86
Chapter 4: BIOS
Enter Audit Mode
Enter Deployed Mode
Key Management
This submenu allows the user to congure the following Key Management settings.
Vendor Keys
Provision Factory Defaults
Install factory default Secure Boot keys after the platform reset and while the System is in
Setup mode. The default setting is Disabled.
Restore Factory Keys
Select and press Yes to restore factory default secure boot keys and key variables. Also,
it will reset the system to the User mode. Select Yes to install all default secure keys set
by the manufacturer. The options are Yes and No.
Reset To Setup Mode
Enroll E Image
This feature is to enroll SHA256 hash of the binary into the Authorized Signature Data-
base (DB) and to allow the image to run in the secure boot mode.
Export Secure Boot Variables
Use this feature to export NVRAM content of secure boot variables to les in a root folder
on a le system device.
Secure Boot Variable/Size/Key Numbers/Key Source
Platform Key (PK)
This feature allows the user to enter and congure a set of values to be used as platform
rmware keys for the system. The sizes, keys numbers, and key sources of the platform
keys will be indicated as well. Select Update to update the platform key. Select Yes to
load a factory default PK or No to load from a le on an external media.