Enabling The Intel Trusted Execution Technology (Txt) Feature For The Tpm - Cisco UCS C22 Installation And Service Manual

Hide thumbs Also See for UCS C22:
Table of Contents

Advertisement

Installing or Replacing Server Components
Figure 3-23
1

Enabling the Intel Trusted Execution Technology (TXT) Feature For the TPM

Intel TXT provides greater protection for information that is used and stored on the business server. A
key aspect of that protection is the provision of an isolated execution environment and associated
sections of memory where operations can be conducted on sensitive data, invisibly to the rest of the
system. Likewise, Intel TXT provides for a sealed portion of storage where sensitive data such as
encryption keys can be kept, helping to shield them from being compromised during an attack by
malicious code.
To enable the TXT feature, follow these steps:
Step 1
Verify that a TPM is now installed and enabled in the server:
a.
b.
c.
d.
Note
e.
Cisco UCS C22 Server Installation and Service Guide
3-40
TPM Socket Location on Motherboard
SYS FAN1
SYS FAN2
SYS FAN3
SYS FAN4
SYS FAN5
TPM socket and screw-hole on motherboard
(under PCIe riser 2)
Either attach a VGA monitor and USB keyboard to the server, or log in remotely to the CIMC
interface of the server and open a virtual KVM console window.
Reboot the server.
Watch during bootup for the F2 prompt, and then press F2 to enter BIOS setup.
Log in to the BIOS Setup utility with your BIOS Administrator password.
You must be logged in as the BIOS administrator to perform this procedure. If you have not done
so already, set a BIOS administrator password on the Security tab of the BIOS Setup utility.
Select the Security tab. Verify that TPM State now says Enabled & Activated.
CPU 1
PCIe 1
PCIe 2
CPU 2
PSU 1
2
PCIe riser 2
Chapter 3
Maintaining the Server
1
2
OL-26646-01

Advertisement

Table of Contents
loading

Table of Contents