HP ProDesk 400 G5 Maintenance and Service Guide - Page 56

Computer Setup F10 Utility

Page 56 highlights

Table 5-2 Computer Setup-Security (continued) Option Description ● SPM Current State (Not provisoned/Provisioned) ● Unprovision SPM Physical Presence Interface. Notifies the user upon system power up when changes are made to system security policy. The user must agree to the changes to confirm them. Default is enabled. Smart Cover ● Cover Lock. Default is 'Unlock'. ● Cover Removal Sensor. Lets you disable the cover sensor or configure what action is taken if the computer cover was removed. Default is 'Disabled'. NOTE: Notify user alerts the user with a POST error on the first boot after the sensor detects removal of the cover. If the password is set, Administrator Password requires that the password be entered to boot the computer if the sensor detects that the cover has been removed. ● Trusted Execution Technology (TXT) Enabling this feature disables OS management of Embedded Security Device, prevents a reset of the Embedded Security Device, and prevents the configuration of VTx, VTd, and Embedded Security Device. ● Intel Software Guard Extensions (SGX) SGX protects select code and data from disclosure or modification. Utilities Hard Drive Utilities ● Save/Restore MBR of the system hard drive is only available with drives that have a Master Boot Record NOTE: Windows 10 systems are generally not formatted to include an MBR. Instead they use GUID Partition Table (GPT) format, which better supports large hard drives. Enabling this feature will save the Master Boot Record (MBR) of the system hard drive. If the MBR gets changed, the user will be prompted to restore the MBR. Default is disabled. The MBR contains information needed to successfully boot from a disk and to access the data stored on the disk. Master Boot Record Security may prevent unintentional or malicious changes to the MBR, such as those caused by some viruses or by the incorrect use of certain disk utilities. It also allows you to recover the "last known good" MBR, should changes to the MBR be detected when the system is restarted. NOTE: Most operating systems control access to the MBR of the current bootable disk; the BIOS cannot prevent changes that may occur while the operating system is running. Restores the backup Master Boot Record to the current bootable disk. Default is disabled. Only appears if all of the following conditions are true: - MBR security is enabled - A backup copy of the MBR has been previously saved - The current bootable disk is the same disk from which the backup copy was saved CAUTION: Restoring a previously saved MBR after a disk utility or operating system has modified the MBR, may cause the data on the disk to become inaccessible. Only restore a previously saved MBR if you are confident that the current bootable disk's MBR has been corrupted or infected with a virus. ● Save/Restore GPT of System Hard Drive Enabling this feature will save the GUID Partition Table (GPT) of the system hard drive. If the GPT is subsequently changed, the user is prompted to choose whether to restore GPT. ● Boot Sector (MBR/GPT) Recovery Policy Options include: 48 Chapter 5 Computer Setup (F10) Utility

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113

Table 5-2
Computer Setup—Security (continued)
Option
Description
SPM Current State
(Not provisoned/Provisioned)
Unprovision SPM
Physical Presence Interface
.
Notifies
the user upon system power up when changes are made to system
security policy. The user must agree to the changes to
confirm
them. Default is enabled.
Smart Cover
Cover Lock
. Default is ‘Unlock’.
Cover Removal Sensor
. Lets you disable the cover sensor or
configure
what action is taken if the
computer cover was removed. Default is ‘Disabled’.
NOTE:
Notify user
alerts the user with a POST error on the
first
boot after the sensor detects
removal of the cover. If the password is set,
Administrator Password
requires that the password be
entered to boot the computer if the sensor detects that the cover has been removed.
Trusted Execution Technology (TXT)
Enabling this feature disables OS management of Embedded Security Device, prevents a reset of the
Embedded Security Device, and prevents the
configuration
of VTx, VTd, and Embedded Security
Device.
Intel Software Guard Extensions (SGX)
SGX protects select code and data from disclosure or
modification.
Utilities
Hard Drive Utilities
Save/Restore MBR of the system hard drive is only available with drives that have a Master Boot
Record
NOTE:
Windows 10 systems are generally not formatted to include an MBR. Instead they use GUID
Partition Table (GPT) format, which better supports large hard drives.
Enabling this feature will save the Master Boot Record (MBR) of the system hard drive. If the MBR
gets changed, the user will be prompted to restore the MBR. Default is disabled.
The MBR contains information needed to successfully boot from a disk and to access the data stored
on the disk. Master Boot Record Security may prevent unintentional or malicious changes to the
MBR, such as those caused by some viruses or by the incorrect use of certain disk utilities. It also
allows you to recover the "last known good" MBR, should changes to the MBR be detected when the
system is restarted.
NOTE:
Most operating systems control access to the MBR of the current bootable disk; the BIOS
cannot prevent changes that may occur while the operating system is running.
Restores the backup Master Boot Record to the current bootable disk. Default is disabled.
Only appears if all of the following conditions are true:
MBR security is enabled
A backup copy of the MBR has been previously saved
The current bootable disk is the same disk from which the backup copy was saved
CAUTION:
Restoring a previously saved MBR after a disk utility or operating system has
modified
the MBR, may cause the data on the disk to become inaccessible. Only restore a previously saved
MBR if you are
confident
that the current bootable disk's MBR has been corrupted or infected with a
virus.
Save/Restore GPT of System Hard Drive
Enabling this feature will save the GUID Partition Table (GPT) of the system hard drive. If the GPT is
subsequently changed, the user is prompted to choose whether to restore GPT.
Boot Sector (MBR/GPT) Recovery Policy
Options include:
48
Chapter 5
Computer Setup (F10) Utility