Chapter 4: BIOS
71
Security Device Support
If this feature and the TPM jumper on the motherboard are both set to Enabled, onboard
security devices will be enabled for TPM support to enhance data integrity and network
security. Please reboot the system for a change on this setting to take effect. The options
are Disable and Enable.
• Active PCR Bank
• Available PCR Bank
*If the feature "Security Device Support" is enabled, the following features are available
for conguration:
SHA-1 PCR Bank (Available if Security Device Support is Enabled and Save & Exit
and if a TPM 2.0 module is detected)
Use this feature to disable or enable the SHA-1 Platform Conguration Register (PCR) bank
for the installed TPM device. The options are Disabled and Enabled.
SHA256 PCR Bank (Available if Security Device Support is Enabled and Save & Exit
and if a TPM 2.0 module is detected)
Use this feature to disable or enable the SHA256 Platform Conguration Register (PCR) bank
for the installed TPM device. The options are Disabled and Enabled.
TPM State
This feature changes the TPM State. The options are Disabled and Enabled. Select an
option and restart the system to change the TPM State. This feature is available if a TPM
2.0 module is detected.
Pending Operation
Use this feature to schedule a TPM-related operation to be performed by a security device
for system data integrity. Your system will reboot to carry out a pending TPM operation. The
options are None and TPM Clear.
Platform Hierarchy
Use this feature to disable or enable platform hierarchy for platform protection. The options
are Disabled and Enabled.
Storage Hierarchy
Use this feature to disable or enable storage hierarchy for cryptographic protection. The
options are Disabled and Enabled.
Endorsement Hierarchy
Use this feature to disable or enable endorsement hierarchy for privacy control. The options
are Disabled and Enabled.