User's Manual Rev. 1001 12MD-STPM-1001R • We recommend that you download the latest version of the Smart TPM utility from GIGABYTE's website. • If you have installed Ultra TPM earlier, you can install the Smart TPM utility directly without unin-...
Table of Contents TPM Configuration Procedure ..................3 Configuring the System BIOS ................3 Installing the Infineon TPM Driver and the Smart TPM Utility ......4 2.1. Installing the Infineon TPM Driver ................4 2.2. Installing the Smart TPM Utility ................4 Initializing the TPM chip ................... 5 3.1.
TPM Configuration Procedure To enable the TPM, follow the steps below in sequence: Configuring the system BIOS Installing the Infineon TPM driver and the Smart TPM utility Initializing the TPM chip Configuring the Smart TPM utility Configuring the System BIOS To use the TPM functionality, first enter the system BIOS Setup to activate the TPM chip. Step 1: As the computer starts, enter the BIOS Setup program.
2.1. Installing the Infineon TPM Driver Insert the GIGABYTE motherboard driver disk. "Xpress Install" will automatically scan your system and list all of the drivers that are recommended to install. Click the Install All button and "Xpress Install" will install all of the selected drivers, including the Infineon TPM driver.
Initializing the TPM chip After configuring the system BIOS and installing the driver software, the Infineon Security Platform icon which indicates that the Infineon Security Platform is not yet initialized, will appear in the notification area. and select Initialization Wizard to access Smart Double-click the icon or right-click the Smart TPM icon TPM.
Page 6
3.1.2. Initialization Procedure of Smart TPM Step 1: Set Your TPM User Password 1. Auto Generated Password A password will be automatically provided after Smart TPM is launched. To generate a new password, click Generate. 2. User Defined Password/Confirm User Password You can define your own password in the User Defined Password box (the maximum length is 16 char- acters). Enter the password in the Confirm User Password box again to confirm. • To prevent the TPM settings being cleared by other users, we recommend that you set the User Pass- word in the BIOS Setup program.
Page 7
Step 3: Create Your Smart TPM Key 1. Create a USB key: Select the Use USB storage check box and click Refresh to search for the USB flash drive(s) that you plug in. Then select the USB flash drive that you want to use as the portable Smart TPM user key. You can select more than one USB flash drive at the same time.
3.2. Advanced Mode On the Smart TPM main screen, click Advanced mode to access the Infineon Security Platform Initialization Wizard. A. Infineon Security Platform Initialization Wizard - Owner Click Advanced mode to launch the Infineon Security Platform Initialization Wizard. Follow the on-screen instructions to initialize the Security Platform Owner and to configure Security Platform Features (backup including Emergency Recovery, Password Reset, Enhanced Authentication, BitLocker).
Page 9
A-2. Select Security Platform initialization and click Next to create the Security Platform Owner Password. Explanations on setting the Owner Password 1. Enter the Owner Password in the Password box or click Random to randomly generate a password. 2. Enter the password again to confirm (not neces- sary if you use a random password).
Page 10
A-3. Select Security Platform Features, which comprises Automatic Backup (includes Emergency Recovery) and Password Reset. Click Next. Details on Features Automatic Backup (includes Emergency Recovery) Check this feature, if you want to configure automatic Security Platform backups. Configuring Backup is strongly recommended. Otherwise all user data will be lost in case of emergency. You cannot uncheck this feature, if the policy Enforce configuration of Backup including Emergency Recovery is enabled.
Page 11
A-5. Select Create a new Recovery Token. Then enter a new token password to be used for Emergency Recovery. A-6. Select Create a new Token to create a Password Reset Token. Then enter a new token password. A-7. Make sure you have selected all the functions you want to perform. Click Next to continue. Do not log off, shutdown, enter a power-saving state, or unplug the power cord before the wizard has com- pleted.
Page 12
A-8. Click Finish to complete the initialization and configuration of the Infineon Security Platform. Then ac- cess the Infineon Security Platform User Initialization Wizard (select the Start Security Platform User Ini- tialization Wizard check box). B. Infineon Security Platform Initialization Wizard - User The Infineon Security Platform User Initialization Wizard is used to initialize the Security Platform Users and to configure the user-specific features (secure e-mail, file and folder encryption with EFS and PSD, Enhanced Authentication).
Page 13
B-2. Set a Basic User Password and click Next. B-3. Enable the reset functionality for the Basic User Password. Select the location that you wish to save the file and then click Next. B-4. Click Next to continue the initialization. Do not log off, shutdown, enter a power-saving state, or unplug the power cord before the wizard has com- pleted.
Page 14
B-5. Select the Security Platform Features you want to configure and click Next to continue. Details on Features Secure e-mail User-specific e-mail encryption and/or signing to prevent unauthorized persons from reading or changing your e-mails. Using this feature guarantees that only the e-mail creator and the specified recipients will be able to decrypt and read the message or validate the identity of the sender.
Page 15
B-5-1. Use the File and folder encryption - Personal Secure Drive (PSD) as the example: You can configure a Encryption Certificate with this page. If no valid certificate is registered currently, the wizard of- fers to create a new certificate and select it automatically. Click Next to create the certificate automatically, or click Change to create an encryption certificate manually.
Page 16
B-6. Set up a Personal Secure Drive (PSD) B-6-1. Specify a drive letter and label for your Personal Secure Drive To specify the drive letter for your Personal Secure Drive, select an unused letter from the drop-down list of available letters.
Page 17
B-7. Click Next to continue. Do not log off, shutdown, enter a power-saving state, or unplug the power cord before the wizard has com- pleted. B-8. Click Finish to finish the user initialization and features configuration of the Infineon Security Platform. C. Infineon Security Platform Settings Tool With the Security Platform Settings Tool you can get various information about the Trusted Platform Module of your system.
Configuring the Smart TPM Utility GIGABYTE's unique Smart TPM (Trusted Platform Module) supports the industry's most advanced hardware- based data encryption. Smart TPM provides users with an easy-to-use software interface to create a portable user key using a Bluetooth cell phone or USB flash drive. Users can access/close their PSD data by simply connecting to the Bluetooth cell phone or plugging in the USB flash drive, without the hassles of complicated configurations.
Step 3: Enter the TPM User Password that you set earlier and click OK to complete creating the USB key. You are able to access/close your PSD by plugging in or unplugging the USB flash drive. Do not turn off or reset your computer when a USB key is being cre- ated. • If you enter the TPM User Password incorrectly three times, Smart TPM will be locked. To be able to enter the password again, go to the "Security Chip Configuration" menu in BIOS Setup and then set "Security Chip" to "Enabled/Activate."...
Page 20
Step 2: When the Add Bluetooth Device Wizard appears, enter a passkey (8~16 digits recommended) which will be used for pairing with your cell phone. Step 3: Enter the same passkey on your cell phone for pairing. After confirming the passkey, click Finish to complete creating the Bluetooth cell phone key.
4.3. Other Bluetooth Settings On the Other Settings tab, you can configure how much time it takes to scan your Bluetooth cell phone key and how many times to rescan the key to make sure it is in range of your computer. • Device Scan Time (sec.): Set the length of time Smart TPM scans your Bluetooth cell phone key, ranging from 5 seconds to 30 sec- onds in 5-second increment.
Need help?
Do you have a question about the GA-EG45M-DS2H and is the answer not in the manual?
Questions and answers