Chapter 6: BIOS
SuperServer 5019P-WT/WTR User's Manual
99
98
Secure Boot
This section displays the contents of the following secure boot features:
•
System Mode
•
Secure Boot
•
Vendor Keys
Secure Boot
Use this item to enable secure boot. The options are
Disabled
and Enabled.
Secure Boot Mode
Use this item to configure Secure Boot variables without authentication. The options are
Standard and
Custom
.
CSM Support
Select Enabled to support the EFI Compatibility Support Module (CSM), which provides
compatibility support for traditional legacy BIOS for system boot. The options are
Enabled
and Disabled.
Key Management
This submenu allows the user to configure the following Key Management settings.
Provision Factory Default Keys
Select Enabled to install the default Secure-Boot keys set by the manufacturer. The op-
tions are
Disabled
and Enabled.
Enroll All Factory Default Keys
Select Yes to install all default secure keys set by the manufacturer. The options are
Yes
and No.
Enroll EFI Image
This feature allows the image to run in Secure Boot Mode. Enroll SHA256 Hash Certicate
of the image into the Authorized Signature Database.
Save All Secure Boot Variables
This feature allows the user to decide if all secure boot variables should be saved.
Platform Key (PK)
This feature allows the user to configure the settings of the platform keys.
Set New
Select Yes to load the new platform keys (PK) from the manufacturer's defaults. Select
No to load the platform keys from a file. The options are Yes and No.
Key Exchange Key
Set New
Select Yes to load the KEK from the manufacturer's defaults. Select No to load the KEK
from a file. The options are Yes and No.
Append
Select Yes to add the KEK from the manufacturer's defaults list to the existing KEK.
Select No to load the KEK from a file. The options are Yes and No.
Authorized Signatures
Set New
Select Yes to load the database from the manufacturer's defaults. Select No to load the
DB from a file. The options are Yes and No.
Append
Select Yes to add the database from the manufacturer's defaults to the existing DB.
Select No to load the DB from a file. The options are Yes and No.
Forbidden Signatures
Set New
Select Yes to load the DBX from the manufacturer's defaults. Select No to load the DBX
from a file. The options are Yes and No.
Append
Select Yes to add the DBX from the manufacturer's defaults to the existing DBX. Select
No to load the DBX from a file. The options are Yes and No.
Содержание SuperServer 1019P-WTR
Страница 58: ...108 SuperServer 5019P WT WTR User s Manual...