Chapter 4: BIOS
83
Enable Intel® TXT
Select Enable to enable Intel Trusted Execution Technology (TXT) support to enhance system
security and data integrity. The options are
Disable
and Enable.
Note:
For more information on TPM, please visit our website at http://www.supermicro.
com/manuals/other.
VMX (Not Available when "Enable Intel® TXT" is set to Enable)
Select Enable to enable the Intel Vanderpool Technology for Virtualization platform support,
which will allow multiple operating systems to run simultaneously on the same computer to
maximize system resources for performance enhancement. The options are Disable
and
Enable
.
Enable SMX (Not Available when "Enable Intel® TXT" is set to Enable)
Select Enable to support Safer Mode Extensions (SMX) which provides a programming
interface for system software to establish a controlled environment to support the trusted
platform configured by the end user and to verify a virtual machine monitor before it is allowed
to run. The options are
Disable
and Enable.
PPIN Control
Select Unlock/Enable to use the Protected-Processor Inventory Number (PPIN) in the system.
The options are Lock/Disable and
Unlock/Enable
.
AES-NI
Select Enable to use the Intel Advanced Encryption Standard (AES) New Instructions (NI) to
ensure data security. The options are Disable and
Enable
.
CPU CrashLog GPRs
Select Enable to allow crash data to be collected from the PMC SSRAM, which might expose
sensitive information stored in the GPRs. The options are
Disable
and Enable.
----------------------------------------------------------------
TME, TME-MT, TDX [Disabled]
----------------------------------------------------------------
Total Memory Encryption (TME)
Select Enable for total memory encryption support to ensure data security. The options are
Disabled
and Enabled.
----------------------------------------------------------------
Software Guard Extension (SGX)
--------------------------------------------------------------
Note:
For SGX to work properly, please use the CPUs that support this feature and
be sure to install one CPU per channel.