Owners Manual
Option Description
• SHA - 256 (Default)
NOTE: Activation, deactivation, and clear options are not affected if you load the setup program's
default values. Changes to this option take effect immediately.
Computrace (R) Allows you to activate or disable the optional Computrace software The options are:
• Deactivate
• Disable
• Activate
NOTE: The Activate and Disable options will permanently activate or disable the feature and no
further changes will be allowed
Default setting: Deactivate
Chassis Intrusion This field controls the chassis intrusion feature. The options are:
• Disabled
• Enabled
Default setting: Disabled
OROM Keyboard
Access
Allows you to set an option to enter the Option ROM Configuration screens using hotkeys during boot. The
options are:
• Enabled
• One Time Enable
• Disabled
Default setting: Enable
Admin Setup
Lockout
Allows you to enable or disable the option to enter setup when an admin password is set.
• Enable Admin Setup Lockout - This option is disabled by default.
Master Password
Lockout
When enabled this option will disable master password support. Hard Disk passwords need to be cleared before
the setting can be changed.
• Enable Master Password Lockout
SMM Security
Mitigation
This option enables or disables additional UEFI SMM Security Mitigation protections.
• SMM Security Mitigation
Secure boot screen options
Option
Description
Secure Boot
Enable
This option enables or disables the Secure Boot feature.
• Disabled
• Enabled
Default setting: Enabled.
Secure Boot Mode Changes to the Secure Boot operation mode and modifies the behavior of Secure Boot to allow evaluation or
enforcement of UEFI driver signatures.
• Deployed Mode- This option is enabled by default
• Audit mode
Expert Key
Management
Allows you to manipulate the security key databases only if the system is in Custom Mode. The Enable Custom
Mode option is disabled by default. The options are:
• PK
• KEK
30 System setup