Admin Password
|
Allows you to set, change, or delete the administrator(admin) password.
The entries to set password are:
- Enter the old password:
- Enter the new password:
- Confirm new password:
Click
OK once you set the password.
NOTE: For the first time login, "Enter the old password:" field is marked to "Not set". Hence, password has to be set for the first time you log in and then you can change or delete the password.
|
System Password
|
Allows you to set, change, or delete the System password.
The entries to set password are:
- Enter the old password:
- Enter the new password:
- Confirm new password:
Click
OK once you set the password.
NOTE: For the first time login, "Enter the old password:" field is marked to "Not set". Hence, password has to be set for the first time you log in and then you can change or delete the password.
|
Strong Password
|
Allows you to enforce the option to always set strong password.
This option is not set by default.
|
Password Configuration
|
You can define the length of your password. Min = 4, Max = 32
|
Password Bypass
|
Allows you to bypass the System password and the Internal HDD password, when it is set, during a system restart.
Click one of the options:
- Disabled—Default
- Reboot bypass
|
Password Change
|
Allows you to change the System password when the administrator password is set.
- Allow Non-Admin Password Changes
This option is set by default.
|
UEFI Capsule Firmware Updates
|
Allows you to update the system BIOS via UEFI capsule update packages.
- Enable UEFI Capsule Firmware Updates
This option is set by default.
|
HDD Security
|
This options controls the mechanism used by BIOS to block external Self Encrypting Drives (SED) management software to take ownership of the SED. The options are:
- SED Block SID Authentication
- PPI Bypass for SED Block SID Command
Both the options are disabled by default.
NOTE: This option is applicable with laptops shipped with SED
|
TPM 2.0 Security
|
Allows you to enable or disable the Trusted Platform Module (TPM) during POST.
The options are:
- TPM On—Default
- Clear
- PPI Bypass for Enable Command—Default
- PPI Bypass for Disbale Command
- PPI Bypass for Clear Command
- Attestation Enable—Default
- Key Storage Enable—Default
- SHA-256—Default
|
Absolute®
|
This field lets you Enable, Disable, or Permanently Disable the BIOS module interface of the optional Absolute Persistence Module service from Absolute® Software. This option is enabled by default.
|
OROM Keyboard Access
|
This option determines whether users are able to enter Option ROM Configuration screens via hotkey during boot. Specifically this settings is capable of preventing access to Intel® RAID(Ctrl+I) or Intel® Management Engine BIOS Extension (Ctrl+P/F12).
Options are:
- Enable— Default
- One Time Enable
- Disable
|
Admin Setup Lockout
|
Allows you to prevent users from entering Setup when an administrator password is set.
- Enable Admin Setup Lockout
This option is not set by default.
|
Master Password Lockout
|
Allows you to disable master password support.
- Enable Master Password Lockout
This option is not set by default.
NOTE: Hard Disk password should be cleared before the settings can be changed.
|
SMM Security Mitigation
|
Allows you to enable or disable additional UEFI SMM Security Mitigation protection.
This option is not set by default.
|