Chapter 4: BIOS
97
Endorsement Hierarchy
Select Enabled for Endorsement Hierarchy support, which contains separate controls to
address the user's privacy concerns because the primary keys in this hierarchy are certified
by the TPM or a manufacturer to be constrained to an authentic TPM device that is attached
to an authentic platform. A primary key can be an encrypted, and a certificate can be created
using TPM2_ ActivateCredential. It allows the user to independently enable "flag, policy, and
authorization value" without involving other hierarchies. A user with privacy concerns can
disable the endorsement hierarchy while still using the storage hierarchy for TPM applications
and permitting the platform software to use the TPM. The options are
Enabled
and Disabled.
PH (Platform Hierarchy) Randomization (for TPM Version 2.0 and above)
Select Enabled for Platform Hierarchy Randomization support, which is used only during the
platform developmental stage. This feature cannot be enabled in the production platforms.
The options are
Disabled
and Enabled.
TXT Support
Select Enabled to enable Intel Trusted Execution Technology (TXT) support to enhance
system security and data integrity. The options are
Disabled
and Enabled.
Note 1
: If the option for this item (TXT Support) is set to Enabled, be sure to disable EV DFX
(Device Function On-Hide) support for the system to work properly. (EV DFX is under "IIO
Configuration" in the "Chipset/North Bridge" submenu)
.
Note 2:
For more information on TPM, please refer to the TPM manual at http://www.
supermicro.com/manuals/other.
iSCSi Configuration
iSCSI Initiator Name
This feature allows the user to enter the unique name of the iSCSI Initiator in IQN format.
Once the name of the iSCSI Initiator is entered into the system, configure the proper settings
for the following items.
Add an Attempt
Delete Attempts
Change Attempt order