Table 3-4 Computer Setup—Security (continued)
Option Description
System Security
(some models: these
options are hardware
dependent)
Data Execution Prevention (some models) (enable/disable) Helps prevent operating system
security breaches.
Virtualization Technology (some models) (enable/disable) Controls the virtualization features of
the processor. Changing this setting requires turning the computer off and then back on.
Embedded Security Device Support (some models) (enable/disable) Permits activation and
deactivation of the Embedded Security Device. Changing this setting requires turning the
computer off and then back on.
NOTE: To configure the Embedded Security Device, a Setup password must be set.
Reset to Factory Settings (some models) (Do not reset/Reset) Resetting to factory defaults will
erase all security keys. Changing this setting requires turning the computer off and then back on.
CAUTION: The embedded security device is a critical component of many security schemes.
Erasing the security keys will prevent access to data protected by the Embedded Security Device.
Choosing Reset to Factory Settings may result in significant data loss.
OS management of Embedded Security Device (some models) (enable/disable) This option
allows the user to limit operating system control of the Embedded Security Device. Changing this
setting requires turning the computer off and then back on. This option allows the user to limit OS
control of the Embedded Security Device.
Reset of Embedded Security Device through OS (some models) (enable/disable) This option
allows the user to limit the operating system ability to request a Reset to Factory Settings of the
Embedded Security Device. Changing this setting requires turning the computer off and then back
on.
NOTE: To enable this option, a Setup password must be set.
Master Boot Record
Security
Allows you to disable/enable Master Boot Record Security.
●
Save Master Boot Record – This option will appear if Master Boot Record Security is
enabled. It allows you to save a copy of the Master Boot Record into non-volatile storage.
●
Restore Master Boot Record – This option will appear on the next boot once the Master Boot
Record has been saved. It allows you to restore the saved copy back to the hard drive’s
Master Boot Record.
Setup Security Level Provides a method to allow end-users limited access to change specified setup options, without
having to know the Setup Password.
This feature allows the administrator the flexibility to protect changes to essential setup options,
while allowing the user to view system settings and configure nonessential options. The
administrator specifies access rights to individual setup options on a case-by-case basis via the
Setup Security Level menu. By default, all setup options are assigned Setup Password, indicating
the user must enter the correct Setup Password during POST to make changes to any of the
options. The administrator may set individual items to None, indicating the user can make
changes to the specified options when setup has been accessed with invalid passwords. The
choice, None, is replaced by Power-On Password if a Power-On Password is enabled.
NOTE: Setup Browse Mode must be set to Enable in order for the user to enter Setup without
knowing the setup password.
Computer Setup (F10) Utilities
15