User Manual
EnterpriseeditionsoftheWindows7operatingsystemandWindows8operatingsystem.See“Using
WindowsBitLockerDriveEncryption”onpage48.
•Beforeyoudisposeof,sell,orhandoveryourcomputer,deletedatastoredonit.Formoreinformation,
referto“Noticeondeletingdatafromyourharddiskdriveorsolid-statedrive”onpage52.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbytheUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureofWindows7andWindows8operating
systems.ItissupportedintheUltimateandEnterpriseeditionsoftheWindows7andProfessionaland
EnterpriseeditionsoftheWindows8operatingsystem.Itcanhelpyouprotecttheoperatingsystemand
datastoredonyourcomputer,evenifyourcomputerislostorstolen.BitLockerworksbyencryptingalluser
andsystemles,includingtheswapandhibernationles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdenedasaV1.2TPM.
TochecktheBitLockerstatus,gotoControlPanel,andclickSystemandSecurity➙BitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive
SomemodelscontaintheDiskEncryptionharddiskdriveorEncryptionsolid-statedrive.Thisfeaturehelps
toprotectyourcomputeragainstsecurityattacksonmedia,NANDash,ordevicecontrollersbyuseofa
hardwareencryptionchip.Fortheefcientuseoftheencryptionfeature,setaharddiskpasswordforthe
internalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransfercondentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
•Protectyourdataandsystem
•Strengthenaccesscontrols
•Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
•SecurityChip:Activate,inactivate,ordisablethesecuritychip.
•SecurityReportingOptions:Enableordisableeachsecurityreportingoption.
•ClearSecurityChip:Cleartheencryptionkey.
Beforeyoustart,printtheseinstructions.
48UserGuide