Table3.Securitymenuitems(continued)
MenuitemSubmenuitemSelectionComments
HardDisk2Password
PasswordStatus
Disabled
Enabled
Referto“Har ddiskpasswor ds”on
page38.
SecurityChipActive
Inactive
Disabled
IfyouselectActive,thesecurity
chipisfunctional.Ifyouselect
Inactive,theSecurityChipoption
isvisible,butthesecuritychip
isnotfunctional.Ifyouselect
Disabled,theSecurityChipoption
ishiddenandthesecuritychipis
notfunctional.
SecurityReporting
Options
Enableordisablethefollowing
SecurityReportingOptions:
BIOSROMStringReporting:
BIOSt extstring
CMOSReporting:CMOSdata
NVRAMReporting:Security
datastoredintheAssetID
SMBIOSReporting:SMBIOS
data
ClearSecurityChipEnterCleartheencryptionkey.
Note:Thisitemisdisplayedonly
ifyouhaveselectedActiveforthe
SecurityChipoption.
PhysicalPresencefor
Provisioning
Disabled
Enabled
Thisoptionenablesordisablesthe
conrmationmessagewhenyou
changethesettingsofthesecurity
chip.
SecurityChip
PhysicalPresencefor
Clear
Disabled
Enabled
Thisoptionenablesordisablesthe
conrmationmessagewhenyou
clearthesecuritychip.
FlashUEFIUpdatingby
End-Users
Disabled
Enabled
IfyouselectEnabled,allusers
canupdatetheUEFI.Ifyouselect
Disabled,onlythepersonwho
knowsthesupervisorpasswordcan
updatetheUEFIBIOS.
UEFIBIOSUpdateOption
SecureRollBack
Prevention
Disabled
Enabled
IfyouselectDisabled,youcanash
theolderversiontheUEFIBIOS.
MemoryP rotectionExecutionPr eventionDisabled
Enabled
Somecomputervirusesandworms
causememorybufferstooverow.
ByselectingEnabledyoucan
protectyourcomputeragainst
attacksbysuchvirusesandworms.
Ifyoundthatanapplication
programdoesnotruncorrectlyafter
choosingEnabled,selectDisabled
andresetthesetting.
Chapter7.Advancedconguration73