Lenovo ThinkPad X1 User Manual page 64

3rd gen
Hide thumbs Also See for ThinkPad X1:
Table of Contents

Advertisement

Anti-Theft
• Computrace Module Activation
Values: Disabled, Enabled, Permanently Disabled
Description: Enable the UEFI BIOS interface to activate the computrace module. Computrace is an
optional monitoring service from Absolute Software. If you select Permanently Disabled, you cannot
enable this setting again.
Secure Boot
• Secure Boot
Values: Enabled, Disabled
Description: Enable this option to prevent unauthorized operating systems from loading when you turn on
the computer.
• Platform Mode
Values: Setup Mode, User Mode
Description: Specify the system operating mode.
• Secure Boot Mode
Values: Standard Mode, Custom Mode
Description: Specify the Secure Boot mode .
• Reset to Setup Mode
Description: Use this option to clear the current platform key and reset Platform Mode to Setup Mode.
You can install your own platform key and customize the Secure Boot signature databases in Setup
Mode. Secure Boot Mode will be set to Custom Mode.
• Restore Factory Keys
Description: Use this option to restore all keys and certificates in Secure Boot databases to the factory
defaults.
• Clear All Secure Boot Keys
Description: Use this option to clear all keys and certificates in Secure Boot databases and install your
own keys and certificates.
Intel (R) SGX
• Intel (R) SGX Control
Values: Disabled, Enabled, Software Controlled
Description: Enable or disable the Intel Software Guard Extensions (SGX) function. If you select Software
Controlled, SGX will be controlled by SGX application for UEFI boot operating system.
• Change Owner EPOCH
Description: Change Owner EPOCH to a random value. Use this option to clear SGX user data.
Device Guard
• Device Guard
Values: Disabled, Enabled
Description: This option is used to support Microsoft Device Guard.
When this option is enabled, Intel Virtualization Technology, Intel VT-d Feature, and Secure Boot are
automatically enabled. Boot order is not selectable. To complete the configuration of Device Guard, you
have to set a supervisor password.
50
User Guide

Advertisement

Table of Contents
loading

Table of Contents