Note:TheharddiskdriveorhybriddrivebuiltintoyourcomputercanbeprotectedbyUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,besuretousedriveencryptionsoftware,such
asWindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureoftheWindows7andWindows8.1
operatingsystems.ItissupportedintheUltimateandEnterpriseeditionsoftheWindows7,Professional
andEnterpriseeditionsoftheWindows8.1operatingsystem.Itcanhelpyouprotecttheoperatingsystem
anddatastoredonyourcomputer,evenifyourcomputerislostorstolen.BitLockerworksbyencryptingall
userandsystemfiles,includingtheswapandhibernationfiles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdefinedasaV1.2TPM.
TochecktheBitLockerstatus,gotoControlPanel,andclickSystemandSecurity➙BitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdrive,Encryptionsolid-statedrive,andDiskEncryptionhybriddrive
SomemodelscontaintheDiskEncryptionharddiskdrive,theEncryptionsolid-statedrive,ortheDisk
Encryptionhybriddrive.Thisfeaturehelpstoprotectyourcomputeragainstsecurityattacksonmedia,
NANDflashordevicecontrollersbyuseofahardwareencryptionchip.Fortheefficientuseoftheencryption
feature,besuretosetaharddiskpasswordfortheinternalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransferconfidentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
•Protectyourdataandsystem
•Strengthenaccesscontrols
•Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
•SecurityChip:Activate,inactivate,ordisablethesecuritychip.
•SecurityReportingOptions:Enableordisableeachsecurityreportingoption.
•ClearSecurityChip:Cleartheencryptionkey.
Beforeyoustart,printtheseinstructions.
TosetanitemontheSecurityChipsubmenu,dothefollowing:
1.Turnoffyourcomputer.Waitforaboutfiveseconds,andthenturnonthecomputeragain.
2.Whenthelogoscreenisdisplayed,pressF1tostarttheThinkPadSetupprogram.
3.SelectSecurity➙SecurityChipbyusingthedirectionalkeys.
58UserGuide