
Option
Description
●
SHA-256—enabled by default
●
Disabled
●
Enabled—enabled by default
Computrace
Allows you to activate or disable the optional Computrace software The options are:
●
Deactivate
●
Disable
●
Activate—enabled by default
NOTE:
The Activate and Disable options will permanently activate or disable the feature and no
further changes are allowed
CPU XD Support
Allows you to enable the Execute Disable mode of the processor.
Enable CPU XD Support—enabled by default
Admin Setup
Lockout
Allows you to prevent users from entering Setup when an Administrator password is set.
Default Setting: This option is enabled
Master password
lockout
This option is not enabled by default
Secure Boot screen options
Option
Description
Secure Boot
Enable
This option enables or disables the
Secure Boot
feature.
●
Disabled
●
Enabled
Default setting: Enabled
Expert Key
Management
Allows you to manage all secure boot keys. Manage All Factory Keys (PK, KEK, DB, DBX)
NOTE:
For Secure Boot to be enabled, the system needs to be in UEFI boot mode and the Enable Legacy Option ROMs
option needs to be turned off.
Intel software guard extensions screen options
Option
Description
Intel SGX Enable
This field specifies you to provide a secured environment for running code/storing sensitive information in
the context of the main OS. The options are:
●
Software controlled—enabled by default
●
Enabled
Default setting: Software controlled
Enclave Memory
Size
This option allows you to set the
SGX Enclave Reserve Memory Size
. The options are:
●
32 MB
●
64 MB
●
128 MB—enabled by default
System setup
53