User Manual

EnterpriseeditionsoftheWindows7operatingsystemandWindows8operatingsystem.See“Using
WindowsBitLockerDriveEncryption”onpage48.
Beforeyoudisposeof,sell,orhandoveryourcomputer,deletedatastoredonit.Formoreinformation,
referto“Noticeondeletingdatafromyourharddiskdriveorsolid-statedrive”onpage52.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbytheUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureofWindows7andWindows8operating
systems.ItissupportedintheUltimateandEnterpriseeditionsoftheWindows7andProfessionaland
EnterpriseeditionsoftheWindows8operatingsystem.Itcanhelpyouprotecttheoperatingsystemand
datastoredonyourcomputer,evenifyourcomputerislostorstolen.BitLockerworksbyencryptingalluser
andsystemles,includingtheswapandhibernationles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdenedasaV1.2TPM.
TochecktheBitLockerstatus,gotoControlPanel,andclickSystemandSecurityBitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive
SomemodelscontaintheDiskEncryptionharddiskdriveorEncryptionsolid-statedrive.Thisfeaturehelps
toprotectyourcomputeragainstsecurityattacksonmedia,NANDash,ordevicecontrollersbyuseofa
hardwareencryptionchip.Fortheefcientuseoftheencryptionfeature,setaharddiskpasswordforthe
internalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransfercondentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
Protectyourdataandsystem
Strengthenaccesscontrols
Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
SecurityChip:Activate,inactivate,ordisablethesecuritychip.
SecurityReportingOptions:Enableordisableeachsecurityreportingoption.
ClearSecurityChip:Cleartheencryptionkey.
Beforeyoustart,printtheseinstructions.
48UserGuide