Table 10. System setup options—Security menu (continued)
Security
SHA-256 Enable or disable SHA-256.
Default: OFF
Clear Enable or disable the Intel Platform Trust Technology (PPT) owner
information. When enabled, this setting will reset the PPT to its default state.
Changes to this setting take effect after exiting the BIOS setup menu.
Default: OFF
PPI ByPass for Clear Commands Enable or disable the TPM Physical Presence Interface (PPI). When enabled,
this setting will allow the OS to skip BIOS PPI user prompts when issuing the
Clear command. Changes to this setting take effect immediately.
Default: OFF
SMM Security Mitigation
SMM Security Mitigation Enable or disable additional SMM Security Mitigation protection. The operating
system makes use of this feature to protect the secure environment crated by
virtualization-based security.
Default: OFF
Data Wipe on Next Boot
Start Data Wipe Enable or disable data wipe cycle. If enabled, the BIOS will schedule a data
wipe cycle for storage device(s) connected to the motherboard on the next
reboot. Any data on the storage device(s) cannot be recovered after this
Secure Wipe Operation.
Default: OFF
Absolute® Enable or disable the BIOS module interface of the optional Absolute
Persistence Module service from Absolute® Software.
Default: Enable Absolute
UEFI Boot Path Security
UEFI Boot Path Security Configures whether the computer will prompt the user for the admin password
(if set) when booting to a UEFI boot path device from the F12 boot menu.
Default: Always Except Internal HDD is selected
Admin Password Set, change, or delete the administrator password.
System Password Set, change, or delete the system password.
Internal HDD-0 Password Set, change, or delete the internal hard-disk drive password.
Password Configuration Control the minimum and maximum number of characters allowed for Admin
and System passwords.
Password Change Enable or disable changes to the System and Hard Disk passwords when an
administrator password is set.
UEFI Capsule Firmware Updates Enable or disable BIOS updates through UEFI capsule update packages.
PTT Security
PTT On Enable or disable Platform Trust Technology (PTT) visibility to the operating
system.
Clear Default: Disabled
PPI ByPass for Clear Commands Enable or disable the TPM Physical Presence Interface (PPI). When enabled,
this setting will allow the OS to skip BIOS PPI user prompts when issuing the
Clear command. Changes to this setting take effect immediately.
Default: Disabled
62 BIOS setup