User Manual

ToprovidereliablesecurityfortheUEFIBIOS,usethesecuritychipandasecurityapplicationwitha
TrustedPlatformModulemanagementfeature.Referto“Settingthesecuritychip”onpage66
.
Note:Dependingonthemodel,yourcomputermightsupporttheTPMmanagementfeature
IfaDiskEncryptionstoragedriveisinstalledinyourcomputer,besuretoprotectthecontentsofyour
computermemoryfromunauthorizedaccessesbyuseofdriveencryptionsoftware,suchasMicrosoft
WindowsBitLocker
®
DriveEncryption.See“UsingWindowsBitLockerDriveEncryption”onpage66.
Beforeyoudisposeof,sell,orhandoveryourcomputer,deletedatastoredonit.Formoreinformation,
referto“Noticeondeletingdatafromyourharddiskdriveorsolid-statedrive”onpage70.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbytheUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureofsomeeditionsoftheWindows
operatingsystem.Itcanhelpyouprotecttheoperatingsystemanddatastoredonyourcomputer,even
ifyourcomputerislostorstolen.BitLockerworksbyencryptingalluserandsystemfiles,includingthe
swapandhibernationfiles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdefinedasaV1.2TPM.
TochecktheBitLockerstatus,gotoControlPanel,andclickSystemandSecurityBitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive,orEncryptionhybriddrive
SomemodelscontaintheDiskEncryptionharddiskdrive,Encryptionsolid-statedrive,orEncryptionhybrid
drive.Thisfeaturehelpstoprotectyourcomputeragainstsecurityattacksonmedia,NANDflash,ordevice
controllersbyuseofahardwareencryptionchip.Fortheefficientuseoftheencryptionfeature,seta
harddiskpasswordfortheinternalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransferconfidentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
Protectyourdataandsystem
Strengthenaccesscontrols
Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
SecurityChipSelection:SelectDiscreteTPMorIntelPTT.
SecurityChip:Activate,inactivate,ordisablethesecuritychip.
66ThinkPadT460UserGuide