Table 6. Security (continued)
Option
Description
The options are:
●
TPM On
—Default
●
Clear
●
PPI Bypass for Enable Command
—Default
●
PPI Bypass for Disbale Command
●
PPI Bypass for Clear Command
●
Attestation Enable
—Default
●
Key Storage Enable
—Default
●
SHA-256
—Default
Absolute (R)
Allows you to activate or disable the optional Computrace software.
The options are:
●
Deactivate
●
Disable
●
Activate
—Default
OROM keyboard Access
Allows you to enable or disable Option ROM configuration screens via hotkeys during boot.
●
Enable
—Default
●
Disable
●
One Time Enable
Admin Setup Lockout
Allows you to prevent users from entering Setup when an administrator password is set.
●
Enable Admin Setup Lockout
This option is not set by default.
Master Password
Lockout
Allows you to disable master password support.
●
Enable Master Password Lockout
This option is not set by default.
NOTE:
Hard Disk password should be cleared before the settings can be changed.
SMM Security
Mitigation
Allows you to enable or disable additional UEFI SMM Security Mitigation protection.
●
SMM Security Mitigation
This option is not set by default.
Secure Boot
Table 7. Secure Boot
Option
Description
Secure Boot Enable
Allows you to enable or disable the Secure Boot Feature.
●
Secure Boot Enable
—Default
Secure Boot Mode
Changes to the Secure Boot operation mode modifies the
behaviour of Secure Boot to allow evaluation of UEFI driver
signatures.
Choose one of the option:
●
Deployed Mode
—Default
●
Audit Mode
BIOS setup
107