HP Commercial Notebook BIOS Password Setup
Page 4
...if the old password is selected from the list, the BIOS will take the user to BIOS recovery screen upon his /her failure to enter the correct password, where the user can go to F10 or use a secured HP service tool to reset the system to factory default. 4 Or, as Guest User... and then define a BIOS administrator and remove the PT user. The BIOS will authenticate the BIOS user with a new password. The change the Windows password.
...if the old password is selected from the list, the BIOS will take the user to BIOS recovery screen upon his /her failure to enter the correct password, where the user can go to F10 or use a secured HP service tool to reset the system to factory default. 4 Or, as Guest User... and then define a BIOS administrator and remove the PT user. The BIOS will authenticate the BIOS user with a new password. The change the Windows password.
HP Commercial Notebook BIOS Password Setup
Page 5
... F10. Otherwise, for 2009 and newer commercial notebook platforms, it would require HP Services to use a secured HP service tool to reset the system to the BIOS preboot authentication scheme. On boot the BIOS will automatically generate a user DriveLock password, and the BIOS admin password is a legacy single user approach Automatic DriveLock allows multiple user support...
... F10. Otherwise, for 2009 and newer commercial notebook platforms, it would require HP Services to use a secured HP service tool to reset the system to the BIOS preboot authentication scheme. On boot the BIOS will automatically generate a user DriveLock password, and the BIOS admin password is a legacy single user approach Automatic DriveLock allows multiple user support...
Intel Centrino 2 with vProâ„¢ technology Setup and Configuration for HP Business Notebook PCs
Page 4
...criteria defined in place. The following characters are case sensitive. This whitepaper details HP recommended settings on options, some of which may be entered twice for certain ... (POST) to enter Computer Setup. 2) Select AMT Options from Factory phase to enter Management Engine BIOS Extension (MEBx) Setup. 6) Enter the default password. b. Default Setting : Enabled Recommended Setting :...be the same as a strong password. Changing the password indicates that the system resets after configuration will go from the System Configuration menu. 3) Enable Firmware Verbosity, ...
...criteria defined in place. The following characters are case sensitive. This whitepaper details HP recommended settings on options, some of which may be entered twice for certain ... (POST) to enter Computer Setup. 2) Select AMT Options from Factory phase to enter Management Engine BIOS Extension (MEBx) Setup. 6) Enter the default password. b. Default Setting : Enabled Recommended Setting :...be the same as a strong password. Changing the password indicates that the system resets after configuration will go from the System Configuration menu. 3) Enable Firmware Verbosity, ...
Computer Setup - Windows Vista and Windows XP
Page 11
... on (not restarting) the computer. Enable/disable the fingerprint reader (select models only; Enroll or reset HP SpareKey, which is destroyed permanently. Enter, change, or delete a BIOS administrator password. ● Enable/disable DriveLock on Reboot (If Present) Change Password DriveLock Passwords Automatic ... by default) Run Disk Sanitizer to enroll or reset HP SpareKey. disabled by default). Enable/disable permission to destroy all existing data on the primary hard drive or the drive in this ● Create a new BIOS user account. ● View a list of ProtectTools...
... on (not restarting) the computer. Enable/disable the fingerprint reader (select models only; Enroll or reset HP SpareKey, which is destroyed permanently. Enter, change, or delete a BIOS administrator password. ● Enable/disable DriveLock on Reboot (If Present) Change Password DriveLock Passwords Automatic ... by default) Run Disk Sanitizer to enroll or reset HP SpareKey. disabled by default). Enable/disable permission to destroy all existing data on the primary hard drive or the drive in this ● Create a new BIOS user account. ● View a list of ProtectTools...
Computer Setup - Windows Vista and Windows XP
Page 17
... menu 9 Disk Sanitizer 7 DriveLock password 7 DriveLock, automatic 7 drives, boot order 10 Dual Core CPU 11 E Execution Disable 10 F File menu 6 H hard disk test 9 HP QuickLook 2 11 HP SpareKey enrollment 8 L LAN Power Save 10 language, changing in Computer Setup 10 legacy support,...Electronics) 10 Secondary Battery Fast Charge 11 Security menu always prompt for HP SpareKey enrollment 8 Automatic DriveLock 7 change password 7 Disk Sanitizer 7 DriveLock 7 fingerprint reader reset 7 HP Sparekey 7 HP Sparekey enrollment 7 password policy 7 set up BIOS Administrator password 8 System IDs 8 Index 13
... menu 9 Disk Sanitizer 7 DriveLock password 7 DriveLock, automatic 7 drives, boot order 10 Dual Core CPU 11 E Execution Disable 10 F File menu 6 H hard disk test 9 HP QuickLook 2 11 HP SpareKey enrollment 8 L LAN Power Save 10 language, changing in Computer Setup 10 legacy support,...Electronics) 10 Secondary Battery Fast Charge 11 Security menu always prompt for HP SpareKey enrollment 8 Automatic DriveLock 7 change password 7 Disk Sanitizer 7 DriveLock 7 fingerprint reader reset 7 HP Sparekey 7 HP Sparekey enrollment 7 password policy 7 set up BIOS Administrator password 8 System IDs 8 Index 13
Computer Setup - Windows Vista, Windows XP, and Windows 7
Page 11
... the fingerprint reader ownership (select models only; For more information, refer to change , or delete a BIOS administrator password. Enable/disable Automatic DriveLock support. Enroll or reset HP SpareKey, which protects the computer from unauthorized access to destroy all existing data on the primary hard drive or the drive in Embedded Security for ...
... the fingerprint reader ownership (select models only; For more information, refer to change , or delete a BIOS administrator password. Enable/disable Automatic DriveLock support. Enroll or reset HP SpareKey, which protects the computer from unauthorized access to destroy all existing data on the primary hard drive or the drive in Embedded Security for ...
Computer Setup - Windows Vista, Windows XP, and Windows 7
Page 16
... menu 8 Disk Sanitizer 7 DriveLock password 7 DriveLock, automatic 7 drives, boot order 9 Dual Core CPU 10 E error log 8 Execution Disable 9 F File menu 6 H hard disk test 8 HP QuickLook 2 10 HP SpareKey enrollment 7 L LAN Power Save 9 language, changing in Computer Setup 9 legacy support, ... 10 Security menu allow reset of HP ProtectTools security keys 7 always prompt for HP SpareKey enrollment 7 Automatic DriveLock 7 change password 7 Disk Sanitizer 7 DriveLock 7 fingerprint reader reset 7 HP Sparekey 7 HP Sparekey enrollment 7 password policy 7 set up BIOS administrator password 7 System ...
... menu 8 Disk Sanitizer 7 DriveLock password 7 DriveLock, automatic 7 drives, boot order 9 Dual Core CPU 10 E error log 8 Execution Disable 9 F File menu 6 H hard disk test 8 HP QuickLook 2 10 HP SpareKey enrollment 7 L LAN Power Save 9 language, changing in Computer Setup 9 legacy support, ... 10 Security menu allow reset of HP ProtectTools security keys 7 always prompt for HP SpareKey enrollment 7 Automatic DriveLock 7 change password 7 Disk Sanitizer 7 DriveLock 7 fingerprint reader reset 7 HP Sparekey 7 HP Sparekey enrollment 7 password policy 7 set up BIOS administrator password 7 System ...
HP ProtectTools - Windows Vista and Windows XP
Page 68
...and additional options may be included. Enable or disable. Select available or hidden. 62 Chapter 6 BIOS Configuration for HP ProtectTools NOTE: Not all options are available on computers equipped with the HP ProtectTools Embedded Security Chip (TPM). Click OK to apply the new settings and leave the window .... System IDs Option Ownership Tag Asset Tracking Number Action Enter, view or change . Option Reset of TPM from OS OS Management of the options listed in the table below. 3. Access BIOS Configuration, and click Security. 2. Click Apply to apply the new settings and close the ...
...and additional options may be included. Enable or disable. Select available or hidden. 62 Chapter 6 BIOS Configuration for HP ProtectTools NOTE: Not all options are available on computers equipped with the HP ProtectTools Embedded Security Chip (TPM). Click OK to apply the new settings and leave the window .... System IDs Option Ownership Tag Asset Tracking Number Action Enter, view or change . Option Reset of TPM from OS OS Management of the options listed in the table below. 3. Access BIOS Configuration, and click Security. 2. Click Apply to apply the new settings and close the ...
HP ProtectTools - Windows Vista and Windows XP
Page 86
.... 5. Select Embedded Security Device. 4. After allowing system to transition into hibernation and sleep mode, the Administrator or user is reset to factory settings after transitioning from Credential Manager prior to log on screen. Restoring Embedded Credential Manager fails to register any Credential... is unable to removing the TPM module. To enable the TPM embedded security chip using the f10 Computer Setup utility, BIOS Configuration, or HP Client Manager. Use the arrow keys to log on Windows XP Service Pack 1 only. Credential Manager has incompatibility issues ...
.... 5. Select Embedded Security Device. 4. After allowing system to transition into hibernation and sleep mode, the Administrator or user is reset to factory settings after transitioning from Credential Manager prior to log on screen. Restoring Embedded Credential Manager fails to register any Credential... is unable to removing the TPM module. To enable the TPM embedded security chip using the f10 Computer Setup utility, BIOS Configuration, or HP Client Manager. Use the arrow keys to log on Windows XP Service Pack 1 only. Credential Manager has incompatibility issues ...
HP ProtectTools - Windows Vista and Windows XP
Page 91
...environment. Multiple-User PSDs do not control settings of communication with the same drive letter. HP is working to access the PSD. The user is not able to use , please be... Deployment on the screen to select the location, and the restore process proceeds. ● Resets the chip to fast-user-switch between users when the PSD is loaded, the second user... though this location is correct, the following actions: ● Initializes owner and user in the BIOS. ● Reboots the computer. ● Begins to the three reference applications for immediate customization....
...environment. Multiple-User PSDs do not control settings of communication with the same drive letter. HP is working to access the PSD. The user is not able to use , please be... Deployment on the screen to select the location, and the restore process proceeds. ● Resets the chip to fast-user-switch between users when the PSD is loaded, the second user... though this location is correct, the following actions: ● Initializes owner and user in the BIOS. ● Reboots the computer. ● Begins to the three reference applications for immediate customization....
HP ProtectTools - Windows Vista and Windows XP
Page 92
...properly and makes TPM-encrypted data inaccessible. Unhide the TPM in BIOS: Open the Computer Setup (f10) Utility, navigate to restore at a later time. Short description Details Solution and is not accessed by resetting the TPM, running the restore process, and selecting all users ... system backup is displayed. The user must restore the entire system backup. Also, the user must reboot the system in future products. HP is working as designed and function properly; A decryption process failed error message is stored, the previous unselected users cannot be restored individually...
...properly and makes TPM-encrypted data inaccessible. Unhide the TPM in BIOS: Open the Computer Setup (f10) Utility, navigate to restore at a later time. Short description Details Solution and is not accessed by resetting the TPM, running the restore process, and selecting all users ... system backup is displayed. The user must restore the entire system backup. Also, the user must reboot the system in future products. HP is working as designed and function properly; A decryption process failed error message is stored, the previous unselected users cannot be restored individually...
HP ProtectTools - Windows Vista and Windows XP
Page 95
...Utility for models containing Broadcom-enabled TPMs. 2. If the BIOS TPM is factory-reset, ownership is removed and firmware update capability is installed. The firmware version is not identified correctly until the HP Protect Tools Security Manager is prevented until the Embedded Security...= Enabled, Owner State = Initialized, User State = Initialized ● Component Info: TCG Spec. Click Add or remove programs. d. b. Click HP ProtectTools Security Manager. Select Embedded Security from the tree menu. If the FW version does not match 2.18, download and update the TPM firmware....
...Utility for models containing Broadcom-enabled TPMs. 2. If the BIOS TPM is factory-reset, ownership is removed and firmware update capability is installed. The firmware version is not identified correctly until the HP Protect Tools Security Manager is prevented until the Embedded Security...= Enabled, Owner State = Initialized, User State = Initialized ● Component Info: TCG Spec. Click Add or remove programs. d. b. Click HP ProtectTools Security Manager. Select Embedded Security from the tree menu. If the FW version does not match 2.18, download and update the TPM firmware....
HP ProtectTools - Windows Vista and Windows XP
Page 96
...for these passwords can log on to complete loading is , in left column. these plug-ins to load. HP recommends that the BIOS administrator password is functioning as designed; Closing the shell before all plug-ins listed in essence, the administrator. ...complete its load time (services). This is enabled in future Web-based ROM SoftPaq offerings. 90 Chapter 9 Troubleshooting the factory reset clears the Basic User Key. Power-on authentication support remains enabled. Unrestricted access or uncontrolled administrator privileges pose security risk. If...
...for these passwords can log on to complete loading is , in left column. these plug-ins to load. HP recommends that the BIOS administrator password is functioning as designed; Closing the shell before all plug-ins listed in essence, the administrator. ...complete its load time (services). This is enabled in future Web-based ROM SoftPaq offerings. 90 Chapter 9 Troubleshooting the factory reset clears the Basic User Key. Power-on authentication support remains enabled. Unrestricted access or uncontrolled administrator privileges pose security risk. If...
HP ProtectTools - Windows Vista and Windows XP
Page 103
... 70 J Java Card Security for HP ProtectTools Credential Manager 13 PIN 9 K key security objectives 6 L lock workstation 16 locking computer 16 O objectives, security 6 owner password changing 73 definition 9 setting 70 P password Basic User Key 72 BIOS administrator 60 changing owner 73 emergency ...recovery token 70 guidelines 10 HP ProtectTools 8 managing 8 owner 70 policies, creating 7 resetting user 73 secure, creating 10 Windows 60 Windows logon 15 personal secure drive...
... 70 J Java Card Security for HP ProtectTools Credential Manager 13 PIN 9 K key security objectives 6 L lock workstation 16 locking computer 16 O objectives, security 6 owner password changing 73 definition 9 setting 70 P password Basic User Key 72 BIOS administrator 60 changing owner 73 emergency ...recovery token 70 guidelines 10 HP ProtectTools 8 managing 8 owner 70 policies, creating 7 resetting user 73 secure, creating 10 Windows 60 Windows logon 15 personal secure drive...
ProtectTools (Select Models Only) - Windows 7
Page 66
... all computers, and additional options may be included. To set a BIOS administrator password. Access BIOS Configuration, and click Security. 2. Enable or disable. Select available or hidden. 60 Chapter 6 BIOS Configuration for HP ProtectTools Select any of TPM Embedded Security Device Availability Action Enable or disable...close the window. Security Option BIOS Administrator Password NOTE: This option may also be called "Setup Password". Click OK to apply the new settings and leave the window open. - Change the settings as needed. 4. Option Reset of TPM from OS OS ...
... all computers, and additional options may be included. To set a BIOS administrator password. Access BIOS Configuration, and click Security. 2. Enable or disable. Select available or hidden. 60 Chapter 6 BIOS Configuration for HP ProtectTools Select any of TPM Embedded Security Device Availability Action Enable or disable...close the window. Security Option BIOS Administrator Password NOTE: This option may also be called "Setup Password". Click OK to apply the new settings and leave the window open. - Change the settings as needed. 4. Option Reset of TPM from OS OS ...
ProtectTools (Select Models Only) - Windows 7
Page 72
... AMT on next boot Security Level SD Card Boot Security Level HP QuickLook 2 Security Level Wireless Button State Security Level Modem Device Security Level Finger Print reset Security Level HP SpareKey Security Level TXT Technology Security Level Diagnostic URL Security Level ...Smart Card Security Level Microphone Security Level UEFI Boot Mode Security Level Action Change, view, or hide. Change, view, or hide. Change, view, or hide. 66 Chapter 6 BIOS Configuration for HP...
... AMT on next boot Security Level SD Card Boot Security Level HP QuickLook 2 Security Level Wireless Button State Security Level Modem Device Security Level Finger Print reset Security Level HP SpareKey Security Level TXT Technology Security Level Diagnostic URL Security Level ...Smart Card Security Level Microphone Security Level UEFI Boot Mode Security Level Action Change, view, or hide. Change, view, or hide. Change, view, or hide. 66 Chapter 6 BIOS Configuration for HP...
ProtectTools (Select Models Only) - Windows 7
Page 88
...on the cause of Connect. To enable the TPM embedded security chip using the f10 Computer Setup utility, BIOS Configuration, or HP Client Manager. Set a password. 3. HP recommends that the user back up their identity from sleep mode to hibernation on Windows XP Service Pack 1... protected by turning on or restarting the computer, and then pressing f10 while the f10 = ROM Based Setup message is reset to factory settings after transitioning from Credential Manager prior to Service Pack 2 via Windows Update. Credential Manager has incompatibility issues with...
...on the cause of Connect. To enable the TPM embedded security chip using the f10 Computer Setup utility, BIOS Configuration, or HP Client Manager. Set a password. 3. HP recommends that the user back up their identity from sleep mode to hibernation on Windows XP Service Pack 1... protected by turning on or restarting the computer, and then pressing f10 while the f10 = ROM Based Setup message is reset to factory settings after transitioning from Credential Manager prior to Service Pack 2 via Windows Update. Credential Manager has incompatibility issues with...
ProtectTools (Select Models Only) - Windows 7
Page 93
...produce errors based on a previously initialized PC overwrites Emergency Recovery and Emergency Token files. Configuration of communication with the same drive letter. HP is as designed. Even though this location is correct, the following actions: ● Initializes owner and user in Embedded Security (using...e-mail client. Click the Browse button on the screen to select the location, and the restore process proceeds. ● Resets the chip to factory settings in the BIOS. ● Reboots the computer. ● Begins to fast-user-switch between users when the PSD is loaded, the...
...produce errors based on a previously initialized PC overwrites Emergency Recovery and Emergency Token files. Configuration of communication with the same drive letter. HP is as designed. Even though this location is correct, the following actions: ● Initializes owner and user in Embedded Security (using...e-mail client. Click the Browse button on the screen to select the location, and the restore process proceeds. ● Resets the chip to factory settings in the BIOS. ● Reboots the computer. ● Begins to fast-user-switch between users when the PSD is loaded, the...
ProtectTools (Select Models Only) - Windows 7
Page 94
... are working to restore at a later time. Short description Details Solution and is not clear and should state a more appropriate message. HP is displayed. A decryption process failed error message is working as designed and function properly; Please select another process. If the user selects... data inaccessible. If the automated backup runs, it is lost. The user must reboot the system in BIOS: Open the Computer Setup (f10) Utility, navigate to Windows. Resetting the system ROM to default hides the TPM to Security > Device security, and then modify the field...
... are working to restore at a later time. Short description Details Solution and is not clear and should state a more appropriate message. HP is displayed. A decryption process failed error message is working as designed and function properly; Please select another process. If the user selects... data inaccessible. If the automated backup runs, it is lost. The user must reboot the system in BIOS: Open the Computer Setup (f10) Utility, navigate to Windows. Resetting the system ROM to default hides the TPM to Security > Device security, and then modify the field...
ProtectTools (Select Models Only) - Windows 7
Page 97
...Manager must be restarted for models containing Broadcom-enabled TPMs. 2. user to complete the firmware upgrade. If the BIOS TPM is factory-reset, ownership is removed and firmware update capability is created by using the close button in . Click Add or remove...such as Embedded Security, Java Card Security, and biometrics are extendable plug-ins for models containing Broadcomenabled TPMs-The tool provided through HP support Web site reports ownership required. The Security Manager software must exist, since the upgrade requires owner authorization. TPM Firmware Update ...
...Manager must be restarted for models containing Broadcom-enabled TPMs. 2. user to complete the firmware upgrade. If the BIOS TPM is factory-reset, ownership is removed and firmware update capability is created by using the close button in . Click Add or remove...such as Embedded Security, Java Card Security, and biometrics are extendable plug-ins for models containing Broadcomenabled TPMs-The tool provided through HP support Web site reports ownership required. The Security Manager software must exist, since the upgrade requires owner authorization. TPM Firmware Update ...