
COMe-bEP7 Module User Guide
www.kontron.com
// 102
Function
Description
Secure Boot Menu>
(continued)
Attempt
Secure Boot>
Secure boot is activated if :
1.
System runs in user mode with enrolled
Platform Key(PK)
2.
CSM function is disabled. [Enabled, Disabled]
Secure Boot
Mode>
Selects the secure boot mode.
Customer mode enables users to change image
execution policy and manage the secure boot keys.
[Standard, Custom]
Key
Management>
Provision Factory
Defaults>
Install factory default Secure
Boot Keys when system is in
Setup Mode
[Enabled, Disabled]
Install Factory
Default keys>
Forces system to user mode –
install all factory default keys
(PK, KEK, db, dbt, dbx. The
change takes effect after reboot.
[Yes, No]
Enroll Efi Image>
Allow the image to run in Secure
Boot Mode. Enroll SHA256 hash
of the binary into Authorized
Signature Database (db).
Platform Key>
Enroll Factory Defaults or load
the keys from a file with:
1.
Public Key Certificate in:
a.
EFI_SIGNATURE_LIST
b.
EFI_CERT_X509 (DER
encoded)
c.
EFI_CERT_RSA2048 (bin)
d.
EFI_CERT_SHA256 (bin)
2.
Authenticated UEFI Variable
Key source: Default, Custom,
Mixed
(*) modified from Setup menu
Key Exchange
Keys>
Authorized
Signatures>
Forbidden
Signatures>
Authorized
Timestamps>
OsRecovery
Signatures>
If only the administrator’s password is set, access to the setup is limited
and is requested when entering the setup.
If only the user’s password is set, then the password is a power on
password and must be entered to boot or enter setup. In the setup the user
has administrator rights.
Содержание COMe-bEP7
Страница 1: ...USER GUIDE COMe bEP7 Module Doc Doc ID BEP7M102...
Страница 2: ...COMe bEP7 Module User Guide This page has been intentionally left blank...
Страница 27: ...COMe bEP7 Module User Guide www kontron com 27 Figure 2 Bottom View of COMe bEP7 5 2x COMe interfaces...
Страница 52: ...COMe bEP7 Module User Guide www kontron com 52 HOT Surface Do NOT touch Allow to cool before servicing...