Chapter 6: BIOS
93
Password Check
Select Setup for the system to check for a password at Setup. Select Always for the system
to check for a password at bootup or upon entering the BIOS Setup utility. The options are
Setup
and Always.
Secure Boot
System Mode
Vendor Keys
Secure Boot Enable
Select Enable for secure boot support to ensure system security at bootup. The options
are
Disabled
and Enabled.
Secure Boot Mode
This feature allows the user to select the desired secure boot mode for the system. The
options are Standard and
Custom
.
*If Secure Boot Mode is set to Customized, Key Management features are available
for configuration:
CSM Support
This feature is for manufacturing debugging purposes.
Key Management
This submenu allows the user to configure the following Key Management settings.
Factory Key Provision
Select Enabled to install the default Secure Boot keys set by the manufacturer. The options
are
Disabled
and Enabled.
*If the feature above is set to Enabled, the next four features are available for
configuration:
Restore Factory Keys
Select Yes to restore all factory keys to the default settings. The options are Yes and No.
Reset to Setup Mode
Select Yes to delete all Secure Boot key databases and force the system to Setup Mode.
The options are Yes and No.
Export Secure Boot variables
Use this feature to copy the NVRAM contents of the secure boot variables to a file.