• Enabling or disabling TPM
• Clearing the TPM
8.
Enable TPM functionality in the OS, such as Microsoft Windows BitLocker or measured boot.
For more information, see the
Enabling the Trusted Platform Module as TPM 1.2
Procedure
1.
During the server startup sequence, press the
F9
key to access
System Utilities
.
2.
From the System Utilities screen select
System Configuration
>
BIOS/Platform Configuration (RBSU)
>
Server Security
>
Trusted Platform Module options
.
3.
Change the "TPM Mode Switch Operation" to
TPM 1.2
.
4.
Verify "TPM Visibility" is
Visible
.
5.
Press the
F10
key to save your selection.
6.
When prompted to save the change in System Utilities, do one of the following:
• If in graphical mode, click
Yes
.
• If in text mode, press the
Y
key.
7.
Press the
ESC
key to exit System Utilities.
The server reboots a second time without user input. During this reboot, the TPM setting becomes
effective.
8.
Enable TPM functionality in the OS, such as Microsoft Windows BitLocker or measured boot.
For more information, see the
Retaining the recovery key/password
The recovery key/password is generated during BitLocker setup, and can be saved and printed after
BitLocker is enabled. When using BitLocker, always retain the recovery key/password. The recovery key/
password is required to enter Recovery Mode after BitLocker detects a possible compromise of system
integrity.
To help ensure maximum security, observe the following guidelines when retaining the recovery key/
password:
• Always store the recovery key/password in multiple locations.
• Always store copies of the recovery key/password away from the server.
• Do not save the recovery key/password on the encrypted hard drive.
Hardware options installation
57