•SecurityChip(forTPM1.2)
Values:Active,Inactive,Disabled
Descriptions:IfyouselectActive,thesecuritychipisfunctional.IfyouselectInactive,theSecurity
Chipisvisible,butnotfunctional.IfyouselectDisabled,theSecurityChipishiddenandthesecurity
chipisnotfunctional.
•SecurityReportingOptions
Values:Enabled,Disabled
Descriptions:ThisoptionallowsyoutoenableordisableSecurityReportingOptions.Ifitisenabled,
changestocorrespondingUEFIBIOSdataareloggedinalocation,(PCR1,definedintheTCGstandards),
whichotherauthorizedprogramscanmonitor,readandanalyze.
Note:ThisitemisdisplayedonlyifyouhaveselectedEnabledfortheSecurityChipoption.
•ClearSecurityChip
Descriptions:Usethisoptiontocleartheencryptionkey.Itwillnotbepossibletoaccess
already-encrypteddataafterthesekeysarecleared.
Note:ThisitemisdisplayedonlyifyouhaveselectedEnabledfortheSecurityChipoption.
•Intel(R)TXTFeature
Values:Disabled,Enabled
Descriptions:EnableordisabletheIntelTrustedExecutionTechnology.
Note:ThisitemisdisplayedonlyifyouhaveselectedEnabledfortheSecurityChipoption.
•PhysicalPresenceforProvisioning
Values:Disabled,Enabled
Descriptions:Ifthisoptionisenabled,aconfirmationmessageisdisplayedwhenyouchangethe
settingofthesecuritychip.
Note:ThisitemisnotdisplayedontheTPM1.2supportmodel.
•PhysicalPresenceforClear
Values:Disabled,Enabled
Descriptions:Ifthisoptionisenabled,aconfirmationmessageisdisplayedwhenyouclearthesecurity
chip.
UEFIBIOSUpdateOption
•FlashBIOSUpdatingbyEnd-Users
Values:Disabled,Enabled
Descriptions:Whenthisoptionisenabled,alluserscanupdatetheUEFIBIOS.Ifyoudisablethisoption,
thesupervisorpasswordwillberequiredtoupdatetheUEFIBIOS.
•SecureRollBackPrevention
Values:Disabled,Enabled
Descriptions:Whenthisoptionisdisabled,youcanflashtheUEFIBIOStoearlierversion.
•WindowsUEFIFirmwareUpdate
Values:Disabled,Enabled
Descriptions:ThisoptionenablesordisablesWindowsUEFIFirmwareUpdatefeature.Whenthis
optionisenabled,WindowsUEFIfirmwareupdateisallowed.
Chapter6.Advancedconfiguration79