User guide
andEnterpriseeditionsoftheWindows7,Windows8,andWindows8.1operatingsystems.See“Using
WindowsBitLockerDriveEncryption”onpage54
.
•Beforeyoudisposeof,sell,orhandoveryourcomputer,deletedatastoredonit.Formoreinformation,
referto“Noticeondeletingdatafromyourharddiskdriveorsolid-statedrive”onpage58.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbytheUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureofWindows7,Windows8,andWindows
8.1operatingsystems.ItissupportedintheUltimateandEnterpriseeditionsoftheWindows7and
ProfessionalandEnterpriseeditionsoftheWindows8andWindows8.1operatingsystems.Itcanhelpyou
protecttheoperatingsystemanddatastoredonyourcomputer,evenifyourcomputerislostorstolen.
BitLockerworksbyencryptingalluserandsystemfiles,includingtheswapandhibernationfiles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdefinedasaV1.2TPM.
TochecktheBitLockerstatus,gotoControlPanel,andclickSystemandSecurity➙BitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive
SomemodelscontaintheDiskEncryptionharddiskdriveorEncryptionsolid-statedrive.Thisfeaturehelps
toprotectyourcomputeragainstsecurityattacksonmedia,NANDflash,ordevicecontrollersbyuseofa
hardwareencryptionchip.Fortheefficientuseoftheencryptionfeature,setaharddiskpasswordforthe
internalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransferconfidentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
•Protectyourdataandsystem
•Strengthenaccesscontrols
•Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
•SecurityChipSelection:SelectDiscreteTPMorIntelPTT.
•SecurityChip:Activate,inactivate,ordisablethesecuritychip.
•SecurityReportingOptions:Enableordisableeachsecurityreportingoption.
•ClearSecurityChip:Cleartheencryptionkey.
Beforeyoustart,printtheseinstructions.
54UserGuide