Lenovo ThinkPad X220i (English) User Guide - Page 209

Menu item, Selection, Comments, Enter, Disabled, Enabled, UEFI BIOS Update Option, Memory Protection

Page 209 highlights

Table 7. Security menu items (continued) Menu item Submenu item Clear Security Chip Selection • Enter Intel TXT Feature UEFI BIOS Update Option Flash BIOS Updating by End-Users • Disabled • Enabled • Disabled • Enabled Memory Protection Flash Over LAN Execution Prevention • Disabled • Enabled • Disabled • Enabled Virtualization Intel Virtualization Technology • Disabled • Enabled Intel VT-d Feature • Disabled • Enabled Comments Clear the encryption key. Note: Only if you select "Active" for Security Chip, this item appears. Enable or disable Intel Trusted Execution Technology. If you select "Enabled", all users can update the UEFI BIOS. If you select "Disabled", only the person who knows supervisor password can update the UEFI BIOS. Enable your computer's UEFI BIOS to be updated (flashed) over an active network connection. Some computer viruses and worms cause memory buffers to overflow by running code where only data is allowed. If the Data Execution Prevention feature can be used with your operating system, then by selecting "Enabled" you can protect your computer against attacks by such viruses and worms. If after choosing "Enabled" you find that an application program does not run correctly, select "Disabled" and reset the setting. If you select "Enabled," a VMM (Virtual Machine Monitor) can utilize the additional hardware capabilities provided by Intel Virtualization Technology. Intel VT-d is Intel Virtualization Technology for Directed I/O. When enabled, a VMM can utilize the platform infrastructure for I/O virtualization. Chapter 8. Advanced configuration 193

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270

Table 7. Security menu items (continued)
Menu item
Submenu item
Selection
Comments
Clear Security Chip
Enter
Clear the encryption key.
Note:
Only if you select
“Active” for Security Chip,
this item appears.
Intel TXT Feature
Disabled
Enabled
Enable or disable Intel
Trusted Execution
Technology.
Flash BIOS Updating by
End-Users
Disabled
Enabled
If you select “Enabled”,
all users can update the
UEFI BIOS. If you select
“Disabled”, only the person
who knows supervisor
password can update the
UEFI BIOS.
UEFI BIOS Update Option
Flash Over LAN
Disabled
Enabled
Enable your computer's
UEFI BIOS to be updated
(flashed) over an active
network connection.
Memory Protection
Execution Prevention
Disabled
Enabled
Some computer viruses
and worms cause memory
buffers to overflow by
running code where only
data is allowed.
If the
Data Execution Prevention
feature can be used with
your operating system, then
by selecting “Enabled” you
can protect your computer
against attacks by such
viruses and worms. If after
choosing “Enabled” you
find that an application
program does not run
correctly, select “Disabled”
and reset the setting.
Intel Virtualization
Technology
Disabled
Enabled
If you select “Enabled,”
a VMM (Virtual Machine
Monitor) can utilize the
additional hardware
capabilities provided
by Intel Virtualization
Technology.
Virtualization
Intel VT-d Feature
Disabled
Enabled
Intel VT-d is Intel
Virtualization Technology
for Directed I/O. When
enabled, a VMM can utilize
the platform infrastructure
for I/O virtualization.
Chapter 8
.
Advanced configuration
193