Set the TPM version
To be able to set the TPM version, Physical Presence must be asserted.
The Lenovo XClarity Provisioning Manager or the Lenovo XClarity Essentials OneCLI can be used to set the
TPM version.
To set the TPM version:
1. Download and install Lenovo XClarity Essentials OneCLI.
a. Go to
http://datacentersupport.lenovo.com
and navigate to the support page for your server.
b. Click
Drivers & Software
.
c. Navigate to the version of Lenovo XClarity Essentials OneCLI for your operating system and
download the package.
2. Run the following command to set the TPM version:
Note:
You can change the TPM version from 1.2 to 2.0 and back again. However, you can toggle
between versions a maximum of 128 times.
To set the TPM version to version 2.0:
OneCli.exe config set TrustedComputingGroup.DeviceOperation "Update to TPM2.0 compliant"
--bmc
userid:password
@
ip_address
To set the TPM version to version 1.2:
OneCli.exe config set TrustedComputingGroup.DeviceOperation "Update to TPM1.2 compliant"
--bmc
userid:password
@
ip_address
where:
•
<userid>:<password>
are the credentials used to access the BMC (Lenovo XClarity Controller
interface) of your server. The default user ID is USERID, and the default password is PASSW0RD
(zero, not an uppercase o)
•
<ip_address>
is the IP address of the BMC.
For more information about the Lenovo XClarity Essentials OneCLI sseett command, see:
http://sysmgt.lenovofiles.com/help/topic/toolsctr_cli_lenovo/onecli_r_set_command.html
3. Alternatively, you can use the following Advanced Settings Utility (ASU) commands:
To set the TPM version to version 2.0:
asu64 set TPMVersion.TPMVersion "Update to TPM2.0 compliant" --host
<ip_address>
--user
<userid>
--password
<password>
--override
To set the TPM version to version 1.2:
asu64 set TPMVersion.TPMVersion "Update to TPM1.2 compliant" --host
<ip_address>
--user
<userid>
--password
<password>
--override
where:
•
<userid>
and
<password>
are the credentials used to the BMC (Lenovo XClarity Controller interface)
of your server. The default user ID is USERID, and the default password is PASSW0RD (zero, not an
uppercase o)
•
<ip_address>
is the IP address of the BMC.
Enable UEFI Secure Boot
Optionally, you can enable UEFI Secure Boot.
There are two methods available to enable UEFI Secure Boot:
Appendix B. Component reference
341
Summary of Contents for ThinkSystem SR950
Page 1: ...ThinkSystem SR950 Setup Guide Machine Types 7X12 7X11 and 7X13 ...
Page 55: ...Figure 22 Server components Chapter 2 Server components 51 ...
Page 276: ...272 ThinkSystem SR950 Setup Guide ...
Page 282: ...278 ThinkSystem SR950 Setup Guide ...
Page 286: ...282 ThinkSystem SR950 Setup Guide ...
Page 389: ......
Page 390: ......