ThinkPad T470 User Manual page 95

Table of Contents

Advertisement

• Security Chip (for TPM 1.2)
Values: Active, Inactive, Disabled
Descriptions: If you select Active, the security chip is functional. If you select Inactive, the Security
Chip is visible, but not functional. If you select Disabled, the Security Chip is hidden and the security
chip is not functional.
• Security Reporting Options
Values: Enabled, Disabled
Descriptions: This option allows you to enable or disable Security Reporting Options. If it is enabled,
changes to corresponding UEFI BIOS data are logged in a location, (PCR1, defined in the TCG standards),
which other authorized programs can monitor, read and analyze.
Note: This item is displayed only if you have selected Enabled for the Security Chip option.
• Clear Security Chip
Descriptions: Use this option to clear the encryption key. It will not be possible to access
already-encrypted data after these keys are cleared.
Note: This item is displayed only if you have selected Enabled for the Security Chip option.
• Intel (R) TXT Feature
Values: Disabled, Enabled
Descriptions: Enable or disable the Intel Trusted Execution Technology.
Note: This item is displayed only if you have selected Enabled for the Security Chip option.
• Physical Presence for Provisioning
Values: Disabled, Enabled
Descriptions: If this option is enabled, a confirmation message is displayed when you change the
setting of the security chip.
Note: This item is not displayed on the TPM 1.2 support model.
• Physical Presence for Clear
Values: Disabled, Enabled
Descriptions: If this option is enabled, a confirmation message is displayed when you clear the security
chip.
UEFI BIOS Update Option
• Flash BIOS Updating by End-Users
Values: Disabled, Enabled
Descriptions: When this option is enabled, all users can update the UEFI BIOS. If you disable this option,
the supervisor password will be required to update the UEFI BIOS.
• Secure RollBack Prevention
Values: Disabled, Enabled
Descriptions: When this option is disabled, you can flash the UEFI BIOS to earlier version.
• Windows UEFI Firmware Update
Values: Disabled, Enabled
Descriptions: This option enables or disables Windows UEFI Firmware Update feature. When this
option is enabled, Windows UEFI firmware update is allowed.
.
Chapter 6
Advanced configuration
79

Advertisement

Table of Contents
loading

Table of Contents