Description: If this option is enabled, a confirmation message is displayed when you clear the security
chip.
UEFI BIOS Update Option
•
Flash BIOS Updating by End-Users
Values: Disabled,
Enabled
Description: When this option is enabled, all users can update the UEFI BIOS. If you disable this option,
only the person who knows the supervisor password can update the UEFI BIOS.
•
Secure RollBack Prevention
Values:
Disabled
, Enabled
Description: When this option is disabled, you can flash the UEFI BIOS to earlier version.
Note:
This item is set as
Disabled
by default when the
OS Optimized Defaults
on the
Restart
menu is
set as
Disabled
. This item is set as
Enabled
by default when the
OS Optimized Defaults
is set as
Enabled
.
•
Windows UEFI Firmware Update
Values:
Enabled
, Disabled
Description: Enable or disable the Windows UEFI Firmware Update feature. Select
Enabled
to allow
Windows UEFI Firmware Update. If you select Disabled, BIOS will skip Windows UEFI Firmware Update.
Memory Protection
•
Execution Prevention
Values: Disabled,
Enabled
Description: Some computer viruses and worms cause memory buffers to overflow. By enabling this
option, you can protect your computer against attacks from such viruses and worms. If the option is
enabled but you find that a program does not run properly, disable this option first and then reset the
settings.
Virtualization
•
Intel(R) Virtualization Technology
Values:
Disabled
, Enabled
Description: If this option is enabled, a Virtual Machine Monitor (VMM) can utilize the additional hardware
capabilities provided by Intel Virtualization Technology. This setting should be set to
Disabled
to prevent
security risks if operating system does not support a VMM.
Note:
This item is set as
Disabled
by default when the
OS Optimized Defaults
on the Restart menu is
set as
Disabled
. This item is set as
Enabled
by default when the
OS Optimized Defaults
is set as
Enabled
.
•
Intel(R) VT-d Feature
Values:
Disabled
, Enabled
Description: Intel VT-d stands for Intel Virtualization Technology for Directed I/O. When enabled, a VMM
can utilize the platform infrastructure for I/O virtualization. This setting should be set to
Disabled
to
prevent security risks if the operating system does not support a VMM.
Note:
This item is set as
Disabled
by default when the
OS Optimized Defaults
on the Restart menu is
set as
Disabled
. This item is set as
Enabled
by default when the
OS Optimized Defaults
is set as
Enabled
.
69
Summary of Contents for ThinkPad P52
Page 1: ...P52 User Guide ...
Page 5: ...Appendix F Notices 147 Appendix G Trademarks 149 Copyright Lenovo 2019 iii ...
Page 6: ...iv P52 User Guide ...
Page 26: ...8 P52 User Guide ...
Page 34: ...16 P52 User Guide ...
Page 66: ...48 P52 User Guide ...
Page 74: ...56 P52 User Guide ...
Page 114: ...96 P52 User Guide ...
Page 142: ...124 P52 User Guide ...
Page 146: ...128 P52 User Guide ...
Page 148: ...130 P52 User Guide ...
Page 154: ...136 P52 User Guide ...
Page 160: ...142 P52 User Guide ...
Page 162: ...144 P52 User Guide ...
Page 168: ...150 P52 User Guide ...
Page 169: ......
Page 170: ......