Enabling the TPM in the BIOS
After hardware installation, you must enable TPM support in the BIOS.
Step 1
Enable TPM Support:
a) Watch during bootup for the F2 prompt, and then press F2 to enter BIOS setup.
b) Log in to the BIOS Setup Utility with your BIOS Administrator password.
c) On the BIOS Setup Utility window, choose the Advanced tab.
d) Choose Trusted Computing to open the TPM Security Device Configuration window.
e) Change TPM SUPPORT to Enabled.
f) Press F10 to save your settings and reboot the server.
Step 2
Verify that TPM support is now enabled:
a) Watch during bootup for the F2 prompt, and then press F2 to enter BIOS setup.
b) Log into the BIOS Setup utility with your BIOS Administrator password.
c) Choose the Advanced tab.
d) Choose Trusted Computing to open the TPM Security Device Configuration window.
e) Verify that TPM SUPPORT and TPM State are Enabled.
Step 3
Continue with Enabling the Intel TXT Feature in the BIOS, on page 111.
Enabling the Intel TXT Feature in the BIOS
Intel Trusted Execution Technology (TXT) provides greater protection for information that is used and stored
on the business server. A key aspect of that protection is the provision of an isolated execution environment
and associated sections of memory where operations can be conducted on sensitive data, invisibly to the rest
of the system. Intel TXT provides for a sealed portion of storage where sensitive data such as encryption keys
can be kept, helping to shield them from being compromised during an attack by malicious code.
Step 1
Reboot the server and watch for the prompt to press F2.
Step 2
When prompted, press F2 to enter the BIOS Setup utility.
Step 3
Verify that the prerequisite BIOS values are enabled:
a) Choose the Advanced tab.
b) Choose Intel TXT(LT-SX) Configuration to open the Intel TXT(LT-SX) Hardware Support window.
c) Verify that the following items are listed as Enabled:
•
VT-d Support (default is Enabled)
•
VT Support (default is Enabled)
•
TPM Support
•
TPM State
d) Do one of the following:
Cisco UCS C240 M5 Server Installation and Service Guide
111
Maintaining the Server
Installing a Trusted Platform Module (TPM)