NEC Express5800 Series Maintenance Manual page 107

Hide thumbs Also See for Express5800 Series:
Table of Contents

Advertisement

Chapter 2 Useful Features
(a) Secure Boot Settings Menu
When you select System Configuration > BIOS/Platform Configuration (RBSU) > Server Security > Secure
Boot Settings from the System Utilities, the Secure Boot Settings menu appears.
For details about the options, see the table below.
Option
Current Secure Boot State
Attempt Secure Boot
Advance Secure Boot
Options
Advance Secure Boot Options Menu
①.
When you select System Configuration > BIOS/Platform Configuration (RBSU) > Server Security > Secure
Boot Settings > Advance Secure Boot Options from the System Utilities, the Secure Boot Settings menu
appears.
For details about the options, see the table below.
Option
PK - Platform Key
KEK - Key Exchange Key
DB - Allowed Signatures
Database
DBX - Forbidden
Signatures Database
DBT - Timestamp
Signatures Database
Delete all keys
Export all keys
Reset all keys to platform
defaults
Parameter
(Display only)
Enabled
[Disabled]
-
Tips
To enable Secure Boot, it is recommended that you set Admin Password.
To make the option card recognizable as a bootable device when Secure
Boot has been enabled, you need to have an option card UEFI driver that has
been signed with the Microsoft key.
Parameter
-
-
-
-
-
-
-
-
Express5800/R120h-1E, R120h-2E Maintenance Guide
Description
This option shows whether Secure Boot is currently
enabled or disabled.
Enable/Disable the Secure Boot feature after
platform reset.
Use this option to configure Advanced Secure Boot
options, such as Platform Key (PK) Options, Key
Exchange (KEK) Options, Allowed Signatures
Database (DB), and Forbidden Signatures Database
(DBX) Options.
[
Description
Select this option to display the Platform Key (PK)
Options menu. Use this menu to enroll or delete the PK
certificate. The file must be in DER-encoded
certificate format.
Select this option to display the Key Exchange Key
(KEK) Options menu. Use this menu to enroll, delete,
view or export the KEK certificates. The file must be in
DER-encoded certificate format.
Select this option to display the Allowed Signatures
(DB) Options menu. Use this menu to enroll, delete,
view or export the DB signatures.
Select this option to display the Forbidden Signatures
(DBX) Options menu. Use this menu to enroll, delete,
view or export the DBX signatures.
Select this option to display the Secure Boot
Timestamps Signatures Database (DBT) Options
menu. Use this menu to enroll, delete, view or export
the DBT signatures.
Deletes all the keys, i.e. PK, KEK, DB, and DBX.
Use this option to export all keys to files.
Reinitializes all the keys to the platform defaults.
1. System Utilities
]: Default setting
107

Advertisement

Table of Contents
loading

This manual is also suitable for:

Express5800/r120h-1eExpress5800/r120h-2eExp336Exp337

Table of Contents