If the imm.TpmTcmPolicy is set as 'Enabled' but imm.TpmTcmPolicy value is invalid, UEFI will
reject the 'lock' request and change imm.TpmTcmPolicy back to 'Disabled'.
8. Read back the value to check whether the ‘Lock’ is accepted or rejected. command as below:
OneCli.exe config show imm.TpmTcmPolicy
--override
--imm <userid>:<password>@<ip_address>
Note:
If the read back value is changed from 'Disabled' to 'Enabled' that means the TPM_
TCM_POLICY has been locked successfully. There is no method to unlock a policy once it has
been set other than replacing system board.
imm.TpmTcmPolicyLock is defined as below:
Value 1 use string “Enabled" , which means lock the policy. Other values are not accepted.
Procedure also requires that Physical Presence is enabled. The Default value for FRU will be
enabled.
PhysicalPresencePolicyConfiguration.PhysicalPresencePolicy=Enable
Assert Physical Presence
Before you can assert Physical Presence, the Physical Presence Policy must be enabled. By default, the
Physical Presence Policy is enabled with a timeout of 30 minutes.
There are two ways to assert the Physical Presence:
1. If the Physical Presence Policy is enabled, you can assert Physical Presence through the Lenovo
XClarity Provisioning Manager Lite or through the Lenovo XClarity Controller.
2. Switch the hardware jumpers on the system board.
Notes:
If the Physical Presence Policy has been disabled:
1. Set the hardware Physical Presence jumper on the system board to assert Physical Presence.
2. Enable the Physical Presence Policy using either F1 (UEFI Settings) or Lenovo XClarity Essentials
OneCLI.
Assert Physical Presence through the Lenovo XClarity Controller
Complete the following steps to assert Physical Presence through the Lenovo XClarity Controller:
1. Log in to the Lenovo XClarity Controller interface.
For information about logging in to the Lenovo XClarity Controller, see:
2. Click
BMC Configuration
➙
Security
and verify that Physical Presence is set to
assert
.
Set the TPM version
To be able to set the TPM version, Physical Presence must be asserted.
The Lenovo XClarity Provisioning Manager Lite or the Lenovo XClarity Essentials OneCLI can be used to set
the TPM version.
To set the TPM version:
1. Download and install Lenovo XClarity Essentials OneCLI.
a. Go to
http://datacentersupport.lenovo.com
and navigate to the support page for your server.
b. Click
Drivers & Software
.
c. Navigate to the version of Lenovo XClarity Essentials OneCLI for your operating system and
download the package.
.
Hardware replacement procedures
161
Содержание ThinkAgile VX 4-Socket 4U Certified Node
Страница 6: ...iv User Guide for ThinkAgile VX7820 Appliance ThinkAgile VX 4 Socket 4U Certified Node ...
Страница 10: ...viii User Guide for ThinkAgile VX7820 Appliance ThinkAgile VX 4 Socket 4U Certified Node ...
Страница 69: ...Chapter 2 Server components 59 ...
Страница 76: ...66 User Guide for ThinkAgile VX7820 Appliance ThinkAgile VX 4 Socket 4U Certified Node ...
Страница 96: ...86 User Guide for ThinkAgile VX7820 Appliance ThinkAgile VX 4 Socket 4U Certified Node ...
Страница 252: ...242 User Guide for ThinkAgile VX7820 Appliance ThinkAgile VX 4 Socket 4U Certified Node ...
Страница 276: ...266 User Guide for ThinkAgile VX7820 Appliance ThinkAgile VX 4 Socket 4U Certified Node ...
Страница 284: ...274 User Guide for ThinkAgile VX7820 Appliance ThinkAgile VX 4 Socket 4U Certified Node ...
Страница 295: ......
Страница 296: ......