1. System BIOS
Express5800/R120g-2E, T120g Maintenance Guide
95
Chapter 2 Useful Features
(a)
Key Management submenu
Option Parameter
Description
Provision Factory Default
keys
Disabled
[Enabled]
Enable/disable the function to automatically register the
default key if you do not have Platform Key (PK).
Delete All Secure Boot
Variables
-
Set “System Mode” to [Setup]. In that case, disable
“Secure Boot.” All keys and signature databases (PK,
KEK, DB, DBX and DBT) are deleted. This option can be
executed only when “Provision Factory Default keys” is
set to [Disabled].
Enroll All Factory Default Keys
-
Set “System Mode” to [User]. Register the default key
and signature databases (PK, KEK, DB, DBX and DBT).
This option can be executed only when “Provision
Factory Default keys” is set to [Enabled].
Save All Secure Boot
Variables
-
Save all keys and signature databases (PK, KEK, DB,
DBX and DBT) in an external media. This option can be
executed only when PK, KEK, db, dbx and dbt keys have
been registered.
Secure Boot variable | Size|
Key#| Key source
(Display only)
Display the status of keys and signature databases (PK,
KEK, DB, DBX and DBT).
Platform Key(PK)
-
Display the status of Platform Key (PK). Register/delete
PK.
Key Exchange Keys
-
Display the status of Key Exchange Keys (KEK).
Register/delete KEK.
Authorized Signatures
-
Display the status of Authorized Signatures (DB).
Register/delete DB.
Forbidden Signatures
-
Display the status of Forbidden Signatures (DBX).
Register/delete DBX.
Authorized Timestamps
-
Display the status of Authorized Timestamps (DBT).
Register/delete DBT.
[ ]: Factory setting
Summary of Contents for Express5800/R120g
Page 231: ...MEMO...