Symptoms
The article provides information about what is the BIOS option setting on your personal computer.
Table of Contents:
What is BIOS?How to set
Resolution
What is Bios?
Refer to What is BIOS and How to Update the BIOS on Your Dell System
Back to Top
How to set
The following settings in the system BIOS must be configured to support Secured-Core personal computer.
The Secure Boot - Secure Boot Enable setting must be ON and Microsoft UEFI CA option to OFF(Figure 1.) Figure 1. - Secure Boot Enable in BIOSThe System Management Mode (SMM) SMM Security Mitigation option must be selected in the Security, SMM Security Mitigation settings. (Figure 2.) Figure 2. - SMM Security Mitigation Enable in BIOSThe VT for Direct I/O option must be selected in the Virtualization Support, VT for Direct I/O settings. (Figure 3.) Figure 3. - VT for Direct I/O Enable in BIOSThe Trusted Execution option must be enabled in the Virtualization Support, Trusted Execution settings. (Figure 4.) Figure 4. - Trusted Execution Enable in BIOS
Intel Whiskey Lake computers with Microsoft Windows 10 version 19H1 and beyond or for Intel Comet Lake computers with Windows 10 version 20H1 and beyond perform the following steps in the operating system.
Under Settings, Update & Security, Windows Security, Device Security, Core isolation, Core isolation details. (Figure 5.) Figure 5. - Windows Core isolation settings
Set Memory integrity - ONMemory access protection then should be - PresentSet Firmware protection - ON
Once completed, Device security indicates: "Your device exceeds the requirements for enhanced hardware security." (Figure 6.) Figure 6. - Your device exceeds the requirements for enhanced hardware security.
Back to To