User's Manual

Table Of Contents
SecureBootMode
Values:StandardMode,CustomMode
Descriptions:SpecifytheSecureBootmode.
ResettoSetupMode
Descriptions:UsethisoptiontoclearthecurrentplatformkeyandresetPlatformModetoSetupMode.
YoucaninstallyourownplatformkeyandcustomizetheSecureBootsignaturedatabasesinSetup
Mode.SecureBootModewillbesettoCustomMode.
RestoreFactoryKeys
Descriptions:UsethisoptiontorestoreallkeysandcertificatesinSecureBootdatabasestothe
factorydefaults.
ClearAllSecureBootKeys
Descriptions:UsethisoptiontoclearallkeysandcertificatesinSecureBootdatabasesandinstall
yourownkeysandcertificates.
Intel(R)SGX
Intel(R)SGXControl
Values:Disabled,Enabled,SoftwareControlled
Descriptions:EnableordisabletheIntelSoftwareGuardExtensions(SGX)function.Ifyouselect
SoftwareControlled,SGXwillbecontrolledbytheoperatingsystem.
ChangeOwnerEPOCH
Descriptions:ChangeOwnerEPOCHtoarandomvalue.UsethisoptiontoclearSGXuserdata.
DeviceGuard
DeviceGuard
Values:Disabled,Enabled
Descriptions:ThisoptionisusedtosupportMicrosoftDeviceGuard.
Whenthisoptionisenabled,IntelVirtualizationTechnology,IntelVT-dFeature,SecureBoot,andOS
OptimizedDefaultsareautomaticallyenabled.Bootorderisnotselectable.Tocompletetheconfiguration
ofDeviceGuard,youhavetosetasupervisorpassword.
Whenthisoptionisdisabled,thesetupoptionsareconfigurableandyoucanchooseanybootoptions
tostartthecomputer.
Startupmenu
Note:TheBIOSmenuitemsmightchangewithoutnotice.Dependingonthemodel,thedefaultvalue
mightvary.
Boot
Descriptions:Definethestartupsequence.
NetworkBoot
Descriptions:SelectthebootdevicewhenthesystemwakesfromLAN.IfWakeOnLANisenabled,the
networkadministratorcanturnonallofthecomputersinaLANremotelythroughnetworkmanagement
software.
UEFI/LegacyBoot
Values:Both,UEFIOnly,LegacyOnly
Descriptions:Definethesystembootcapability.
BootMode
Chapter6.Advancedconfiguration69