Lenovo ThinkPad T540p (English) User Guide - Page 68

Setting the security chip, Windows operating system

Page 68 highlights

• Before you dispose of, sell, or hand over your computer, delete the data stored on it. For more information, refer to "Notice on deleting data from your hard disk drive or solid-state drive" on page 56. The hard disk drive built into your computer can be protected by UEFI BIOS. Using Windows BitLocker Drive Encryption To help protect your computer against unauthorized access, use the drive encryption software, such as Windows BitLocker Drive Encryption. Windows BitLocker Drive Encryption is an integral security feature of Windows 7, Windows 8 and Windows 8.1 operating systems. It is supported in the Ultimate and Enterprise editions of the Windows 7 and Professional and Enterprise editions of the Windows 8 and Windows 8.1 operating system. It can help you protect the operating system and data stored on your computer, even if your computer is lost or stolen. BitLocker works by encrypting all user and system files, including the swap and hibernation files. BitLocker uses a Trusted Platform Module to provide enhanced protection for your data and to ensure early boot component integrity. A compatible TPM is defined as a V1.2 TPM. To check the BitLocker status, open Control Panel, and click System and Security ➙ BitLocker Drive Encryption. For more information about Windows BitLocker Drive Encryption, see the help information system of the Windows operating system, or search for "Microsoft Windows BitLocker Drive Encryption Step-by-Step Guide" on the Microsoft Web site. Disk Encryption hard disk drive and Encryption solid-state drive Some models contain the Disk Encryption hard disk drive or Encryption solid-state drive. This feature helps to protect your computer against security attacks on media, NAND flash, or device controllers by use of a hardware encryption chip. For the efficient use of the encryption feature, set a hard disk password for the internal storage device. Setting the security chip Strict security requirements are imposed on network client computers that transfer confidential information electronically. Depending on the options you ordered, your computer might have an embedded security chip, a cryptographic microprocessor. With the security chip and Client Security Solution, you can do the following: • Protect your data and system • Strengthen access controls • Secure communications Setting the security chip The choices offered on the Security Chip submenu under the Security menu of ThinkPad Setup are as follows: • Security Chip: Activate, inactivate, or disable the security chip. • Security Reporting Options: Enable or disable each security reporting option. • Clear Security Chip: Clear the encryption key. Before you start, print these instructions. To set an item on the Security Chip submenu, do the following: 1. Restart the computer. When the logo screen is displayed, press F1 to start the ThinkPad Setup program. 52 User Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186

• Before you dispose of, sell, or hand over your computer, delete the data stored on it. For more information,
refer to “Notice on deleting data from your hard disk drive or solid-state drive” on page 56.
The hard disk drive built into your computer can be protected by UEFI BIOS.
Using Windows BitLocker Drive Encryption
To help protect your computer against unauthorized access, use the drive encryption software, such as
Windows BitLocker Drive Encryption.
Windows BitLocker Drive Encryption is an integral security feature of Windows 7, Windows 8 and Windows
8.1 operating systems. It is supported in the Ultimate and Enterprise editions of the Windows 7 and
Professional and Enterprise editions of the Windows 8 and Windows 8.1 operating system. It can help you
protect the operating system and data stored on your computer, even if your computer is lost or stolen.
BitLocker works by encrypting all user and system files, including the swap and hibernation files.
BitLocker uses a Trusted Platform Module to provide enhanced protection for your data and to ensure early
boot component integrity. A compatible TPM is defined as a V1.2 TPM.
To check the BitLocker status, open Control Panel, and click
System and Security
BitLocker Drive
Encryption
.
For more information about Windows BitLocker Drive Encryption, see the help information system of the
Windows operating system, or search for “Microsoft Windows BitLocker Drive Encryption Step-by-Step
Guide” on the Microsoft Web site.
Disk Encryption hard disk drive and Encryption solid-state drive
Some models contain the Disk Encryption hard disk drive or Encryption solid-state drive. This feature helps
to protect your computer against security attacks on media, NAND flash, or device controllers by use of a
hardware encryption chip. For the efficient use of the encryption feature, set a hard disk password for the
internal storage device.
Setting the security chip
Strict security requirements are imposed on network client computers that transfer confidential information
electronically. Depending on the options you ordered, your computer might have an embedded security chip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
• Protect your data and system
• Strengthen access controls
• Secure communications
Setting the security chip
The choices offered on the
Security Chip
submenu under the
Security
menu of ThinkPad Setup are as
follows:
Security Chip
: Activate, inactivate, or disable the security chip.
Security Reporting Options
: Enable or disable each security reporting option.
Clear Security Chip
: Clear the encryption key.
Before you start, print these instructions.
To set an item on the
Security Chip
submenu, do the following:
1. Restart the computer. When the logo screen is displayed, press F1 to start the ThinkPad Setup program.
52
User Guide