•ToprovidereliablesecurityfortheUEFIBIOS,usethesecuritychipandasecurityapplicationwitha
TrustedPlatformModulemanagementfeature.Referto“Settingthesecuritychip”onpage68
.
Note:Dependingonthemodel,yourcomputermightsupporttheTPMmanagementfeature
•IfaDiskEncryptionharddiskdriveandEncryptionsolid-statedriveisinstalledinyourcomputer,besure
toprotectthecontentsofyourcomputermemoryfromunauthorizedaccessesbyuseofdriveencryption
software,suchasMicrosoftWindowsBitLocker
®
DriveEncryption,whichissupportedintheUltimate
andEnterpriseeditionsoftheWindows7andWindows8.1operatingsystems.See“UsingWindows
BitLockerDriveEncryption”onpage68
.
•Beforeyoudisposeof,sell,orhandoveryourcomputer,deletedatastoredonit.Formoreinformation,
referto“Noticeondeletingdatafromyourharddiskdriveorsolid-statedrive”onpage72.
TheharddiskdrivebuiltintoyourcomputercanbeprotectedbytheUEFIBIOS.
UsingWindowsBitLockerDriveEncryption
Tohelpprotectyourcomputeragainstunauthorizedaccess,usethedriveencryptionsoftware,suchas
WindowsBitLockerDriveEncryption.
WindowsBitLockerDriveEncryptionisanintegralsecurityfeatureofWindows7andWindows8.1operating
systems.ItissupportedintheUltimateandEnterpriseeditionsoftheWindows7andProfessionaland
EnterpriseeditionsoftheWindows8.1operatingsystems.Itcanhelpyouprotecttheoperatingsystemand
datastoredonyourcomputer,evenifyourcomputerislostorstolen.BitLockerworksbyencryptingalluser
andsystemfiles,includingtheswapandhibernationfiles.
BitLockerusesaTrustedPlatformModuletoprovideenhancedprotectionforyourdataandtoensureearly
bootcomponentintegrity.AcompatibleTPMisdefinedasaV1.2TPM.
TochecktheBitLockerstatus,gotoControlPanel,andclickSystemandSecurity➙BitLockerDrive
Encryption.
FormoreinformationaboutWindowsBitLockerDriveEncryption,seethehelpinformationsystemofthe
Windowsoperatingsystem,orsearchfor“MicrosoftWindowsBitLockerDriveEncryptionStep-by-Step
Guide”ontheMicrosoftWebsite.
DiskEncryptionharddiskdriveandEncryptionsolid-statedrive,orEncryptionhybriddrive
SomemodelscontaintheDiskEncryptionharddiskdrive,Encryptionsolid-statedrive,orEncryptionhybrid
drive.Thisfeaturehelpstoprotectyourcomputeragainstsecurityattacksonmedia,NANDflash,ordevice
controllersbyuseofahardwareencryptionchip.Fortheefficientuseoftheencryptionfeature,seta
harddiskpasswordfortheinternalstoragedevice.
Settingthesecuritychip
Strictsecurityrequirementsareimposedonnetworkclientcomputersthattransferconfidentialinformation
electronically.Dependingontheoptionsyouordered,yourcomputermighthaveanembeddedsecuritychip,
acryptographicmicroprocessor.WiththesecuritychipandClientSecuritySolution,youcandothefollowing:
•Protectyourdataandsystem
•Strengthenaccesscontrols
•Securecommunications
Settingthesecuritychip
ThechoicesofferedontheSecurityChipsubmenuundertheSecuritymenuofThinkPadSetupareas
follows:
68UserGuide