User guide

andEnterpriseeditionsoftheWindows7,Windows8,andWindows8.1operatingsystems.See“Using
WindowsBitLockerDriveEncryption”onpage54
.
Beforeyoudisposeof,sell,orhandoveryourcomputer,deletedatastoredonit.Formoreinformation,
referto“Noticeondeletingdatafromyourharddiskdriveorsolid-statedrive”onpage58.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbytheUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureofWindows7,Windows8,andWindows
8.1operatingsystems.ItissupportedintheUltimateandEnterpriseeditionsoftheWindows7and
ProfessionalandEnterpriseeditionsoftheWindows8andWindows8.1operatingsystems.Itcanhelpyou
protecttheoperatingsystemanddatastoredonyourcomputer,evenifyourcomputerislostorstolen.
BitLockerworksbyencryptingalluserandsystemfiles,includingtheswapandhibernationfiles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdefinedasaV1.2TPM.
TochecktheBitLockerstatus,gotoControlPanel,andclickSystemandSecurityBitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive
SomemodelscontaintheDiskEncryptionharddiskdriveorEncryptionsolid-statedrive.Thisfeaturehelps
toprotectyourcomputeragainstsecurityattacksonmedia,NANDflash,ordevicecontrollersbyuseofa
hardwareencryptionchip.Fortheefficientuseoftheencryptionfeature,setaharddiskpasswordforthe
internalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransferconfidentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
Protectyourdataandsystem
Strengthenaccesscontrols
Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
SecurityChipSelection:SelectDiscreteTPMorIntelPTT.
SecurityChip:Activate,inactivate,ordisablethesecuritychip.
SecurityReportingOptions:Enableordisableeachsecurityreportingoption.
ClearSecurityChip:Cleartheencryptionkey.
Beforeyoustart,printtheseinstructions.
54UserGuide