User guide

Table8.Securitymenuitems(continued)
Menuitem
Submenuitem
Value
Comments
FlashBIOSUpdate
byEnd-Users
Disabled
Enabled
IfyouselectEnabled,alluserscanupdatethe
UEFIBIOS.IfyouselectDisabled,onlythe
personwhoknowsthesupervisorpassword
canupdatetheUEFIBIOS.
UEFIBIOSUpdate
Option
SecureRollBack
Prevention
Disabled(If
OSOptimized
Defaultsissetas
disabled.)
Enabled(If
OSOptimized
Defaultsisas
enabled.)
IfyouselectDisabled,youcanflashtheolder
versionUEFIBIOS.
SecurityChip
Selection
DiscreteTPM
IntelPPT
IfyouselectDiscreteTPM,youcanusea
discreteTPMchipwithTPM1.2mode.Ifyou
selectIntelPTT,youcanuseIntelPlatform
Trustedtechnology(PTT)withTPM2.0mode.
Note:
IntelPTTcanbeusedwithWindows8.1or
lateroperatingsystem.
SecurityChip
Active
Inactive
Disabled
IfyouselectActive,thesecuritychipis
functional.IfyouselectInactive,theSecurity
Chipoptionisvisible,butthesecuritychip
isnotfunctional.IfyouselectDisabled,
theSecurityChipoptionishiddenandthe
securitychipisnotfunctional.
SecurityReporting
Options
ThisoptionisavailablewhenSecurityChip
isactive.Itisusedtoenableordisablethe
followingSecurityReportingOptions:
BIOSROMStringReporting(Windows7)
orUEFIROMStringReporting(Windows
8.1):BIOStextstring
CMOSReporting:CMOSdata
NVRAMReporting:Securitydatastoredin
theAssetID
SMBIOSReporting:SMBIOSdata
ClearSecurityChip
Enter
Cleartheencryptionkey.
Note:Thisitemisdisplayedonlyifyouhave
selectedActivefortheSecurityChipoption.
IntelTXTFeatureDisabled
Enabled
EnableordisabletheIntelTrustedExecution
Technology.
Note:Thisitemisdisplayedonlyifyouhave
selectedActivefortheSecurityChipoption.
PhysicalPresence
forProvisioning
Disabled
Enabled
Enableordisabletheconfirmationmessage
whenyouchangethesettingsofthesecurity
chip.
SecurityChip
PhysicalPresence
forClear
Disabled
Enabled
Enableordisabletheconfirmationmessage
whenyouclearthesecuritychip.
100UserGuide