Retaining The Recovery Key/Password; Enabling The Trusted Platform Module - HPE Apollo 2000 User Manual

Table of Contents

Advertisement

Install any removed PCI riser cage assemblies
8.
Install the node into the chassis
9.
Connect all peripheral cables to the nodes.
10.
Power up the node
11.

Retaining the recovery key/password

The recovery key/password is generated during BitLocker setup, and can be saved and printed after
BitLocker is enabled. When using BitLocker, always retain the recovery key/password. The recovery
key/password is required to enter Recovery Mode after BitLocker detects a possible compromise of
system integrity.
To help ensure maximum security, observe the following guidelines when retaining the recovery
key/password:
Always store the recovery key/password in multiple locations.
Always store copies of the recovery key/password away from the node.
Do not save the recovery key/password on the encrypted hard drive.

Enabling the Trusted Platform Module

During the node startup sequence, press the F9 key to access System Utilities.
1.
From the System Utilities screen, select System Configuration > BIOS/Platform Configuration
2.
(RBSU) > Server Security.
Select Trusted Platform Module Options and press the Enter key.
3.
Select Enabled to enable the TPM and BIOS secure startup. The TPM is fully functional in this
4.
mode.
Press the F10 key to save your selection.
5.
When prompted to save the change in System Utilities, press the Y key.
6.
Press the ESC key to exit System Utilities. Then, press the Enter key when prompted to reboot the
7.
node.
The node then reboots a second time without user input. During this reboot, the TPM setting becomes
effective.
You can now enable TPM functionality in the OS, such as Microsoft Windows BitLocker or measured
boot.
CAUTION: When a TPM is installed and enabled on the node, data access is locked if you
fail to follow the proper procedures for updating the system or option firmware, replacing the
system board, replacing a hard drive, or modifying OS application TPM settings.
For more information on firmware updates and hardware procedures, see the HP Trusted Platform
Module Best Practices White Paper on the Hewlett Packard Enterprise Support Center website
(http://www.hpe.com/support/hpesc).
For more information on adjusting TPM usage in BitLocker, see the Microsoft website
(http://technet.microsoft.com/en-us/library/cc732774.aspx).
("Installing a node into the
("Power up the
nodes" on page 32).
("PCI riser cage assembly
chassis" on page 60).
Hardware options installation 134
options" on page 84).

Advertisement

Table of Contents
loading

Table of Contents