Lenovo ThinkPad S430 User Guide - Page 69

Setting the security chip

Page 69 highlights

Windows BitLocker Drive Encryption is an integral security feature of the Windows 7 and Windows 8 operating systems. It is supported in the Ultimate and Enterprise editions of the Windows 7 and Professional and Enterprise editions of the Windows 8 operating system. BitLocker uses a Trusted Platform Module to provide enhanced protection for your data and to ensure early boot component integrity. A compatible TPM is defined as a V1.2 TPM. To check the BitLocker status, go to Control Panel, and click System and Security ➙ BitLocker Drive Encryption For details about Windows BitLocker Drive Encryption, see the Windows Help and Support, or search for "Microsoft Windows BitLocker Drive Encryption Step-by-Step Guide" on the Microsoft Web site. Disk Encryption hard disk drive and Encryption solid state drive Some models contain the Disk Encryption hard disk drive or Encryption solid state drive. This feature helps to protect your computer against security attacks on media, NAND flash or device controllers by use of a hardware encryption chip. For the efficient use of the encryption feature, be sure to set a hard disk password for the internal storage device. Setting the security chip Strict security requirements are imposed on network client computers that transfer confidential information electronically. Depending on the options you ordered, your computer might have an embedded security chip, a cryptographic microprocessor. With the security chip, you can do the following: • Protect your data and system • Strengthen access controls • Secure communications Setting the security chip The choices offered on the Security Chip submenu under the Security menu of ThinkPad Setup are as follows: • Security Chip: activate, inactivate, or disable the security chip. • Security Reporting Options: enable or disable each security reporting option. • Clear Security Chip: clear the encryption key. Notes: 1. Ensure that the supervisor password has been set in ThinkPad Setup. Otherwise anyone can change the settings for the security chip. 2. If you are using Client Security Solution, handle the security chip by doing the following: • Do not clear the security chip. If you do, the functions assigned to the keys will be erased. • Do not disable the security chip. If you do, Client Security Solution will not work. 3. If the security chip is removed or replaced, or a new one has been added, the computer will not start. You will hear four cycles of four beeps each. 4. If the security chip is inactive or disabled, the Clear Security Chip option will not be displayed. 5. When you clear the security chip, be sure to turn your computer off and then turn it on again after you set the security chip to Active. Otherwise, the Clear Security Chip option is not displayed. To set an item on the Security Chip submenu, do the following: 1. Print these instructions. Chapter 4. Security 53

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170

Windows BitLocker Drive Encryption is an integral security feature of the Windows 7 and Windows 8
operating systems. It is supported in the Ultimate and Enterprise editions of the Windows 7 and Professional
and Enterprise editions of the Windows 8 operating system.
BitLocker uses a Trusted Platform Module to provide enhanced protection for your data and to ensure early
boot component integrity. A compatible TPM is defined as a V1.2 TPM.
To check the BitLocker status, go to Control Panel, and click
System and Security
BitLocker Drive
Encryption
For details about Windows BitLocker Drive Encryption, see the Windows Help and Support, or search for
“Microsoft Windows BitLocker Drive Encryption Step-by-Step Guide” on the Microsoft Web site.
Disk Encryption hard disk drive and Encryption solid state drive
Some models contain the Disk Encryption hard disk drive or Encryption solid state drive. This feature
helps to protect your computer against security attacks on media, NAND flash or device controllers by use
of a hardware encryption chip. For the efficient use of the encryption feature, be sure to set a hard disk
password for the internal storage device.
Setting the security chip
Strict security requirements are imposed on network client computers that transfer confidential information
electronically. Depending on the options you ordered, your computer might have an embedded security
chip, a cryptographic microprocessor. With the security chip, you can do the following:
Protect your data and system
Strengthen access controls
Secure communications
Setting the security chip
The choices offered on the
Security Chip
submenu under the
Security
menu of ThinkPad Setup are as
follows:
Security Chip
: activate, inactivate, or disable the security chip.
Security Reporting Options
: enable or disable each security reporting option.
Clear Security Chip
: clear the encryption key.
Notes:
1. Ensure that the supervisor password has been set in ThinkPad Setup. Otherwise anyone can change
the settings for the security chip.
2. If you are using Client Security Solution, handle the security chip by doing the following:
Do not clear the security chip. If you do, the functions assigned to the keys will be erased.
Do not disable the security chip. If you do, Client Security Solution will not work.
3. If the security chip is removed or replaced, or a new one has been added, the computer will not start.
You will hear four cycles of four beeps each.
4. If the security chip is inactive or disabled, the
Clear Security Chip
option will not be displayed.
5. When you clear the security chip, be sure to turn your computer off and then turn it on again after you
set the security chip to
Active
. Otherwise, the
Clear Security Chip
option is not displayed.
To set an item on the
Security Chip
submenu, do the following:
1. Print these instructions.
Chapter 4
.
Security
53