Property and data protection
Operation
A26361-K831-Z100-1-7619
23
BIOS Setup security functions
The
Security
menu in
BIOS Setup
offers you various options for protecting your personal data against
unauthorized access, e.g.:
•
Preventing unauthorized
BIOS Setup
entry
•
Preventing unauthorized system access
•
Preventing unauthorized access to the settings of boards with their own BIOS
•
Preventing system booting from the diskette drive
•
Activating virus warnings
•
Preventing unauthorized writing of diskettes
•
Protecting BIOS from overwriting
•
Protecting the PC from being switched on by an external device
You can also combine these functions.
You will find a detailed description of the
Security
menus and how to assign passwords in the
Technical Manual for the system board or in the "BIOS Setup" manual.
Access protection with SICRYPT PC Lock
With SICRYPT PC Lock you protect your system from unauthorized booting. Then a system can
only be booted when the user inserts a valid SmartCard in the SmartCard reader and enters his/her
personal code number (PIN). To use PC Lock you require the following components:
•
External or internal SmartCard reader
•
PC Lock installed (see manual "BIOS Setup")
•
SICRYPT SmartCard
i
There are two different SmartCards - the Admin SmartCard and the User SmartCard.
These differ in their memory capacity. In addition to the access rights, you can also save
other safety options on the Admin SmartCard (e.g. fingerprints with the
Smarty 2
software).
PC Lock controls access to your PC. When a SmartCard is initialized, rights are assigned for
system access (system, setup, setup, admin). You can configure several SmartCards for
one system and initialize them with different rights.
In this way users can be divided into user groups. Users of a user group use SmartCards with the
same rights.
Additional instructions for PC Lock
i
Do not use PC Lock on systems controlled by tele-maintenance. If a SmartCard is
inserted and the User PIN must be entered, an automatic system boot is blocked. For
example, this is the case with "Wake On LAN", or when software is to be installed via
the network that requires a system reboot.
After you have initialized the first SmartCard, the entry
PC-Lock
can no longer be
deactivated (
Disabled
) in the
BIOS Setup
.
If you also want to use other security software in addition to PC Lock (e.g.
SmartGuard Pro
), please read the documentation on your security software
beforehand.