Operation Manual

IfaDiskEncryptionstoragedriveisinstalledinyourcomputer,besuretoprotectthecontentsofyour
computermemoryfromunauthorizedaccessesbyuseofdriveencryptionsoftware,suchasMicrosoft
WindowsBitLocker
®
DriveEncryption.See“UsingWindowsBitLockerDriveEncryption”onpage56
.
Beforeyoudisposeof,sell,orhandoveryourcomputer,deletethedatastoredonit.Formoreinformation,
referto“Noticeondeletingdatafromyourharddiskdriveorsolid-statedrive”onpage60.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbyUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureofsomeeditionsoftheWindows
operatingsystem.Itcanhelpyouprotecttheoperatingsystemanddatastoredonyourcomputer,even
ifyourcomputerislostorstolen.BitLockerworksbyencryptingalluserandsystemfiles,includingthe
swapandhibernationfiles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdefinedasaV1.2TPM.
TochecktheBitLockerstatus,openControlPanel,andclickSystemandSecurityBitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive
SomemodelscontaintheDiskEncryptionharddiskdriveorEncryptionsolid-statedrive.Thisfeaturehelps
toprotectyourcomputeragainstsecurityattacksonmedia,NANDflash,ordevicecontrollersbyuseofa
hardwareencryptionchip.Fortheefficientuseoftheencryptionfeature,setaharddiskpasswordforthe
internalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransferconfidentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
Protectyourdataandsystem
Strengthenaccesscontrols
Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
SecurityChip:Activate,inactivate,ordisablethesecuritychip.
SecurityReportingOptions:Enableordisableeachsecurityreportingoption.
ClearSecurityChip:Cleartheencryptionkey.
Beforeyoustart,printtheseinstructions.
56UserGuide