootstrap operations.