ThinkPad P50 User Manual page 100

Table of Contents

Advertisement

Table 3. Security menu items (continued)
Menu item
Submenu item
Intel (R) SGX
Intel SGX Control
Change Owner
EPOCH
Device Guard
Device Guard
Startup menu
To change the startup settings of your computer, select the Startup tab from the ThinkPad Setup menu.
Attention:
• After you change the startup sequence, ensure that you select a correct device during a copy, a save, or a
format operation. Otherwise your data might be erased or overwritten.
• If you are using the BitLocker drive encryption, do not change the startup sequence. BitLocker drive
encryption locks the computer from starting once detects the change of startup sequence.
To change the startup sequence temporarily so that the computer starts from a desired drive, do the
following:
1. Turn off the computer.
2. Turn on the computer. When the logo screen is displayed, press F12.
3. Select the device that you want the computer to start from.
Note: The Boot menu will be displayed if the computer cannot start from any devices or the operating
system cannot be found.
The following table lists the Startup menu items. Default values are in boldface. The menu items might
change without notice. Depending on the model, the default value might vary.
Note: Some items are displayed on the menu only if the computer supports the corresponding features.
82
P50 User Guide
Value
Comments
This option enables or disables Intel Software
• Disabled
Guard Extensions (SGX) function.
• Enabled
Disabled: Disables SGX.
• Software
Controlled
Enabled: Enables SGX.
Software Controlled: Software Guard
Extensions will be controlled by the operating
system.
Change Owner EPOCH to a random value. This
option is used for clear user data of SGX.
This option is used to support Microsoft Device
• Disabled
Guard. When this option is enabled, Intel
• Enabled
Virtualization Technology, Intel VT-d Feature,
Secure Boot, and OS Optimized Defaults are
automatically enabled. Boot order is not
selectable, and the computer only starts from
the internal storage drive. To complete the
configuration of Device Guard, you have to set a
supervisor password.
When this option is disabled, the setup options
are configurable and you can choose any boot
options to start the computer.

Advertisement

Table of Contents
loading

Table of Contents