User Manual

Setapower-onpasswordaswellasaharddiskpassword.Forsecurity,alongerpasswordis
recommended.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbyUEFIBIOS.Toprovidereliablesecurity,
usethesecuritychipandasecurityprogramwiththeTrustedPlatformModule(TPM)management
feature.See“Settingthesecuritychip”onpage61
.
IfaDiskEncryptionstoragedriveisinstalledinyourcomputer,ensuretoprotectthecontentsofyour
computerfromunauthorizedaccessbyuseofdriveencryptionsoftware,suchasMicrosoftWindows
BitLocker
®
DriveEncryption.
Beforeyoudisposeof,sell,orhandoveryourcomputer,deletethedatastoredonit.Formoreinformation,
see“Deletingdatafromyourstoragedrive”onpage64
.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryption(referredtoasBitLocker)isanintegralsecurityfeatureofsomeeditions
oftheWindowsoperatingsystem.Itcanhelpyouprotecttheoperatingsystemanddatastoredonyour
computer,evenifyourcomputerislostorstolen.BitLockercanencryptalluserandsystemfiles,including
theswapandhibernationfiles.
BitLockerusestheTPMtoprovideenhancedprotectionforyourdataandtoensureearlybootcomponent
integrity.AcompatibleTPMisdefinedasaV1.2TPM(Windows732-bit)orV2.0TPM(Windows764-bit
andWindows10).
TochecktheBitLockerstatus,gotoControlPanel,viewControlPanelbyCategory,andclickSystemand
SecurityBitLockerDriveEncryption.
Formoreinformation,seethehelpsystemoftheWindowsoperatingsystem,orsearchfor“Microsoft
WindowsBitLockerDriveEncryptionStep-by-StepGuide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive
SomemodelscontaintheDiskEncryptionharddiskdrive,Encryptionsolid-statedrive,orEncryptionhybrid
drive.Thisencryptiontechnologyhelpstoprotectyourcomputeragainstsecurityattacksonmedia,NAND
flash,ordevicecontrollersbyuseofahardwareencryptionchip.Fortheefficientuseoftheencryption
feature,setaharddiskpasswordfortheinternalstoragedrive.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransferconfidentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip
(acryptographicmicroprocessor).Withthesecuritychip,youcandothefollowing:
Protectyourdataandsystem
Strengthenaccesscontrols
Securecommunications
Beforeyoustart,printtheseinstructions.
TosetanitemontheSecurityChipsubmenu,dothefollowing:
1.Restartthecomputer.Whenthelogoscreenisdisplayed,pressF1tostarttheThinkPadSetupprogram.
2.SelectSecuritySecurityChipbyusingthedirectionalkeys.
3.PressEnter.TheSecurityChipsubmenuopens.
Chapter5.Security61