Lenovo ThinkPad X1 (English) User Guide - Page 129

Submenu item, Selection, Comments, Disabled, UEFI BIOS Update Option, Enabled, Memory Protection

Page 129 highlights

Table 5. Security menu items (continued) Submenu item Selection Intel® TXT Feature • Disabled • Enabled UEFI BIOS Update Option Flash BIOS Updating by End-Users • Disabled • Enabled Flash Over LAN Memory Protection Execution Prevention • Disabled • Enabled • Disabled • Enabled Virtualization Intel® Virtualization Technology • Disabled • Enabled Intel® VT-d Feature • Disabled • Enabled I/O Port Access Ethernet LAN Wireless LAN WiMAX Wireless WAN Bluetooth • Disabled • Enabled • Disabled • Enabled • Disabled • Enabled • Disabled • Enabled • Disabled • Enabled Comments Enable or disable Intel Trusted Execution Technology. If you select "Enabled," all users can update the UEFI BIOS. If you select "Disabled," only the person who knows supervisor password can update the UEFI BIOS. Enable your computer's UEFI BIOS to be updated (flashed) over an active network connection. Some computer viruses and worms cause memory buffers to overflow by running code where only data is allowed. If the Data Execution Prevention feature can be used with your operating system, then by selecting "Enabled" you can protect your computer against attacks by such viruses and worms. If after choosing "Enabled" you find that an application program does not run correctly, select "Disabled" and reset the setting. If you select "Enabled," a VMM (Virtual Machine Monitor) can utilize the additional hardware capabilities provided by Intel Virtualization Technology. Intel VT-d is Intel Virtualization Technology for Directed I/O. When enabled, a VMM can utilize the platform infrastructure for I/O virtualization. If you select "Enabled," you can use the Ethernet LAN device. If you select "Enabled," you can use the Wireless LAN device. If you select "Enabled," you can use the WiMAX device. If you select "Enabled," you can use the Wireless WAN device. If you select "Enabled," you can use the Bluetooth device. Chapter 8. Advanced configuration 113

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181

Table 5. Security menu items (continued)
Submenu item
Selection
Comments
Intel
®
TXT Feature
Disabled
Enabled
Enable or disable Intel Trusted
Execution Technology.
UEFI BIOS Update Option
Flash BIOS Updating by End-Users
Disabled
Enabled
If you select “Enabled,” all users
can update the UEFI BIOS. If you
select “Disabled,” only the person
who knows supervisor password can
update the UEFI BIOS.
Flash Over LAN
Disabled
Enabled
Enable your computer's UEFI BIOS to
be updated (flashed) over an active
network connection.
Memory Protection
Execution Prevention
Disabled
Enabled
Some computer viruses and worms
cause memory buffers to overflow
by running code where only data
is allowed. If the Data Execution
Prevention feature can be used
with your operating system, then by
selecting “Enabled” you can protect
your computer against attacks by
such viruses and worms. If after
choosing “Enabled” you find that an
application program does not run
correctly, select “Disabled” and reset
the setting.
Virtualization
Intel
®
Virtualization Technology
Disabled
Enabled
If you select “Enabled,” a VMM
(Virtual Machine Monitor) can utilize
the additional hardware capabilities
provided by Intel Virtualization
Technology.
Intel
®
VT-d Feature
Disabled
Enabled
Intel VT-d is Intel Virtualization
Technology for Directed I/O. When
enabled, a VMM can utilize the
platform infrastructure for I/O
virtualization.
I/O Port Access
Ethernet LAN
Disabled
Enabled
If you select “Enabled,” you can use
the Ethernet LAN device.
Wireless LAN
Disabled
Enabled
If you select “Enabled,” you can use
the Wireless LAN device.
WiMAX
Disabled
Enabled
If you select “Enabled,” you can use
the WiMAX device.
Wireless WAN
Disabled
Enabled
If you select “Enabled,” you can use
the Wireless WAN device.
Bluetooth
Disabled
Enabled
If you select “Enabled,” you can use
the
Bluetooth
device.
Chapter 8
.
Advanced configuration
113