Lenovo X1 Tablet User Manual


 
Table 6. Security menu items (continued)
Menu item
Submenu item Selection Comments
NVRAM Reporting:
Security data stored in
the Asset ID
SMBIOS Reporting:
SMBIOS data
Clear Security Chip
Enter
Clear the encryption key.
Note: Only if you select
Active for the security chip,
this item will be displayed.
Intel TXT Feature Disabled
Enabled
Enable or disable Intel
Trusted Execution
Technology.
Physical Presence for
Provisioning
Disabled
Enabled
This option enables or
disables the conrmation
message when you change
the settings of the security
chip.
Physical Presence for Clear
Disabled
Enabled
This option enable or
disables the conrmation
message when you clear
the security chip.
Flash BIOS Updating by
End-Users (Windows 7)
Flash Firmware Updating
by End-Users
Disabled
Enabled
If you select Enabled,
all users can update the
UEFI BIOS. If you select
Disabled, only the person
who knows the supervisor
password can update the
UEFI BIOS.
UEFI BIOS Update Option
or UEFI Firmware Update
Option
Secure RollBack Prevention
Disabled
Enabled
If you select Enabled, you
can choose to ash to the
previous version of the
UEFI BIOS
Memory Protection Execution Prevention Disabled
Enabled
Some computer viruses
and worms cause memory
buffers to overow by
running code where only
data is allowed. If the
Data Execution Prevention
feature can be used with
your operating system, then
by selecting Enabled you
can protect your computer
against attacks by such
viruses and worms. If after
choosing Enabled you
nd that an program does
not run correctly, select
Disabled and reset the
setting.
Chapter 6. Advanced conguration 79