Table5.Securitymenuitems(continued)
MenuitemSubmenuitemSelectionComments
SecurityChipActive
Inactive
Disabled
IfyouselectActive,thesecuritychip
isfunctional.IfyouselectInactive,the
securitychipoptionisdisplayedbutthe
securitychipisnotfunctional.Ifyouselect
Disabled,thesecuritychipoptionishidden
andthesecuritychipisnotfunctional.
Security
Reporting
Options
EnableordisablethefollowingSecurity
ReportingOptions:
BIOSROMStringReporting:BIOStext
string
ESCDReporting:Extendedsystem
congurationdata
CMOSReporting:CMOSdata
NVRAMReporting:Securitydatastored
intheAssetID
SMBIOSReporting:SMBIOSdata
ClearSecurity
Chip
EnterCleartheencryptionkey.
Note:Theitemisdisplayedonlyifyou
haveselectedActivefortheSecurityChip
option.
Physical
Presencefor
Provisioning
Disabled
Enabled
Thisoptionenablesordisablesthe
conrmationmessagewhenyouchange
thesettingsofthesecuritychip.
SecurityChip
Physical
Presencefor
Clear
Disabled
Enabled
Thisoptionenablesordisablesthe
conrmationmessagewhenyouclearthe
securitychip.
FlashBIOS
Updatingby
End-Users
Disabled
Enabled
IfyouselectEnabled,alluserscanupdate
theUEFIBIOS.IfyouselectDisabled,
onlythepersonwhoknowsthesupervisor
passwordcanupdatetheUEFIBIOS.
UEFIBIOSUpdate
Option
SecureRollBack
Prevention
Disabled
Enabled
IfyouselectDisabled,end-usercanash
olderversionoftheUEFIBIOS.Ifyouselect
Enabled,end-usercannotasholder
versionoftheUEFIBIOS.
MemoryProtectionExecution
Prevention
Disabled
Enabled
UsetheDataExecutionPreventionfeature
toprotectyourcomputeragainstattacks
fromvirusesandwormsbyselecting
Enabled.Ifyoundthattheprogramdoes
notruncorrectlyafterchoosingEnabled
selectDisabledandresetthesetting.
IntelVirtualization
Technology
Disabled
Enabled
IfyouselectEnabled,aVirtualMachine
Monitor(VMM)canutilizetheadditional
hardwarecapabilitiesprovidedbyIntel
VirtualizationTechnology.
Virtualization
IntelVT-dF eatureDisabled
Enabled
IntelVT-disIntelVirtualizationTechnology
forDirectedI/O.Whenenabled,aVMMcan
utilizetheplatforminfrastructureforI/O
virtualization.
Chapter8.Advancedconguration117