Option Description
NOTE: Successful password changes take effect immediately.
Default setting: Not set
System Password Allows you to set, change, or delete the system password.
NOTE: Successful password changes take effect immediately.
Default setting: Not set
Internal HDD-0
Password
Allows you to set, change, or delete the password on the system's internal hard-disk drive.
NOTE: Successful password changes take effect immediately.
Default Setting: Not set
Internal HDD-1
Password
Allows you to set, change, or delete the password on the system's internal hard-disk drive.
NOTE: Successful password changes take effect immediately.
Default Setting: Not set
Internal HDD-3
Password
Allows you to set, change, or delete the password on the system's internal hard-disk drive.
NOTE: Successful password changes take effect immediately.
Default Setting: Not set
Password Change Allows you to enable the disable permission to the System and Hard Drive passwords when the admin password is
set.
Default setting: Allow Non-Admin Password Changes is selected.
UEFI Capsule
Firmware Update
This option controls whether the system allows the BIOS updates through UEFI capsule update packages. This
option is enabled by default.
TPM 2.0 Security Allows you to enable the Trusted Platform Module (TPM) during POST. The options are:
• TPM On (enabled by default)
• Clear
• PPI Bypass for Enabled Commands
• PPI Bypass for Disabled Commands
• PPI Bypass for Clear Command
• Attestation Enable (enabled by default)
• Key Storage Enable (enabled by default)
• SHA-256 (enabled by default)
• Disabled
• Enabled (enabled by default)
PTT Security Allows you to enable the Platform Trust Technology feature (PTT). The option is:
• PTT On (not enabled)
Absolute(R) Allows you to activate or disable the optional Computrace software The options are:
• Deactivate
• Disable
• Permanently Disabled
NOTE: The Activate and Disable options will permanently activate or disable the feature and no
further changes are allowed
Default setting: Deactivate
Master Password
Lockout
The option Enable Master Password Lockout is not selected by default.
SMM Security
Mitigation
Allows you to enable or disable the additional UEFI SMM Security Mitigation protections.
58 System setup