Chapter 6: UEFI BIOS
99
This section contains options and menus for securing your boot mode and for key management.
Secure Boot
This option allows you specify when the Platform Key (PK) is enrolled. When enabled, the
System Mode is user deployed, and the CSM function is disabled. Options include Enabled
and
Disabled
.
Secure Boot Mode
Use this item to select the secure boot mode. The options are Standard and
Custom
.
CSM Support
Select Enabled to support the EFI Compatibility Support Module (CSM), which provides
compatibility support for traditional legacy BIOS for system boot. The options are Disabled
and
Enabled
.
Key Management
This submenu allows the user to configure the following Key Management settings.
Vendor Keys
Provision Factory Defaults
Select Enabled to install the default Secure-Boot keys set by the manufacturer. The options
are Disabled and Enabled. The options include Disabled and
Enabled
.
Restore Factory Keys
Select Yes to install all default secure keys set by the manufacturer. The options are
Yes
and No.