Dell OptiPlex 3046 Small Form Factor Small Form Factor Owners Manual - Page 36

Allow Non-Admin Password Changes, One-Time Enable

Page 36 highlights

Option Password Change TPM 1.2 Security Computrace Chassis Intrusion CPU XD Support OROM Keyboard Access Admin Setup Lockout HDD Protection Support Table 8. Secure boot Option Secure Boot Enable Description NOTE: The system will always prompt for the system and internal HDD passwords when powered on from the off state (a cold boot). Also, the system will always prompt for passwords on any module bay HDDs that may be present. This option lets you determine whether changes to the System and Hard Disk passwords are permitted when an administrator password is set. Allow Non-Admin Password Changes - This option is enabled by default. Allows you to control whether the Trusted Platform Module (TPM) is visible to the operating system. • TPM On (default) • Clear • PPI Bypass for Enable Commands • PPI Bypass for Disable Commands • Disabled • Enabled (default) This field lets you Activate or Disable the BIOS module interface of the optional Computrace Service from Absolute Software. Enables or disables the optional Computrace service designed for asset management. • Deactivate - This option is disabled by default. • Disable • Activate Allows you to control the chassis intrusion feature. You can set this option to: • Enable • Disable • On-Silent - Enabled by default if chassis intrusion is detected. Allows you to enable or disable the Execute Disable mode of the processor. This option is enabled by default. This option determines whether users are able to enter Option ROM Configuration screens via hotkeys during boot. Specifically, these settings are capable of preventing access to Intel RAID (CTRL +I) or Intel Management Engine BIOS Extension (CTRL+P/F12) • Enable - User may enter OROM configuration screens via the hotkey. • One-Time Enable - User may enter OROM configuration screens via the hotkeys on next boot only. After next boot, the setting will revert to disabled. • Disable - User may not enter OROM configuration screens via the hotkey. This option is set to Enable by default. Allows you to enable or disable the option to enter Setup when an Administrative password is set. This option is not set by default. Allows you to enable or disable the HDD Protection feature. This option is an advanced feature, which is intended to keep the HDD data secure and unchangeable. By default, this option is disabled. Description Allows you to enable or disable Secure Boot feature • Disable 36 System Setup

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48

Option
Description
NOTE:
The system will always prompt for the system and internal HDD passwords when
powered on from the
off
state (a cold boot). Also, the system will always prompt for
passwords on any module bay HDDs that may be present.
Password Change
This option lets you determine whether changes to the System and Hard Disk passwords are
permitted when an administrator password is set.
Allow Non-Admin Password Changes
- This option is enabled by default.
TPM 1.2 Security
Allows you to control whether the Trusted Platform Module (TPM) is visible to the operating system.
TPM On (default)
Clear
PPI Bypass for Enable Commands
PPI Bypass for Disable Commands
Disabled
Enabled (default)
Computrace
This
field
lets you Activate or Disable the BIOS module interface of the optional Computrace Service
from Absolute Software. Enables or disables the optional Computrace service designed for asset
management.
Deactivate
- This option is disabled by default.
Disable
Activate
Chassis Intrusion
Allows you to control the chassis intrusion feature. You can set this option to:
Enable
Disable
On-Silent
— Enabled by default if chassis intrusion is detected.
CPU XD Support
Allows you to enable or disable the Execute Disable mode of the processor. This option is enabled by
default.
OROM Keyboard Access
This option determines whether users are able to enter Option ROM
Configuration
screens via
hotkeys during boot.
Specifically,
these settings are capable of preventing access to Intel RAID (CTRL
+I) or Intel Management Engine BIOS Extension (CTRL+P/F12)
Enable
— User may enter OROM
configuration
screens via the hotkey.
One-Time Enable
— User may enter OROM
configuration
screens via the hotkeys on next boot
only. After next boot, the setting will revert to disabled.
Disable
— User may not enter OROM
configuration
screens via the hotkey.
This option is set to Enable by default.
Admin Setup Lockout
Allows you to enable or disable the option to enter Setup when an Administrative password is set.
This option is not set by default.
HDD Protection Support
Allows you to enable or disable the HDD Protection feature. This option is an advanced feature, which
is intended to keep the HDD data secure and unchangeable. By default, this option is disabled.
Table 8. Secure boot
Option
Description
Secure Boot Enable
Allows you to enable or disable Secure Boot feature
Disable
36
System Setup