b) Log into the BIOS Setup utility with your BIOS Administrator password.
c) Choose the
Advanced
tab.
d) Choose
Trusted Computing
to open the TPM Security Device Configuration window.
e) Verify that TPM SUPPORT and TPM State are Enabled.
Step 3
Continue with
Enabling the Intel TXT Feature in the BIOS, on page 59
.
Enabling the Intel TXT Feature in the BIOS
Intel Trusted Execution Technology (TXT) provides greater protection for information that is used and stored
on the business server. A key aspect of that protection is the provision of an isolated execution environment
and associated sections of memory where operations can be conducted on sensitive data, invisibly to the rest
of the system. Intel TXT provides for a sealed portion of storage where sensitive data such as encryption keys
can be kept, helping to shield them from being compromised during an attack by malicious code.
Step 1
Reboot the server and watch for the prompt to press F2.
Step 2
When prompted, press
F2
to enter the BIOS Setup utility.
Step 3
Verify that the prerequisite BIOS values are enabled:
a) Choose the
Advanced
tab.
b) Choose
Intel TXT(LT-SX) Configuration
to open the Intel TXT(LT-SX) Hardware Support window.
c) Verify that the following items are listed as Enabled:
• VT-d Support (default is Enabled)
• VT Support (default is Enabled)
• TPM Support
• TPM State
d) Do one of the following:
• If VT-d Support and VT Support are already enabled, skip to step 4.
• If VT-d Support and VT Support are not enabled, continue with the next steps to enable them.
e) Press
Escape
to return to the BIOS Setup utility
Advanced
tab.
f)
On the Advanced tab, choose
Processor Configuration
to open the Processor Configuration window.
g) Set Intel (R) VT and Intel (R) VT-d to
Enabled
.
Step 4
Enable the Intel Trusted Execution Technology (TXT) feature:
a) Return to the Intel TXT(LT-SX) Hardware Support window if you are not already there.
b) Set TXT Support to
Enabled
.
Step 5
Press
F10
to save your changes and exit the BIOS Setup utility.
Maintaining the Server
59
Maintaining the Server
Enabling the Intel TXT Feature in the BIOS