HP t740 Hardware Reference Guide - Page 35

Computer Setup F10 Utility, BIOS Settings, Computer Setup-Security continued

Page 35 highlights

Table 4-4 Computer Setup-Security (continued) Option Description ● Rear USB Ports - USB Port 4 - USB Port 5 - USB Port 6 - USB Port 7 Slot Security Allows you to disable the PCI Express slots. Default is enabled. ● Slot #-PCI Express x 8 ● Slot #-M.2 PCIe x1 Network Boot Enables/disables the computer's ability to boot from an operating system installed on a network server. (Feature available on NIC models only; the network controller must be either a PCI expansion card or embedded on the system board.) Default is enabled. System IDs Allows you to set: ● Asset tag (18-byte identifier)-A property identification number assigned by the company to the computer. ● Ownership tag (80-byte identifier) System Security Provides these options: ● Data Execution Prevention (enable or disable) - Helps prevent operating system security breaches. Default is enabled. ● Virtualization Technology (enable or disable)-Controls the virtualization features of the processor. Changing this setting requires turning the computer off and then back on. Default is disabled. ● TPM Device-Lets you set the Trusted Platform Module as available or hidden. ● TPM State-Select to enable the TPM. ● Clear TPM-Select to reset the TPM to an unowned state. After the TPM is cleared, it is also turned off. To temporarily suspend TPM operations, turn the TPM off instead of clearing it. IMPORTANT: Clearing the TPM resets it to factory defaults and turns it off. You will lose all created keys and data protected by those keys. Secure Boot Configuration The options on this setup page are only for Windows 10 and other operating systems that support Secure Boot. Changing the default setting of the setup options on this page for operating system that do not support secure boot may prevent the system from booting successfully. Legacy Support (enable or disable)-Enable or disable the legacy operating system support (Windows Embedded Standard 7 and HP Thin-Pro). Secure Boot (enable or disable)-Only when the Legacy Support set to disable, this item can be set to enable. This item is for Secure Boot flow control. Secure boot is possible only if system run in user mode. Key Management ● Clear Secure Boot Keys (Clear or Don't Clear). Lets you clear the Secure Boot Key. ● Key ownership (HP keys or Customer keys). Lets you change the keys of different owners. Fast Boot (enable or disable)-Enable Fast Boot cause system boot by initializing a minimal set of devices which is required to launch active boot option. This option has no effect for BBS boot options. Memory Security AMD Transparent Secure Memory Encryption (enable or disable)-Allows you to turn on or turn off the AMD Transparent Secure Memory Encryption function. Computer Setup (F10) Utility, BIOS Settings 29

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57

Table 4-4
Computer Setup—Security (continued)
Option
Description
Rear USB Ports
USB Port 4
USB Port 5
USB Port 6
USB Port 7
Slot Security
Allows you to disable the PCI Express slots. Default is enabled.
Slot #—PCI Express x 8
Slot #—M.2 PCIe x1
Network Boot
Enables/disables the computer’s ability to boot from an operating system installed on a network server.
(Feature available on NIC models only; the network controller must be either a PCI expansion card or
embedded on the system board.) Default is enabled.
System IDs
Allows you to set:
Asset tag (18-byte identifier)—A property identification number assigned by the company to the
computer.
Ownership tag (80-byte identifier)
System Security
Provides these options:
Data Execution Prevention (enable or disable) - Helps prevent operating system security breaches.
Default is enabled.
Virtualization Technology (enable or disable)—Controls the virtualization features of the processor.
Changing this setting requires turning the computer off and then back on. Default is disabled.
TPM Device—Lets you set the Trusted Platform Module as available or hidden.
TPM State—Select to enable the TPM.
Clear TPM—Select to reset the TPM to an unowned state. After the TPM is cleared, it is also turned
off. To temporarily suspend TPM operations, turn the TPM off instead of clearing it.
IMPORTANT:
Clearing the TPM resets it to factory defaults and turns it off. You will lose all created
keys and data protected by those keys.
Secure Boot
Configuration
The options on this setup page are only for Windows 10 and other operating systems that support Secure
Boot. Changing the default setting of the setup options on this page for operating system that do not
support secure boot may prevent the system from booting successfully.
Legacy Support (enable or disable)—Enable or disable the legacy operating system support (Windows
Embedded Standard 7 and HP Thin-Pro).
Secure Boot (enable or disable)—Only when the Legacy Support set to disable, this item can be set to
enable. This item is for Secure Boot flow control. Secure boot is possible only if system run in user mode.
Key Management
Clear Secure Boot Keys (Clear or Don’t Clear). Lets you clear the Secure Boot Key.
Key ownership (HP keys or Customer keys). Lets you change the keys of different owners.
Fast Boot (enable or disable)—Enable Fast Boot cause system boot by initializing a minimal set of devices
which is required to launch active boot option. This option has no effect for BBS boot options.
Memory Security
AMD Transparent Secure Memory Encryption (enable or disable)—Allows you to turn on or turn off the
AMD Transparent Secure Memory Encryption function.
Computer Setup (F10) Utility, BIOS Settings
29