Dell Vostro 5481 Setup and specifications guide - Page 27

Secure boot, Intel Software Guard Extensions options

Page 27 highlights

Secure boot Table 29. Secure Boot Option Secure Boot Enable Secure Boot Mode Expert Key Management Description Allows you to enable or disable the Secure Boot Feature. • Secure Boot Enable-Default Changes to the Secure Boot operation mode modifies the behaviour of Secure Boot to allow evaluation of UEFI driver signatures. Choose one of the option: • Deployed Mode-Default • Audit Mode Allows you to enable or disable Expert Key Management. • Enable Custom Mode This option is not set by default. The Custom Mode Key Management options are: • PK-Default • KEK • db • dbx Intel Software Guard Extensions options Table 30. Intel Software Guard Extensions Option Intel SGX Enable Enclave Memory Size Description This field specifies you to provide a secured environment for running code/storing sensitive information in the context of the main OS. Click one of the following options: • Disabled • Enabled • Software controlled-Default This option sets SGX Enclave Reserve Memory Size Click one of the following options: • 32 MB • 64 MB • 128 MB-Default System setup 27

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33

Secure boot
Table 29. Secure Boot
Option
Description
Secure Boot Enable
Allows you to enable or disable the Secure Boot Feature.
Secure Boot Enable
—Default
Secure Boot Mode
Changes to the Secure Boot operation mode
modifies
the
behaviour of Secure Boot to allow evaluation of UEFI driver
signatures.
Choose one of the option:
Deployed Mode
—Default
Audit Mode
Expert Key Management
Allows you to enable or disable Expert Key Management.
Enable Custom Mode
This option is not set by default.
The Custom Mode Key Management options are:
PK
—Default
KEK
db
dbx
Intel Software Guard Extensions options
Table 30. Intel Software Guard Extensions
Option
Description
Intel SGX Enable
This
field
specifies
you to provide a secured environment for
running code/storing sensitive information in the context of the
main OS.
Click one of the following options:
Disabled
Enabled
Software controlled
—Default
Enclave Memory Size
This option sets
SGX Enclave Reserve Memory Size
Click one of the following options:
32 MB
64 MB
128 MB
—Default
System setup
27