Lenovo ThinkPad Yoga (English) User Guide - Page 102

Menu item, Selection, Comments, Disabled, Intel R TXT Feature, Enabled, UEFIBIOSUpdateOption

Page 102 highlights

Table 6. Security menu items (continued) Menu item Submenu item Intel(R) TXT Feature Selection • Disabled • Enabled Physical Presence for Provisioning • Disabled • Enabled Physical Presence for Clear • Disabled • Enabled UEFI BIOS Update Option Flash BIOS Updating by • Disabled End-Users • Enabled Secure RollBack Prevention • Disabled • Enabled 86 User Guide Comments Enable or disable the Intel Trusted Execution Technology (TXT) feature. Intel TXT is a hardware-based security technology that establishes a root of trust to protect information from software-based attacks. Note: The Intel (R) TXT Feature item is only available on models that support the Intel vPro™ technology. This option enables or disables confirmation of a user physical presence when provisioning the security chip. If you select Enabled, a user confirmation screen will be displayed when provisioning the security chip. If you select Disabled, no user confirmation screen will be displayed when provisioning the security chip. This option enables or disables confirmation of a user physical presence when clearing the security chip. If you select Enabled, a user confirmation screen will be displayed when clearing the security chip. If you select Disabled, no user confirmation screen will be displayed when clearing the security chip. If you select Enabled, all users can update the UEFI BIOS. If you select Disabled, only the person who knows the supervisor password can update the UEFI BIOS. If you select Disabled, you can flash to an earlier version of the UEFI BIOS. If you select Enabled, you cannot flash to an earlier version of the UEFI BIOS. Note: This item is set as Disabled by default when the OS Optimized Defaults on the Restart menu is set as Disabled. This item is set

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152

Table 6. Security menu items (continued)
Menu item
Submenu item
Selection
Comments
Intel(R) TXT Feature
Disabled
• Enabled
Enable or disable the Intel Trusted
Execution Technology (TXT) feature.
Intel TXT is a hardware-based
security technology that establishes
a root of trust to protect information
from software-based attacks.
Note:
The
Intel (R) TXT Feature
item is only available on models that
support the Intel vPro
technology.
Physical Presence for
Provisioning
Disabled
• Enabled
This option enables or disables
confirmation of a user physical
presence when provisioning the
security chip.
If you select
Enabled
, a user
confirmation screen will be
displayed when provisioning the
security chip.
If you select
Disabled
, no user
confirmation screen will be
displayed when provisioning the
security chip.
Physical Presence for
Clear
• Disabled
Enabled
This option enables or disables
confirmation of a user physical
presence when clearing the security
chip.
If you select
Enabled
, a user
confirmation screen will be
displayed when clearing the security
chip.
If you select
Disabled
, no user
confirmation screen will be
displayed when clearing the security
chip.
Flash BIOS Updating by
End-Users
• Disabled
Enabled
If you select
Enabled
, all users can
update the UEFI BIOS. If you select
Disabled
, only the person who
knows the supervisor password can
update the UEFI BIOS.
UEFIBIOSUpdateOption
Secure RollBack
Prevention
Disabled
• Enabled
If you select
Disabled
, you can flash
to an earlier version of the UEFI
BIOS.
If you select
Enabled
, you cannot
flash to an earlier version of the UEFI
BIOS.
Note:
This item is set as
Disabled
by default when the
OS Optimized
Defaults
on the
Restart
menu is
set as
Disabled
. This item is set
86
User Guide