Lenovo ThinkPad T420si (English) User Guide - Page 185

Enter, Disabled, Enabled, UEFI BIOS Update Option, Memory Protection, UEFI BIOS. If you select

Page 185 highlights

Table 6. Security menu items (continued) Clear Security Chip • Enter Intel TXT Feature UEFI BIOS Update Option Flash BIOS Updating by End-Users • Disabled • Enabled • Disabled • Enabled Memory Protection Flash Over LAN Execution Prevention • Disabled • Enabled • Disabled • Enabled • BIOS ROM String Reporting: BIOS text string • ESCD Reporting: Extended system configuration data • CMOS Reporting: CMOS data • NVRAM Reporting: Security data stored in the Asset ID • SMBIOS Reporting: SMBIOS data Clear the encryption key. Note: Only if you select "Active" for Security Chip, this item appears. Enable or disable Intel Trusted Execution Technology. If you select "Enabled", all users can update the UEFI BIOS. If you select "Disabled", only the person who knows supervisor password can update the UEFI BIOS. Enable your computer's UEFI BIOS to be updated (flashed) over an active network connection. Some computer viruses and worms cause memory buffers to overflow by running code where only data is allowed. If the Data Execution Prevention feature can be used with your operating system, then by selecting "Enabled" you can protect your computer against attacks by such viruses and worms. If after choosing "Enabled" you find that an application program does not run correctly, select "Disabled" and reset the setting. Chapter 8. Advanced configuration 169

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246

Table 6. Security menu items (continued)
BIOS ROM String
Reporting: BIOS text
string
ESCD Reporting:
Extended system
configuration data
CMOS Reporting:
CMOS data
NVRAM Reporting:
Security data stored in
the Asset ID
SMBIOS Reporting:
SMBIOS data
Clear Security Chip
Enter
Clear the encryption key.
Note:
Only if you select
“Active” for Security Chip,
this item appears.
Intel TXT Feature
Disabled
Enabled
Enable or disable Intel
Trusted Execution
Technology.
Flash BIOS Updating by
End-Users
Disabled
Enabled
If you select “Enabled”,
all users can update the
UEFI BIOS. If you select
“Disabled”, only the person
who knows supervisor
password can update the
UEFI BIOS.
UEFI BIOS Update Option
Flash Over LAN
Disabled
Enabled
Enable your computer's
UEFI BIOS to be updated
(flashed) over an active
network connection.
Memory Protection
Execution Prevention
Disabled
Enabled
Some computer viruses
and worms cause memory
buffers to overflow by
running code where only
data is allowed.
If the
Data Execution Prevention
feature can be used with
your operating system, then
by selecting “Enabled” you
can protect your computer
against attacks by such
viruses and worms. If after
choosing “Enabled” you
find that an application
program does not run
correctly, select “Disabled”
and reset the setting.
Chapter 8
.
Advanced configuration
169