HP EliteDesk 800 G3 Maintenance and Service Guide - Page 90

Computer Setup-Security continued

Page 90 highlights

Table 5-2 Computer Setup-Security (continued) Option Description Security Configuration TPM Embedded Security ● TPM Specification Version Displays the current TPM version. ● TPM Device Lets you set the Trusted Platform Module as available or hidden. ● TPM State Select to enable the TPM. ● ClearTPM Select to reset the TPM to an unowned state. After the TPM is cleared, it is also turned off. To temporarily suspend TPM operations, turn the TPM off instead of clearing it. CAUTION: Clearing the TPM resets it to factory defaults and turns it off. You will lose all created keys and data protected by those keys. Utilities Hard Drive Utilities ● Save/Restore MBR of System Hard Drive NOTE: Windows 10 systems are generally not formatted to include an MBR. Instead they use GUID Partition Table (GPT) format, which better supports large hard drives. Enabling this feature will save the Master Boot Record (MBR) of the system hard drive. If the MBR gets changed, the user will be prompted to restore the MBR. Default is disabled. The MBR contains information needed to successfully boot from a disk and to access the data stored on the disk. Master Boot Record Security may prevent unintentional or malicious changes to the MBR, such as those caused by some viruses or by the incorrect use of certain disk utilities. It also allows you to recover the "last known good" MBR, should changes to the MBR be detected when the system is restarted. NOTE: Most operating systems control access to the MBR of the current bootable disk; the BIOS cannot prevent changes that may occur while the operating system is running. Restores the backup Master Boot Record to the current bootable disk. Default is disabled. Only appears if all of the following conditions are true: - MBR security is enabled - A backup copy of the MBR has been previously saved - The current bootable disk is the same disk from which the backup copy was saved CAUTION: Restoring a previously saved MBR after a disk utility or operating system has modified the MBR, may cause the data on the disk to become inaccessible. Only restore a previously saved MBR if you are confident that the current bootable disk's MBR has been corrupted or infected with a virus. ● Save/Restore GPT of System Hard Drive Enabling this feature will save the GUID Partition Table (GPT) of the system hard drive. If the GPT is subsequently changed, the user is prompted to choose whether to restore GPT. ● DriveLock Allows you to assign or modify a master or user password for hard drives. When this feature is enabled, the user is prompted to provide one of the DriveLock passwords during POST. If neither is successfully entered, the hard drive will remain inaccessible until one of the passwords is successfully provided during a subsequent cold-boot sequence. 80 Chapter 5 Computer Setup (F10) Utility

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165

Table 5-2
Computer Setup—Security (continued)
Option
Description
Security
Configuration
TPM Embedded Security
TPM
Specification
Version
Displays the current TPM version.
TPM Device
Lets you set the Trusted Platform Module as available or hidden.
TPM State
Select to enable the TPM.
ClearTPM
Select to reset the TPM to an unowned state. After the TPM is cleared, it is also turned
off.
To
temporarily suspend TPM operations, turn the TPM
off
instead of clearing it.
CAUTION:
Clearing the TPM resets it to factory defaults and turns it
off.
You will lose all created
keys and data protected by those keys.
Utilities
Hard Drive Utilities
Save/Restore MBR of System Hard Drive
NOTE:
Windows 10 systems are generally not formatted to include an MBR. Instead they use GUID
Partition Table (GPT) format, which better supports large hard drives.
Enabling this feature will save the Master Boot Record (MBR) of the system hard drive. If the MBR
gets changed, the user will be prompted to restore the MBR. Default is disabled.
The MBR contains information needed to successfully boot from a disk and to access the data stored
on the disk. Master Boot Record Security may prevent unintentional or malicious changes to the
MBR, such as those caused by some viruses or by the incorrect use of certain disk utilities. It also
allows you to recover the "last known good" MBR, should changes to the MBR be detected when the
system is restarted.
NOTE:
Most operating systems control access to the MBR of the current bootable disk; the BIOS
cannot prevent changes that may occur while the operating system is running.
Restores the backup Master Boot Record to the current bootable disk. Default is disabled.
Only appears if all of the following conditions are true:
MBR security is enabled
A backup copy of the MBR has been previously saved
The current bootable disk is the same disk from which the backup copy was saved
CAUTION:
Restoring a previously saved MBR after a disk utility or operating system has
modified
the MBR, may cause the data on the disk to become inaccessible. Only restore a previously saved
MBR if you are
confident
that the current bootable disk's MBR has been corrupted or infected with a
virus.
Save/Restore GPT of System Hard Drive
Enabling this feature will save the GUID Partition Table (GPT) of the system hard drive. If the GPT is
subsequently changed, the user is prompted to choose whether to restore GPT.
DriveLock
Allows you to assign or modify a master or user password for hard drives. When this feature is
enabled, the user is prompted to provide one of the DriveLock passwords during POST. If neither is
successfully entered, the hard drive will remain inaccessible until one of the passwords is
successfully provided during a subsequent cold-boot sequence.
80
Chapter 5
Computer Setup (F10) Utility