Lenovo ThinkCentre M58p White Paper for ThinkCentre M58p - Page 23

Not-started, Process, Remote, Configuration, Enabled, Disabled, Manage, Certificate, Hashes, Invalid

Page 23 highlights

Note: A PPS value of '0000-0000-0000-0000-0000-0000-0000-0000' will not change the setup configuration state. If this value is used, the setup and configuration state will stay as Not-started. - Delete PID and PPS - Delete the current PID and PPS stored in Intel ME. Note: Using this option will set the setup and configuration process parameter to In Process. v TLS PKI: This menu contains options for the TLS PKI configuration settings. Select TLS PKI. The TLS PKI setting menu displays. Note: This option is also only needed for Enterprise mode. If you choose SMB mode, you need not to enter this option button. The Remote configuration options are contained under the TLS PKI submenu. There are four remote configuration items: - Remote Configuration Enable/Disable Remote Configuration = Enabled: To enable remote configuration. Remote Configuration = Disabled: Remote configuration cannot occur. The menu options will be displayed, but cannot be used until remote configuration is enabled. Note: This option cannot be modified once the setup and configuration procedure is in process. This parameter can only be modified while the system is in unprovisioned state. Enabling/Disabling Remote configuration will cause a partial unprovision if the setup and configuration is "In-process". - Manage Certificate Hashes Select Manage Certificate Hashes option, the manage certificate hashes menu displays. This option will enable you to enumerate the hashes in the system, and display the Hash Name, the active and default state. The manage certificate hashes screen has several keyboard controls available to the user to manage the hashes on the system. These keys are valid in the Manage Certificate Hashes menu and listed below: - [ESC] - To exit from the menu - [INS] - To add a customized certificate hash to the system. Press [INS], and type the hash name. The hash name must be a maximum of 32 characters. The Certificate hash value is a 20 byte hexadecimal number. The user must enter the hash data in the correct format. Otherwise, the message prompts, indicating Invalid Hash Certificate Entered - Try Again Upon pressing Enter the user is asked about setting the active state of the hash. This query allows for setting the active state of the customized hash. v Yes - The customized hash will be marked as active. v No (Default) - VA_Hash will be maintained within EPS - [DEL] - To delete the currently selected certificate hash from system. Press [DEL] v Yes - MEBx will send the message to FW to delete the selected hash. v No - MEBx will not delete the selected hash and will return to the remote configuration. - [+] To change the active state of the currently selected certificate hash. Press + in the Manage Certificate Hash screen, and Yes will toggle the active Chapter 5. Intel AMT setup and configuration based on Lenovo ThinkCentre M58p 15

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38

Note:
A
PPS
value
of
‘0000-0000-0000-0000-0000-0000-0000-0000’
will
not
change
the
setup
configuration
state.
If
this
value
is
used,
the
setup
and
configuration
state
will
stay
as
Not-started
.
Delete
PID
and
PPS
Delete
the
current
PID
and
PPS
stored
in
Intel
ME.
Note:
Using
this
option
will
set
the
setup
and
configuration
process
parameter
to
In
Process
.
v
TLS
PKI
:
This
menu
contains
options
for
the
TLS
PKI
configuration
settings.
Select
TLS
PKI
.
The
TLS
PKI
setting
menu
displays.
Note:
This
option
is
also
only
needed
for
Enterprise
mode.
If
you
choose
SMB
mode,
you
need
not
to
enter
this
option
button.
The
Remote
configuration
options
are
contained
under
the
TLS
PKI
submenu.
There
are
four
remote
configuration
items:
Remote
Configuration
Enable/Disable
Remote
Configuration
=
Enabled
:
To
enable
remote
configuration.
Remote
Configuration
=
Disabled
:
Remote
configuration
cannot
occur.
The
menu
options
will
be
displayed,
but
cannot
be
used
until
remote
configuration
is
enabled.
Note:
This
option
cannot
be
modified
once
the
setup
and
configuration
procedure
is
in
process.
This
parameter
can
only
be
modified
while
the
system
is
in
unprovisioned
state.
Enabling/Disabling
Remote
configuration
will
cause
a
partial
unprovision
if
the
setup
and
configuration
is
“In-process”.
Manage
Certificate
Hashes
Select
Manage
Certificate
Hashes
option,
the
manage
certificate
hashes
menu
displays.
This
option
will
enable
you
to
enumerate
the
hashes
in
the
system,
and
display
the
Hash
Name,
the
active
and
default
state.
The
manage
certificate
hashes
screen
has
several
keyboard
controls
available
to
the
user
to
manage
the
hashes
on
the
system.
These
keys
are
valid
in
the
Manage
Certificate
Hashes
menu
and
listed
below:
-
[ESC]
To
exit
from
the
menu
-
[INS]
To
add
a
customized
certificate
hash
to
the
system.
Press
[INS],
and
type
the
hash
name.
The
hash
name
must
be
a
maximum
of
32
characters.
The
Certificate
hash
value
is
a
20
byte
hexadecimal
number.
The
user
must
enter
the
hash
data
in
the
correct
format.
Otherwise,
the
message
prompts,
indicating
Invalid
Hash
Certificate
Entered
-
Try
Again
Upon
pressing
Enter
the
user
is
asked
about
setting
the
active
state
of
the
hash.
This
query
allows
for
setting
the
active
state
of
the
customized
hash.
v
Yes
The
customized
hash
will
be
marked
as
active.
v
No
(Default)
VA_Hash
will
be
maintained
within
EPS
-
[DEL]
To
delete
the
currently
selected
certificate
hash
from
system.
Press
[DEL]
v
Yes
MEBx
will
send
the
message
to
FW
to
delete
the
selected
hash.
v
No
MEBx
will
not
delete
the
selected
hash
and
will
return
to
the
remote
configuration.
-
[+]
To
change
the
active
state
of
the
currently
selected
certificate
hash.
Press
+
in
the
Manage
Certificate
Hash
screen,
and
Yes
will
toggle
the
active
Chapter
5.
Intel
AMT
setup
and
configuration
based
on
Lenovo
ThinkCentre
M58p
15