Dell Latitude 5550 Owners Manual - Page 145

Table 43. System Setup options-Boot Configuration menu continued, Secure Digital SD Card Boot

Page 145 highlights

Table 43. System Setup options-Boot Configuration menu (continued) Boot Configuration By default, the Secure Digital (SD) Card Boot option is disabled. NOTE: To view this option, enable Advanced Setup mode as described in View Advanced Setup options. Secure Boot Enable Secure Boot Secure Boot is a method of guaranteeing the integrity of the boot path by performing additional validation of the operating system and PCI add-in cards. The computer stops booting to the operating system when a component is not authenticated during the boot process. Secure Boot can be enabled in BIOS setup or using management interfaces like Dell Command|Configure, but can only be disabled from BIOS setup. Enables the computer to boot using only validated boot software. By default, this Enable Secure Boot option is disabled. For additional security, Dell Technologies recommends keeping the Secure Boot option enabled to ensure that the UEFI firmware validates the operating system during the boot process. NOTE: To view this option, enable Advanced Setup mode as described in View Advanced Setup options. NOTE: To enable Secure Boot, the computer is required to be in UEFI boot mode and the Enable Legacy Option ROMs option is required to be turned off. Enable Microsoft UEFI CA When disabled, the UEFI CA is removed from the BIOS UEFI Secure Boot database. NOTE: When disabled, the Microsoft UEFI CA could render your computer unable to boot, computer graphics may not function, some devices may not function properly, and the computer could become unrecoverable. By default, the Enable Microsoft UEFI CA option is enabled. For additional security, Dell Technologies recommends keeping the Microsoft UEFI CA option enabled to ensure the broadest compatibility with devices and operating systems. Secure Boot Mode Enables or disables the Secure Boot operation mode. By default, the Deployed Mode is selected. Deployed Mode should be selected for normal operation of Secure Boot. NOTE: To view this option, enable Advanced Setup mode as described in View Advanced Setup options. Expert Key Management Enable Custom Mode Enables or disables the keys in the PK, KEK, db, and dbx security key databases to be modified. By default, the Enable Custom Mode option is disabled. NOTE: To view this option, enable Advanced Setup mode as described in View Advanced Setup options. Custom Mode Key Management Selects the custom values for expert key management. By default, the PK option is selected. NOTE: To view this option, enable Advanced Setup mode as described in View Advanced Setup options. BIOS Setup 145

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173

Table 43. System Setup options—Boot Configuration menu (continued)
Boot Configuration
By default, the
Secure Digital (SD) Card Boot
option is disabled.
NOTE:
To view this option, enable
Advanced Setup
mode as described in
View Advanced Setup options
.
Secure Boot
Secure Boot is a method of guaranteeing the integrity of the boot path by
performing additional validation of the operating system and PCI add-in cards.
The computer stops booting to the operating system when a component is not
authenticated during the boot process. Secure Boot can be enabled in BIOS setup
or using management interfaces like Dell Command|Configure, but can only be
disabled from BIOS setup.
Enable Secure Boot
Enables the computer to boot using only validated boot software.
By default, this
Enable Secure Boot
option is disabled. For additional security,
Dell Technologies recommends keeping the
Secure Boot
option enabled to
ensure that the UEFI firmware validates the operating system during the boot
process.
NOTE:
To view this option, enable
Advanced Setup
mode as described in
View Advanced Setup options
.
NOTE:
To enable Secure Boot, the computer is required to be in UEFI boot
mode and the Enable Legacy Option ROMs option is required to be turned
off.
Enable Microsoft UEFI CA
When disabled, the UEFI CA is removed from the BIOS UEFI Secure Boot
database.
NOTE:
When disabled, the Microsoft UEFI CA could render your computer
unable to boot, computer graphics may not function, some devices may not
function properly, and the computer could become unrecoverable.
By default, the
Enable Microsoft UEFI CA
option is enabled.
For additional security, Dell Technologies recommends keeping the
Microsoft
UEFI CA
option enabled to ensure the broadest compatibility with devices and
operating systems.
Secure Boot Mode
Enables or disables the Secure Boot operation mode.
By default, the
Deployed Mode
is selected.
Deployed Mode
should be selected
for normal operation of Secure Boot.
NOTE:
To view this option, enable
Advanced Setup
mode as described in
View Advanced Setup options
.
Expert Key Management
Enable Custom Mode
Enables or disables the keys in the PK, KEK, db, and dbx security key databases
to be modified.
By default, the
Enable Custom Mode
option is disabled.
NOTE:
To view this option, enable
Advanced Setup
mode as described in
View Advanced Setup options
.
Custom Mode Key Management
Selects the custom values for expert key management.
By default, the
PK
option is selected.
NOTE:
To view this option, enable
Advanced Setup
mode as described in
View Advanced Setup options
.
BIOS Setup
145