Dell OptiPlex 7071 Tower Tower Setup and specifications guide - Page 26

Allow Non-Admin Password Changes

Page 26 highlights

Option Password Bypass Description This option enables you to bypass the System (Boot) password and the internal hard drive password prompts during a system restart. • Disabled-Always prompt for the system and internal hard drive password when they are set. This option is enabled by default. • Reboot Bypass-Bypass the password prompts on restarts (warm boots). NOTE: The system always prompts for the system and internal hard drive passwords when powered on from the off state (a cold boot). Also, the system prompts for passwords on any module bay HDDs that may be present. Password Change This option lets you determine whether changes to the System and Hard Disk passwords are permitted when an administrator password is set. Allow Non-Admin Password Changes - This option is enabled by default. UEFI Capsule Firmware Updates TPM 2.0 Security This option controls whether this system enables BIOS updates through UEFI capsule update packages. This option is enabled by default. Disabling this option blocks BIOS updates from services such as Microsoft Windows Update and Linux Vendor Firmware Service (LVFS) Allows you to control whether the Trusted Platform Module (TPM) is visible to the operating system. • TPM On-enabled by default • Clear • PPI Bypass for Enable Commands • PPI Bypass for Disable Commands • PPI Bypass for Clear Commands • Attestation Enable-enabled by default • Key Storage Enable-enabled by default • SHA-256-enabled by default The options are: • Disabled • Enabled-enabled by default Absolute This field enables you to enable, disable, or permanently disable the BIOS module interface of the optional Absolute Persistence Module service from Absolute Software. • Enabled-enabled by default • Disabled • Permanently Disabled Chassis Intrusion This field controls the chassis intrusion feature. The options are: • Disabled-enabled by default • Enabled • On-Silent OROM Keyboard Access This option determines whether users can enter Option ROM Configuration screens through hotkeys during the system boot. • Disabled • Enabled-enabled by default • One Time Enable Admin Setup Lockout Master Password Lockout SMM Security Mitigation Allows you to prevent users from entering the setup when Admin password is set. This option is disabled by default. When enabled, this option disables master password support. This option is disabled by default. Allows you to enable or disable another UEFI SMM Security Mitigation protections. This option is disabled by default. 26 System setup

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40

Option
Description
Password Bypass
This option enables you to bypass the System (Boot) password and the internal hard drive password
prompts during a system restart.
Disabled
—Always prompt for the system and internal hard drive password when they are set.
This option is enabled by default.
Reboot Bypass—Bypass the password prompts on restarts (warm boots).
NOTE:
The system always prompts for the system and internal hard drive passwords
when powered on from the off state (a cold boot). Also, the system prompts for
passwords on any module bay HDDs that may be present.
Password Change
This option lets you determine whether changes to the System and Hard Disk passwords are
permitted when an administrator password is set.
Allow Non-Admin Password Changes
- This option is enabled by default.
UEFI Capsule Firmware Updates
This option controls whether this system enables BIOS updates through UEFI capsule update
packages. This option is enabled by default. Disabling this option blocks BIOS updates from services
such as Microsoft Windows Update and Linux Vendor Firmware Service (LVFS)
TPM 2.0 Security
Allows you to control whether the Trusted Platform Module (TPM) is visible to the operating
system.
TPM On—enabled by default
Clear
PPI Bypass for Enable Commands
PPI Bypass for Disable Commands
PPI Bypass for Clear Commands
Attestation Enable—enabled by default
Key Storage Enable—enabled by default
SHA-256—enabled by default
The options are:
Disabled
Enabled—enabled by default
Absolute
This field enables you to enable, disable, or permanently disable the BIOS module interface of the
optional Absolute Persistence Module service from Absolute Software.
Enabled—enabled by default
Disabled
Permanently Disabled
Chassis Intrusion
This field controls the chassis intrusion feature.
The options are:
Disabled—enabled by default
Enabled
On-Silent
OROM Keyboard Access
This option determines whether users can enter Option ROM Configuration screens through hotkeys
during the system boot.
Disabled
Enabled—enabled by default
One Time Enable
Admin Setup Lockout
Allows you to prevent users from entering the setup when Admin password is set. This option is
disabled by default.
Master Password Lockout
When enabled, this option disables master password support. This option is disabled by default.
SMM Security Mitigation
Allows you to enable or disable another UEFI SMM Security Mitigation protections. This option is
disabled by default.
26
System setup