Dell OptiPlex 7050 Tower OptiPlex 7050 Micro Owners Manual - Page 40

Table 10. Security continued, Option, Description, Allow Non-Admin Password Changes, Deactivate

Page 40 highlights

Table 10. Security (continued) Option Password Change UEFI Capsule Firmware Updates TPM 2.0 Security Computrace Chassis Intrusion CPU XD Support OROM Keyboard Access 40 BIOS setup Description ● Disabled - Always prompt for the system and internal HDD password when they are set. This option is selected by default. ● Reboot Bypass - Bypass the password prompts on Restarts (warm boots). NOTE: The system will always prompt for the system and internal HDD passwords when powered on from the off state (a cold boot). Also, the system will always prompt for passwords on any module bay HDDs that may be present. This option lets you determine whether changes to the System and Hard Disk passwords are permitted when an administrator password is set. Allow Non-Admin Password Changes - This option is enabled by default. This option controls whether this system allows BIOS updates via UEFI capsule update packages. This option is selected by default. Disabling this option will block BIOS updates from services such as Microsoft Windows Update and Linux Vendor Firmware Service (LVFS) Allows you to control whether the Trusted Platform Module (TPM) is visible to the operating system. ● TPM On (default) ● Clear ● PPI Bypass for Enable Commands ● PPI Bypass for Disable Commands ● Attestation Enable (default) ● Key Storage Enable(default) ● SHA-256(default) ● Disabled ● Enabled (default) This field lets you Activate or Disable the BIOS module interface of the optional Computrace Service from Absolute Software. Enables or disables the optional Computrace service designed for asset management. ● Deactivate - This option is selected by default. ● Disable ● Activate Allows you to control the chassis intrusion feature. You can set this option to: ● Enabled ● Disabled (default) ● On-Silent Allows you to enable or disable the Execute Disable mode of the processor. This option is enabled by default. This option determines whether users are able to enter Option ROM Configuration screens via hotkeys during boot. Specifically, these settings are capable of preventing access to Intel RAID (CTRL+I) or Intel Management Engine BIOS Extension (CTRL+P/F12). ● Enable (selected by default)- User may enter OROM configuration screens via the hotkey.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68

Table 10. Security (continued)
Option
Description
Disabled — Always prompt for the system and internal
HDD password when they are set. This option is selected
by default.
Reboot Bypass — Bypass the password prompts on
Restarts (warm boots).
NOTE:
The system will always prompt for the system and
internal HDD passwords when powered on from the off
state (a cold boot). Also, the system will always prompt
for passwords on any module bay HDDs that may be
present.
Password Change
This option lets you determine whether changes to the
System and Hard Disk passwords are permitted when an
administrator password is set.
Allow Non-Admin Password Changes
- This option is
enabled by default.
UEFI Capsule Firmware Updates
This option controls whether this system allows BIOS updates
via UEFI capsule update packages. This option is selected by
default. Disabling this option will block BIOS updates from
services such as Microsoft Windows Update and Linux Vendor
Firmware Service (LVFS)
TPM 2.0 Security
Allows you to control whether the Trusted Platform Module
(TPM) is visible to the operating system.
TPM On (default)
Clear
PPI Bypass for Enable Commands
PPI Bypass for Disable Commands
Attestation Enable (default)
Key Storage Enable(default)
SHA-256(default)
Disabled
Enabled (default)
Computrace
This field lets you Activate or Disable the BIOS module
interface of the optional Computrace Service from Absolute
Software. Enables or disables the optional Computrace service
designed for asset management.
Deactivate
- This option is selected by default.
Disable
Activate
Chassis Intrusion
Allows you to control the chassis intrusion feature. You can
set this option to:
Enabled
Disabled (default)
On-Silent
CPU XD Support
Allows you to enable or disable the Execute Disable mode of
the processor. This option is enabled by default.
OROM Keyboard Access
This option determines whether users are able to enter
Option ROM Configuration screens via hotkeys during boot.
Specifically, these settings are capable of preventing access
to Intel RAID (CTRL+I) or Intel Management Engine BIOS
Extension (CTRL+P/F12).
Enable (selected by default)— User may enter OROM
configuration screens via the hotkey.
40
BIOS setup