Supermicro A+ AS-4023S-TRT User Manual page 119

Table of Contents

Advertisement

Secure Boot
This option allows you specify when the Platform Key (PK) is enrolled. When enabled, the
System Mode is user deployed, and the CSM function is disabled. Options include Disabled
and Enabled .
Secure Boot Mode
Use this item to select the secure boot mode. The options are Standard and Custom.
CSM Support
Select Enabled to support the EFI Compatibility Support Module (CSM), which provides
compatibility support for traditional legacy BIOS for system boot. The options are Disabled
and Enabled.
Key Management
This submenu allows the user to configure the following Key Management settings.
Provision Factory Defaults
Install factory default Secure Boot keys after the platform reset and while the system is in
Setup mode. The options include Disabled and Enabled.
Restore Factory Keys
Select Yes to install all default secure keys set by the manufacturer. The options are Yes
and No.
Enroll EFI Image
This allows the image to run in Secure Boot Mode, and enroll SHA256 hash of the binary
into an Authorized Signature Database (db).
Secure Boot Variable
This feature allows the user to decide if all secure boot variables should be saved.
Platform Key (PK)
This feature allows the user to configure the settings of the platform keys.
Update
Select Yes to load the new platform keys (PK) from the manufacturer's defaults. Select No
to load the platform keys from a file. The options are Yes and No.
Key Exchange Keys
Update
Select Yes to load the KEK from the manufacturer's defaults. Select No to load the KEK
from a file. The options are Yes and No.
Chapter 7: BIOS (EPYC 7002 Series)
119

Advertisement

Table of Contents
loading

Table of Contents