Dell OptiPlex 7000 Small Form Factor Service Manual - Page 93

Security, Table 22. Power continued, Table 23. Security

Page 93 highlights

Table 22. Power (continued) Options Intel Speed Shift Technology Intel Speed Shift Technology Security This section provides security details and settings. Table 23. Security Options TPM 2.0 Security TPM 2.0 Security On Attestation Enable Key Storage Enable SHA-256 Clear PPI Bypass for Clear Commands TPM State Intel Total Memory Encryption Total Memory Encryption(TME) Chassis Intrusion Description ● Disabled ● Enabled in S5 only ● Enabled in S4 and S5 (Selected by default) This section contains a toggle switch to allow the user to enable or disable Intel Speed Shift Technology support. This feature enables the operating system to select appropriate processor performance automatically (ON by default). Description This section contains a toggle switch to select whether Trusted Platform Module(TPM) is visible to the Operating System(OS). (ON by default) This section contains a toggle switch which lets the user control whether the TPM Endorsement Hierarchy is available to the operating system (OFF by default). This section contains a toggle switch that allows the user to control whether TPM Storage Hierarchy is available to the operating system (ON by default). This section contains a toggle switch that when enabled, allows the BIOS and the TPM to use the SHA-256 hash algorithm to extend measurements into the TPM PCRs during BIOS boot (ON by default). This section contains a toggle switch which clears the TPM owner information, and returns the TPM to the default state (OFF by default). This section contains a toggle switch which controls the TPM Physical Presence Interface(PPI). When enabled, this setting will allow the OS to skip BIOS PPI user prompts when issuing the clear command (OFF by default). This section allows the user to enable or disable the TPM. This is the default operating state for the TPM when you want to use its complete arrays of capabilities (enabled by default). This section allows the user to enable/disable TME to protect memory from physical attachs including freeze spray, probing DDR to read the cycles etc. All of the system memory is encrypted by the TME block attached to the memory controller BIOS setup 93

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107

Table 22. Power (continued)
Options
Description
Disabled
Enabled in S5 only
Enabled in S4 and S5 (Selected by default)
Intel Speed Shift Technology
Intel Speed Shift Technology
This section contains a toggle switch to allow the user to
enable or disable Intel Speed Shift Technology support. This
feature enables the operating system to select appropriate
processor performance automatically (ON by default).
Security
This section provides security details and settings.
Table 23. Security
Options
Description
TPM 2.0 Security
TPM 2.0 Security On
This section contains a toggle switch to select whether
Trusted Platform Module(TPM) is visible to the Operating
System(OS). (ON by default)
Attestation Enable
This section contains a toggle switch which lets the user
control whether the TPM Endorsement Hierarchy is available
to the operating system (OFF by default).
Key Storage Enable
This section contains a toggle switch that allows the user to
control whether TPM Storage Hierarchy is available to the
operating system (ON by default).
SHA-256
This section contains a toggle switch that when enabled,
allows the BIOS and the TPM to use the SHA-256 hash
algorithm to extend measurements into the TPM PCRs during
BIOS boot (ON by default).
Clear
This section contains a toggle switch which clears the TPM
owner information, and returns the TPM to the default state
(OFF by default).
PPI Bypass for Clear Commands
This section contains a toggle switch which controls the TPM
Physical Presence Interface(PPI). When enabled, this setting
will allow the OS to skip BIOS PPI user prompts when issuing
the clear command (OFF by default).
TPM State
This section allows the user to enable or disable the TPM. This
is the default operating state for the TPM when you want to
use its complete arrays of capabilities (enabled by default).
Intel Total Memory Encryption
Total Memory Encryption(TME)
This section allows the user to enable/disable TME to protect
memory from physical attachs including freeze spray, probing
DDR to read the cycles etc. All of the system memory
is encrypted by the TME block attached to the memory
controller
Chassis Intrusion
BIOS setup
93