Dell XPS 13 9300 Service Manual - Page 43

Enable Master Password Lockout, SMM Security Mitigation

Page 43 highlights

Security Key Storage Enable SHA-256 Clear TPM State SMM Security Mitigation Intel SGX Enables to control whether the TPM Endorsement Hierarchy is available to the OS. Disabling this setting restricts the ability to use the TPM for storing owner data. Default: ON Enables or disables the BIOS and the TPM to use the SHA-256 hash algorithm to extend measurements into the TPM PCRs during BIOS boot. Default: ON Enables or disables the computer to clear the PTT owner information, and returns the PTT to the default state. Default: OFF Enables or disables the TPM. This is the normal operating state for the TPM when you want to use its complete array of capabilities. Default: Enabled Enables or disables additional UEFI SMM Security Mitigation protections. Default: OFF NOTE: This feature may cause compatibility issues or loss of functionality with some legacy tools and applications. Enables or disables the Intel Software Guard Extensions (SGX) to provide a secured environment for running code/storing sensitive information. Default: Software Control Table 8. System setup options-Passwords menu Passwords Enable Strong Passwords Enables or disables strong passwords. Default: OFF Password Configuration Admin Password Min Specify the minimum number of characters allowed for Admin password. Default: 4 Admin Password Max Specify the maximum number of characters allowed for Admin password. Default: 32 System Password Min Specify the minimum number of characters allowed for System password. Default: 4 System Password Max Specify the maximum number of characters allowed for System password. Default: 32 Admin Password System Password Enable Master Password Lockout Sets, Changes, or deletes the administrator (admin) password (sometimes called the "setup" password). Sets, Changes, or deletes the system password. Enables or disables the master password support. Default: OFF Table 9. System setup options-Secure Boot menu Secure Boot Enable Secure Boot Enables or disables the computer to boos using only validated boot software. Default: ON System setup 43

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57

Security
Key Storage Enable
Enables to control whether the TPM Endorsement Hierarchy is available to the OS.
Disabling this setting restricts the ability to use the TPM for storing owner data.
Default: ON
SHA-256
Enables or disables the BIOS and the TPM to use the SHA-256 hash algorithm to
extend measurements into the TPM PCRs during BIOS boot.
Default: ON
Clear
Enables or disables the computer to clear the PTT owner information, and returns the
PTT to the default state.
Default: OFF
TPM State
Enables or disables the TPM. This is the normal operating state for the TPM when
you want to use its complete array of capabilities.
Default: Enabled
SMM Security Mitigation
Enables or disables additional UEFI SMM Security Mitigation protections.
Default: OFF
NOTE:
This feature may cause compatibility issues or loss of
functionality with some legacy tools and applications.
Intel SGX
Enables or disables the Intel Software Guard Extensions (SGX) to provide a secured
environment for running code/storing sensitive information.
Default: Software Control
Table 8. System setup options—Passwords menu
Passwords
Enable Strong Passwords
Enables or disables strong passwords.
Default: OFF
Password Configuration
Admin Password Min
Specify the minimum number of characters allowed for Admin password.
Default: 4
Admin Password Max
Specify the maximum number of characters allowed for Admin password.
Default: 32
System Password Min
Specify the minimum number of characters allowed for System password.
Default: 4
System Password Max
Specify the maximum number of characters allowed for System password.
Default: 32
Admin Password
Sets, Changes, or deletes the administrator (admin) password (sometimes called the
"setup" password).
System Password
Sets, Changes, or deletes the system password.
Enable Master Password Lockout
Enables or disables the master password support.
Default: OFF
Table 9. System setup options—Secure Boot menu
Secure Boot
Enable Secure Boot
Enables or disables the computer to boos using only validated boot software.
Default: ON
System setup
43