background image

3

Precautions

z

The TPM method does not guarantee data protection under all conditions. 

z

The TPM method uses multiple encryption keys, certificates and passwords. You cannot decrypt the encrypted data if you 
lose them. Safely keep the keys, certificates and passwords. (See

 

“Backup” below.)

z

We shall not be liable for any loss or damage whatsoever resulting from your TPM use or your neglect of TPM use, or any 
data loss resulting from such developments as TPM malfunctioning. 

The files described below are necessary for recovering the Security Platform function. Back them up periodically in a safe 
location such as removable disk to avoid data loss resulting from TPM malfunctioning or other accidents. We recommend you 
to store the files in removable disk or network drive because the benefit of TPM security can be reduced if you keep the files 
in the internal hard disk drive. 

NOTE

z

In the default setting, the “System Backup Archive”, “System Backup Folder”, “Emergency Recovery Token”, “Pass-
word Reset Token”, and “Personal Secret File for Password Reset” are stored in “C:\Users\(user account)\Docu-
ments\Security\Platform”

*1

. If a removable disk is connected, the files excluding the System Backup Archive and the 

System Backup Folder are automatically stored in the removable disk by priority.

z

Files and folder used by the Computer Administrator

System Backup Archive

(Default name: SPSystemBackup.xml)

System Backup Folder

(Default name: SPSystemBackup)
You need the file and folder when you replace the embedded TPM chip or the hard disk drive, or reinstall Windows.
The file and folder contain the backup of the emergency recovery data, and the keys, certificates and settings of all 
users.
If you make the setting of routine backup, the backup of each user setting will be automatically saved at the scheduled 
interval. To ensure the latest backup, manually backup every time you create or change the user setting. 
For further information, refer to “How to Backup and Restore”-“How to configure automatic backups (“System Backup”)” 
in the Infineon Security Platform Help menu. (Click 

 (Start)

*2

 - [All Programs] - [Infineon Security Platform Solution] - 

[Help] - [Welcome to the Infineon Security Platform Solution] - [Advanced Security Platform Operation] - [Backup and 
Restore Security Platform Data])

*1

Windows XP: “C:\Documents and Settings\(user account)\My Documents\Security Platform”
Windows Vista: “C:\Users\(user account)\Documents\Security Platform”

*2

Windows XP: [start]

Security Functions

Backup

Summary of Contents for Toughbook CF-U1GQG6L2M

Page 1: ...le TPM We recommend that this Installation Manual be printed The instructions in this manual are based on Windows 7 Those for Windows Vista and Windows XP may differ from the one for Windows 7 The differences are explained along with annotations ...

Page 2: ...m the hard disk drive and CPU To access the encryption keys you need to input the password registered in the Security Platform Î page 8 You can apply a different security setting to each user account in the Security Platform Conventional encryption TPM encryption The encryption key is saved as a file in the hard disk drive Document encryption Document Key encryption The key remains unencrypted The...

Page 3: ...movable disk is connected the files excluding the System Backup Archive and the System Backup Folder are automatically stored in the removable disk by priority z Files and folder used by the Computer Administrator System Backup Archive Default name SPSystemBackup xml System Backup Folder Default name SPSystemBackup You need the file and folder when you replace the embedded TPM chip or the hard dis...

Page 4: ... you encrypt them you will not be able to restore the Security Platform settings In the default setting these files are stored in C Users 3 Do not encrypt C Users 3 z Do not encrypt the files in C Program Files because they contain a lot of application software If you encrypt them other users cannot access the software and the software may not start up or other malfunction may occur Note that encr...

Page 5: ...mputer Administrator Performed by each user Step 3 Step 4 Step 1 Initializing the Security Plat form z Owner s Data Owner Password System Backup Archive System Backup Folder Password Reset Token Password Reset Token Password z Data for emergency use Emergency Recovery Token Emergency Recovery Token Password Initializing the user z User s Data Basic User Password Personal Secret Changing the Setup ...

Page 6: ...e Panasonic boot screen is displayed soon after the computer starts the startup procedure The Setup Utility starts up C Select the Security menu D Select Set Supervisor Password and press Enter Enter E Enter your password in the Create New Password and press Enter Enter z For restrictions on the password input refer to the Reference Manual of your computer F Enter your password again in Confirm Ne...

Page 7: ...ge the default setting Step 2 Installing the Security Platform Performed by the Computer Administrator 1 Log on to Windows as an Administrator 2 Close all programs 3 Windows 7 Click Start and enter c util drivers tpm infineon setup exe in Search Programs and files and press Enter Windows Vista Click Start and enter c util drivers tpm infineon setup exe in Start Search and press Enter Windows XP In...

Page 8: ...initialized Click here to initialize now message to start the Security Platform Quick Initialization Wizard Alternatively double click Security Platform Indicator Icon in the notification area 2 Click Advanced initialization for expert users then click Next Follow the on screen instructions z For further information refer to the Infineon Security Platform Help menu Click Start 2 All Programs Infin...

Page 9: ...y before 1 Start the Setup Utility Î page 6 2 Select the Security menu and select Embedded Security TPM and press Enter Enter z When you cannot enter Embedded Security TPM using the User Password ask the administrator for the Supervisor Password z You cannot enter Embedded Security TPM if the Supervisor Password has not been registered 3 Select TPM State and set to Disabled 4 Select Pending TPM op...

Page 10: ... not be supported depending on the editions of Windows 7 z When you delete Personal Secure Drive PSD if you copy and save the data and folders in the PSD as unencrypted they will not be encrypted after deleting the PSD Send or copy them to the folder which allows you to encrypt z You can decrypt the folder but the data may not be restored completely To decrypt the folder you must log on as the use...

Page 11: ...Changes Apply changes to this folder subfolders and files OK z If an error message appears click Ignore or Ignore all z If the Basic User Password is requested enter the password z Perform Step 1 Changing the Setup Utility Settings Î page 6 and follow the Security Platform Help menu to restore the Security Platform settings z When you delete Personal Secure Drive PSD if you copy and save the data ...

Reviews: