Operation Manual
Table6.Securitymenuitems(continued)
Menuitem
Submenuitem
Value
Comments
Password
Authentication
•Disabled
•Enabled
Enableordisablepasswordauthentication.
Ifhighsecuritymodeisselected,thisitemis
displayed.
ResetFingerprintData•Enter
Thisoptionisusedtoeraseallngerprintdata
storedinthengerprintreaderandresetsettings
tothefactorystate.Asaresult,anypower-on
securityfeaturespreviouslyenabledwillnotbe
abletoworkuntiltheyarere-enabledinthe
ngerprintsoftware.
SecurityChip
•Active
•Inactive
•Disabled
IfyouselectActive,thesecuritychipisfunctional.
IfyouselectInactive,theSecurityChipoption
isvisible,butthesecuritychipisnotfunctional.If
youselectDisabled,theSecurityChipoptionis
hiddenandthesecuritychipisnotfunctional.
SecurityReporting
Options
EnableordisablethefollowingSecurityReporting
Options:
•BIOSROMStringReporting:BIOStextstring
•ESCDReporting:Extendedsystem
congurationdata
•CMOSReporting:CMOSdata
•NVRAMReporting:Securitydatastoredin
theAssetID
•SMBIOSReporting:SMBIOSdata
ClearSecurityChip
•Enter
Cleartheencryptionkey.
Note:Thisitemisdisplayedonlyifyouhave
selectedActivefortheSecurityChipoption.
IntelTXTFeature•Disabled
•Enabled
EnableordisableIntelTrustedExecution
Technology.
PhysicalPresencefor
Provisioning
•Disabled
•Enabled
Thisoptionenablesordisablestheconrmation
messagewhenyouchangethesettingsofthe
securitychip.
SecurityChip
PhysicalPresencefor
Clear
•Disabled
•Enabled
Thisoptionenablesordisablestheconrmation
messagewhenyouclearthesecuritychip.
FlashUEFIUpdatingby
End-Users
•Disabled
•Enabled
IfyouselectEnabled,alluserscanupdatethe
UEFIBIOS.IfyouselectDisabled,onlythe
personwhoknowsthesupervisorpasswordcan
updatetheUEFIBIOS.
UEFIBIOS
UpdateOption
SecureRollBack
Prevention
•Disabled
•Enabled
IfyouselectDisabled,end-usercanashthe
olderversionUEFIBIOS.IfyouselectEnabled,
end-usercannotashtheolderversionUEFI
BIOS.
Memory
Protection
ExecutionPrevention•Disabled
•Enabled
Somecomputervirusesandwormscause
memorybufferstooverow.Byselecting
Enabledyoucanprotectyourcomputeragainst
attacksbysuchvirusesandworms.Ifafter
choosingEnabledyoundthatanapplication
programdoesnotruncorrectly,selectDisabled
andresetthesetting.
Chapter8.Advancedconguration117