HP Dc7600 HP ProtectTools Troubleshooting Guide - Page 17

Broadcom TPM in the BIOS, Windows. User will

Page 17 highlights

HP ProtectTools Troubleshooting Guide Software Impacted-Short description Details Solution / Workaround HP ProtectTools Embedded The PSD is disabled and As designed: If a customer force-deletes or Security-PSD is disabled cannot be deleted after disconnects from the storage location of the PSD and cannot be deleted after formatting the secondary data, the Embedded Security PSD drive formatting the hard drive hard drive on which the PSD emulation continues to function and will produce on which the PSD was was generated. The PSD icon errors based on lack of communication with the generated is still visible, but the error missing data. message drive is not accessible appears when the user attempts to access the PSD. Resolution: After the next reboot, the emulations fail to load and user can delete the old PSD emulation and create a new PSD. User is not able to delete the PSD and a message appears that states: your PSD is still in use, please ensure that your PSD contains no open files and is not accessed by another process. User must reboot the system in order to delete the PSD and it is not loaded after reboot. HP ProtectTools * General-Unrestricted access or uncontrolled administrator privileges pose security risk Numerous risks are possible Administrators are encouraged to follow "best with unrestricted access to the practices" in restricting end-user privileges and client PC: restricting user access. • deletion of PSD Unauthorized users should not be granted • malicious modification of administrative privileges. user settings • disabling of security policies and functions HP ProtectTools Embedded Hiding the TPM chip in the Hiding the TPM in BIOS makes the TPM invisible Security-Hiding the BIOS with Embedded to the ACPI table and Windows, and installed Broadcom TPM in the BIOS Security software loaded software cannot recognize the device. causes the Embedded Security Software to stop functioning and produce error messages stops functioning if Security This behavior is as designed, as the Security Manager is launched in Manager requires the TPM hardware. Windows. User will eventually see two errors indicating inability to connect to the TPM three minutes after the application hangs up. Customers wishing to avoid this behavior should re-enable their TPM or remove the HP Embedded Security software through Add/remove programs. Technical Reference Guide www.hp.com 15

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26

Technical Reference Guide
www.hp.com
15
HP ProtectTools Troubleshooting Guide
HP ProtectTools Embedded
Security—PSD is disabled
and cannot be deleted after
formatting the hard drive
on which the PSD was
generated
The PSD is disabled and
cannot be deleted after
formatting the secondary
hard drive on which the PSD
was generated. The PSD icon
is still visible, but the error
message
drive is not
accessible
appears when
the user attempts to access
the PSD.
User is not able to delete the
PSD and a message appears
that states:
your PSD is still
in use, please ensure
that your PSD contains
no open files and is not
accessed by another
process
. User must reboot
the system in order to delete
the PSD and it is not loaded
after reboot.
As designed: If a customer force-deletes or
disconnects from the storage location of the PSD
data, the Embedded Security PSD drive
emulation continues to function and will produce
errors based on lack of communication with the
missing data.
Resolution: After the next reboot, the emulations
fail to load and user can delete the old PSD
emulation and create a new PSD.
HP ProtectTools *
General—Unrestricted
access or uncontrolled
administrator privileges
pose security risk
Numerous risks are possible
with unrestricted access to the
client PC:
• deletion of PSD
• malicious modification of
user settings
• disabling of security
policies and functions
Administrators are encouraged to follow “best
practices” in restricting end-user privileges and
restricting user access.
Unauthorized users should not be granted
administrative privileges.
HP ProtectTools Embedded
Security—Hiding the
Broadcom TPM in the BIOS
causes the Embedded
Security Software to stop
functioning and produce
error messages
Hiding the TPM chip in the
BIOS with Embedded
Security software loaded
stops functioning if Security
Manager is launched in
Windows. User will
eventually see two errors
indicating inability to connect
to the TPM three minutes after
the application hangs up.
Hiding the TPM in BIOS makes the TPM invisible
to the ACPI table and Windows, and installed
software cannot recognize the device.
This behavior is as designed, as the Security
Manager requires the TPM hardware.
Customers wishing to avoid this behavior should
re-enable their TPM or remove the HP
Embedded Security software through
Add/remove programs
.
Software
Impacted-Short
description
Details
Solution / Workaround