User guide
Table8.Securitymenuitems(continued)
Menuitem
Submenuitem
Value
Comments
FlashBIOSUpdate
byEnd-Users
•Disabled
•Enabled
IfyouselectEnabled,alluserscanupdatethe
UEFIBIOS.IfyouselectDisabled,onlythe
personwhoknowsthesupervisorpassword
canupdatetheUEFIBIOS.
UEFIBIOSUpdate
Option
SecureRollBack
Prevention
•Disabled(If
OSOptimized
Defaultsissetas
disabled.)
•Enabled(If
OSOptimized
Defaultsisas
enabled.)
IfyouselectDisabled,youcanflashtheolder
versionUEFIBIOS.
SecurityChip
Selection
•DiscreteTPM
•IntelPPT
IfyouselectDiscreteTPM,youcanusea
discreteTPMchipwithTPM1.2mode.Ifyou
selectIntelPTT,youcanuseIntelPlatform
Trustedtechnology(PTT)withTPM2.0mode.
Note:
IntelPTTcanbeusedwithWindows8.1or
lateroperatingsystem.
SecurityChip
•Active
•Inactive
•Disabled
IfyouselectActive,thesecuritychipis
functional.IfyouselectInactive,theSecurity
Chipoptionisvisible,butthesecuritychip
isnotfunctional.IfyouselectDisabled,
theSecurityChipoptionishiddenandthe
securitychipisnotfunctional.
SecurityReporting
Options
ThisoptionisavailablewhenSecurityChip
isactive.Itisusedtoenableordisablethe
followingSecurityReportingOptions:
•BIOSROMStringReporting(Windows7)
orUEFIROMStringReporting(Windows
8.1):BIOStextstring
•CMOSReporting:CMOSdata
•NVRAMReporting:Securitydatastoredin
theAssetID
•SMBIOSReporting:SMBIOSdata
ClearSecurityChip
•Enter
Cleartheencryptionkey.
Note:Thisitemisdisplayedonlyifyouhave
selectedActivefortheSecurityChipoption.
IntelTXTFeature•Disabled
•Enabled
EnableordisabletheIntelTrustedExecution
Technology.
Note:Thisitemisdisplayedonlyifyouhave
selectedActivefortheSecurityChipoption.
PhysicalPresence
forProvisioning
•Disabled
•Enabled
Enableordisabletheconfirmationmessage
whenyouchangethesettingsofthesecurity
chip.
SecurityChip
PhysicalPresence
forClear
•Disabled
•Enabled
Enableordisabletheconfirmationmessage
whenyouclearthesecuritychip.
100UserGuide