Intel SCB2 Product Guide - Page 17

Security, Intrusion Switch Monitoring, Software Locks - bios

Page 17 highlights

Security Intrusion Switch Monitoring To help prevent unauthorized entry or use of the server, Intel® Server Control server management software monitors the chassis intrusion switch if one is installed. Opening an access cover will transmit an alarm signal to the server board, where BMC firmware and server management software process the signal. The system can be configured through ISC to respond to an intrusion a number of ways, including powering down or locking the keyboard. Software Locks The BIOS Setup and the System Setup Utility (SSU) provide a number of security features to prevent unauthorized or accidental access to the system. Once the security measures are enabled, you can access the system only after you enter the correct password(s). For example: • Enable the keyboard lockout timer so that the server requires a password to reactivate the keyboard and mouse after a specified time out period1 to 120 minutes. • Set and enable a supervisor password. • Set and enable a user password. • Set secure mode to prevent keyboard or mouse input and to prevent use of the front panel reset and power switches. • Activate a hot key combination to enter secure mode quickly. • Disable writing to the diskette drive when secure mode is set. • Disable access to the boot sector of the operating system hard disk drive. Using Passwords You can set either the user password, the supervisor password, or both passwords. If only the user password is set, you: • Must enter the user password to enter BIOS Setup or the SSU. • Must enter the user password to boot the server if Password on Boot is enabled in either the BIOS Setup or SSU. • Must enter the user password to exit secure mode. If only the supervisor password is set, you: • Must enter the supervisor password to enter BIOS Setup or the SSU. • Must enter the supervisor password to boot the server if Password on Boot is enabled in either the BIOS Setup or SSU. • Must enter the supervisor password to exit secure mode. If both passwords are set, you: • May enter the user password to enter BIOS Setup or the SSU. However, you will not be able to change many of the options. Description 17

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108

Description
17
Security
Intrusion Switch Monitoring
To help prevent unauthorized entry or use of the server, Intel
®
Server Control server management
software monitors the chassis intrusion switch if one is installed.
Opening an access cover will
transmit an alarm signal to the server board, where BMC firmware and server management
software process the signal.
The system can be configured through ISC to respond to an intrusion a
number of ways, including powering down or locking the keyboard.
Software Locks
The BIOS Setup and the System Setup Utility (SSU) provide a number of security features to
prevent unauthorized or accidental access to the system.
Once the security measures are enabled,
you can access the system only after you enter the correct password(s).
For example:
Enable the keyboard lockout timer so that the server requires a password to reactivate the
keyboard and mouse after a specified time out period
1 to 120 minutes.
Set and enable a supervisor password.
Set and enable a user password.
Set secure mode to prevent keyboard or mouse input and to prevent use of the front panel reset
and power switches.
Activate a hot key combination to enter secure mode quickly.
Disable writing to the diskette drive when secure mode is set.
Disable access to the boot sector of the operating system hard disk drive.
Using Passwords
You can set either the user password, the supervisor password, or both passwords.
If only the user
password is set, you:
Must enter the user password to enter BIOS Setup or the SSU.
Must enter the user password to boot the server if Password on Boot is enabled in either the
BIOS Setup or SSU.
Must enter the user password to exit secure mode.
If only the supervisor password is set, you:
Must enter the supervisor password to enter BIOS Setup or the SSU.
Must enter the supervisor password to boot the server if Password on Boot is enabled in either
the BIOS Setup or SSU.
Must enter the supervisor password to exit secure mode.
If both passwords are set, you:
May enter the user password to enter BIOS Setup or the SSU.
However, you will not be able to
change many of the options.