Chapter 4: BIOS
79
Secure Boot Mode
Use this item to select the secure boot mode. The options are Standard and
Custom
.
CSM Support
Select Enabled to support the EFI Compatibility Support Module (CSM), which provides
compatibility support for traditional legacy BIOS for system boot. The options are Disabled
and
Enabled
.
Enter Audit Mode
Enter Deployed Mode
Key Management
This submenu allows the user to configure the following Key Management settings.
Vendor Keys
Provision Factory Defaults
Install factory default Secure Boot keys after the platform reset and while the System is in
Setup mode. The default setting is
Disabled
.
Restore Factory Keys
Select and press Yes to restore factory default secure boot keys and key variables. Also,
it will reset the system to the User mode. Select Yes to install all default secure keys set
by the manufacturer. The options are Yes and No.
Reset To Setup Mode
Enroll Efi Image
This feature is to enroll SHA256 hash of the binary into the Authorized Signature Data-
base (DB) and to allow the image to run in the secure boot mode.
Export Secure Boot Variables
Use this feature to export NVRAM content of secure boot variables to files in a root folder
on a file system device.