Table 6-2
Computer Setup—Security (continued)
Option
Description
Displays the current TPM version.
●
TPM Device
Lets you set the Trusted Platform Module as available or hidden.
●
TPM State
Select to enable the TPM.
●
ClearTPM
Select to reset the TPM to an unowned state. After the TPM is cleared, it is also turned off. To
temporarily suspend TPM operations, turn the TPM off instead of clearing it.
IMPORTANT:
Clearing the TPM resets it to factory defaults and turns it off. You will lose all created
keys and data protected by those keys.
●
TPM Activation Policy
○
F1 to boot
○
Allow user to reject
○
No prompts
BIOS SureStart
●
Verify Boot Block on every boot—Select to enable HP SureStart.
●
BIOS Data Recovery Policy—Select Automatic or Manual to determine data recovery process. Manual
recovery is intended only for situations when you want forensic analysis before HP SureStart recovery.
When this policy is set to manual, HP SureStart will not correct any issues that are found until the local
user enters the manual recovery key sequence. This can result in a computer that cannot boot until the
manual recovery key sequence is entered.
●
Dynamic Runtime Scanning of Boot Block—Verifies the integrity of the BIOS boot block region several
times each hour while the computer is running. Default is Enabled.
●
Sure Start BIOS Settings Protection—When enabled, HP Sure Start locks all critical BIOS settings and
provides enhanced protection for these settings using nonvolatile (flash) memory.
NOTE:
An administrator password must be set to activate this setting.
●
Enhanced HP Firmware Runtime Intrusion Prevention and Detection—Enables monitoring of HP
system firmware executing out of main memory while the operating system is running. Any anomalies
detected in HP system firmware that is active while the operating system is running will result in a Sure
Start security event being generated.
●
Sure Start Security Event Policy—Controls HP Sure Start behavior upon identifying a critical security
event (any modification to HP firmware) while the operating system is running.
–
Log Event Only—HP Sure Start will log all critical security events in the HP Sure Start audio log
within the HP Sure Start nonvolatile (flash) memory.
–
Log Event and notify user—In addition to logging all critical security events, HP Sure Start will
notify the user within the operating system that a critical event has occurred.
–
Log Event and power off system—In addition to logging all critical security events, HP Sure Start
turns of the computer upon detecting a HP Sure Start Security Event. Because of the potential for
ENWW
Computer Setup—Security
81
Содержание ProDesk 400 G7 SFF
Страница 8: ...Index 125 viii ENWW ...
Страница 12: ...4 Chapter 1 Product features ENWW ...
Страница 56: ...48 Chapter 4 Removal and replacement procedures ENWW ...
Страница 82: ...74 Chapter 5 Troubleshooting without diagnostics ENWW ...
Страница 106: ...98 Chapter 7 POST error messages ENWW ...
Страница 128: ...120 Chapter 11 Statement of memory volatility ENWW ...
Страница 132: ...124 Chapter 13 Specifications ENWW ...
Страница 136: ...128 Index ENWW ...