3-47
Cisco UCS C220 M4 Server Installation and Service Guide
OL-32473-01
Chapter 3 Maintaining the Server
Installing or Replacing Server Components
Enabling the Intel TXT Feature in the BIOS
Intel Trusted Execution Technology (TXT) provides greater protection for information that is used and
stored on the business server. A key aspect of that protection is the provision of an isolated execution
environment and associated sections of memory where operations can be conducted on sensitive data,
invisibly to the rest of the system. Intel TXT provides for a sealed portion of storage where sensitive data
such as encryption keys can be kept, helping to shield them from being compromised during an attack
by malicious code.
Step 1
Reboot the server and watch for the prompt to press F2.
Step 2
When prompted, press
F2
to enter the BIOS Setup utility.
Step 3
Verify that the prerequisite BIOS values are enabled:
a.
Choose the
Advanced
tab.
b.
Choose
Intel TXT(LT-SX) Configuration
to open the Intel TXT(LT-SX) Hardware Support
window.
c.
Verify that the following items are listed as Enabled:
–
VT-d Support (default is Enabled)
–
VT Support (default is Enabled)
–
TPM Support
–
TPM State
•
If VT-d Support and VT Support are already enabled, skip to
Step 4
.
•
If VT-d Support and VT Support are not enabled, continue with the next steps to enable them.
d.
Press
Escape
to return to the BIOS Setup utility
Advanced
tab.
e.
On the Advanced tab, choose
Processor Configuration
to open the Processor Configuration
window.
f.
Set Intel (R) VT and Intel (R) VT-d to
Enabled
.
Step 4
Enable the Intel Trusted Execution Technology (TXT) feature:
a.
Return to the Intel TXT(LT-SX) Hardware Support window if you are not already there.
b.
Set TXT Support to
Enabled
.
Step 5
Press
F10
to save your changes and exit the BIOS Setup utility.