FINAL TRIM SIZE : 7.0 in x 8.5 in
C
Displaying and Setting the Secure Boot Mode
In Normal Mo de, there ma
y b e circumstances in whic
hyou would not wish to
allowanyone to attempt to bo ot y
our workstation from a device other than the
device you have sp ecied, nor to con
trol the system from any console other
than the one you have designated. This can b e an imp ortan
t consideration in
secure installations.
If you set up y
our system in suchaway that it is ph
ysically impossible for
unauthorized persons to disconnect it from its designated b o ot device, y
ou
can guarantee that the bo ot console user in
terface cannot b e used to bo ot
the system from an unauthorized device or to c
hange the console path. If the
secure b oot mode is set to on, the b o ot console in
terface cannot b e activated;
thus, you are assured that your system's security cannot b e compromised
through interaction with that interface.
Tocheck the status of the secure bo ot mo de, t
ype the following at the
BOOT_ADMIN>
prompt:
secure
4
Return
5
The status \
on
"or \
off
" is displayed.
Tochange the value of the secure bo ot mode, t
ype the following at the
BOOT_ADMIN>
prompt:
secure
state
4
Return
5
where
state
is \
on
"or \
off
".
Caution
Once the secure bo ot mo de is set to on, the only w
ay to turn it
o
is to disconnect the b oot device. When y
ou turn on your
workstation after isolating it from its b oot device, the bo ot
console interface reappears. You can then turn the secure bo ot
mo de o, turn
o
your workstation, reconnect the b o ot device,
and turn the system back on.
DRAFT
2/5/97 11:31
Using the Boot ROM C-13