Feature

Function

Default Setting,

 

 

 

if applicable

 

 

 

System Management Command

Allows authorized personnel to reset security settings during

Enabled

 

 

a service event

 

 

 

 

HP SpareKey

Allows users to establish a set of failsafe questions to recover

Enabled

 

 

a lost power-on password

 

 

 

 

Fingerprint Reset on Reboot (if

Clears all registered fingerprints

Disabled

present)

 

 

 

 

 

Save/Restore Master Boot Record

Saves a baseline MBR that can be restored if a change is

Disabled

(MBR) of the system Hard Drive

detected

 

 

 

 

User Tools

 

 

 

 

 

Change Password

Changes BIOS user password

N/A

 

 

 

HP SpareKey Enrollment

Allows user configure of HP SpareKey by answering any three

N/A

 

 

of ten questions for enrollment

 

 

 

 

Anti-Theft

Allows configuration of Intel Anti-Theft feature

Enabled

 

 

 

DriveLock

Allows configuration of DriveLock Master and User passwords

Disabled

 

 

 

Automatic DriveLock

Requires BIOS Admin password

Disabled

 

 

 

TPM Embedded Security

Manages TPM module settings

 

 

 

 

 

Embedded Security Device

Exposes the integrated TPM module

Available

 

Availability

 

 

 

 

 

Embedded Security Device State

Enables the integrated TPM module

Disabled

 

 

 

 

TPM Reset to Factory Defaults

Returns the TPM Embedded Security settings to factory

No

 

 

default

 

 

 

 

 

Power-On Authentication Support

Enables multifactor authentication at power-on

Disabled

 

 

 

 

Reset Authentication Credential

Resets credentials

No

 

 

 

OS Management of TPM

Allows the operating system to manage the TPM module

Enabled

 

 

 

 

Reset of TPM from OS

Allows the reset of the TPM module from within the operating

Disabled

 

 

system

 

 

 

 

Utilities

 

 

 

 

 

Disk Sanitizer

Erases all data on the selected hard drive, typically prior to

N/A

 

 

repurposing or donating the computer (not supported under

 

 

 

RAID mode or on SSDs)

 

 

 

 

Secure Erase

Runs inside the drive hardware to overwrite data contained

N/A

 

 

on the drive

 

 

 

 

System IDs

 

 

 

 

 

 

Asset Tracking Number

Allows custom configuration of an asset tag (up to 18

Serial Number

 

 

characters)

 

 

 

 

 

Ownership Tag

Allows custom configuration of an ownership tag (up to 40

Blank

 

 

characters)

 

 

 

 

 

Ownership Tag 2

Allows custom configuration of a second ownership tag (up to

Blank

 

 

40 characters)

 

 

 

 

 

 

 

System Configuration Menu

 

 

 

 

Language

Selects from among 14 languages

English

 

 

 

Boot Options

 

 

 

 

 

 

Startup Menu Delay (Sec.)

Allows user configuration of the amount of time the Startup

0

 

 

Menu is displayed during POST

 

 

 

 

 

5