Desktop Management Guide
Page 12
... flash the system BIOS. When SSM runs, it silently (without TPM measurements of recovery emergencies. HP recommends you can distribute customercreated or third-party updates that BitLocker created for your networked HP business PCs. Using SSM, you keep system software updated. SSM then automatically ...and changing the BIOS passwords and computer boot order remotely from your client systems without visiting each machine. Alerts are using TPM measurements to http://www.hp.com/go /ssm. For more information on each networked client system and compares this inventory against...
... flash the system BIOS. When SSM runs, it silently (without TPM measurements of recovery emergencies. HP recommends you can distribute customercreated or third-party updates that BitLocker created for your networked HP business PCs. Using SSM, you keep system software updated. SSM then automatically ...and changing the BIOS passwords and computer boot order remotely from your client systems without visiting each machine. Alerts are using TPM measurements to http://www.hp.com/go /ssm. For more information on each networked client system and compares this inventory against...
Desktop Management Guide
Page 13
...access to display locally on the client system ● Report basic inventory information for non-HP clients ● Setup and configure TPM security chip ● Centrally schedule client backup and recovery ● Add on support for managing Intel AMT For more information....computer, networks, and critical data. HP ProtectTools Security Manager ProtectTools Security Manager software provides security features that the Trusted Platform Module (TPM) embedded security chip (some models only) be preinstalled, preloaded, or available for purchase from a single, Web-based management console...
...access to display locally on the client system ● Report basic inventory information for non-HP clients ● Setup and configure TPM security chip ● Centrally schedule client backup and recovery ● Add on support for managing Intel AMT For more information....computer, networks, and critical data. HP ProtectTools Security Manager ProtectTools Security Manager software provides security features that the Trusted Platform Module (TPM) embedded security chip (some models only) be preinstalled, preloaded, or available for purchase from a single, Web-based management console...
Desktop Management Guide
Page 20
...more information on systems that have Windows Vista BitLocker enabled and are using TPM measurements to locally update or restore the system BIOS of individual PCs from being unintentionally updated or overwritten. For more PCs simultaneously. This is used to protect the BitLocker keys because flashing the ...console. Remote ROM Flash Remote ROM Flash allows the system administrator to ensure the operating integrity of , and greater control over, HP PC BIOS images over the network. For more information, visit http://www.hp.com/go /ssm/. NOTE: SSM does not currently support ...
...more information on systems that have Windows Vista BitLocker enabled and are using TPM measurements to locally update or restore the system BIOS of individual PCs from being unintentionally updated or overwritten. For more PCs simultaneously. This is used to protect the BitLocker keys because flashing the ...console. Remote ROM Flash Remote ROM Flash allows the system administrator to ensure the operating integrity of , and greater control over, HP PC BIOS images over the network. For more information, visit http://www.hp.com/go /ssm/. NOTE: SSM does not currently support ...
Installing Windows® 7 Beta on HP Business Desktops
Page 4
... available from Windows Update, including video, audio, SMBUS Controller, NIC, Intel HECI, Intel SOL, TPM module. 2007 & Video Audio SMBUS NIC prior Controller Models (chipset) dc7700 Intel HECI No Intel SOL TPM Module No dc7800 dc5700 No No dc5750 * N/A N/A Note: Driver availability is subject to change . - Driver available from Windows Update 2008 Video...
... available from Windows Update, including video, audio, SMBUS Controller, NIC, Intel HECI, Intel SOL, TPM module. 2007 & Video Audio SMBUS NIC prior Controller Models (chipset) dc7700 Intel HECI No Intel SOL TPM Module No dc7800 dc5700 No No dc5750 * N/A N/A Note: Driver availability is subject to change . - Driver available from Windows Update 2008 Video...
HP Compaq dc5750 Business PC Service Reference Guide, 1st Edition
Page 33
It combines: ■ HP Client Manager ■ HP Systems Insight Manager Connector Service Reference Guide, dc5750 437963-001 3-5 Visit http://www.hp.com/products/security for more information. 3.3.5 HP Client Premium Suite HP Client ...visit http://www.hp.com/go /clientmanager. 3.3.4 HP ProtectTools Security Manager ProtectTools Security Manager software provides security features that the Trusted Platform Module (TPM) embedded security chip (some models only) be preinstalled, preloaded, or available for purchase from a single, Web-based management console. Desktop Management ...
It combines: ■ HP Client Manager ■ HP Systems Insight Manager Connector Service Reference Guide, dc5750 437963-001 3-5 Visit http://www.hp.com/products/security for more information. 3.3.5 HP Client Premium Suite HP Client ...visit http://www.hp.com/go /clientmanager. 3.3.4 HP ProtectTools Security Manager ProtectTools Security Manager software provides security features that the Trusted Platform Module (TPM) embedded security chip (some models only) be preinstalled, preloaded, or available for purchase from a single, Web-based management console. Desktop Management ...
Protect Tools User Guide
Page 7
HP ProtectTools software modules may be preinstalled, preloaded, or available for your computer may vary depending on which the Trusted Platform Module (TPM) embedded security chip is installed. Enhanced security functionality is available only for more information. NOTE: The instructions in this guide are written with the assumption ...
HP ProtectTools software modules may be preinstalled, preloaded, or available for your computer may vary depending on which the Trusted Platform Module (TPM) embedded security chip is installed. Enhanced security functionality is available only for more information. NOTE: The instructions in this guide are written with the assumption ...
Protect Tools User Guide
Page 8
..., for user authentication. ● Password storage is protected through encryption and can be hardened through the use of a TPM embedded security chip and/ or security device authentication, such as Java Cards or biometrics. ● Embedded Security uses a Trusted Platform Module... (TPM) embedded security chip to help protect against unauthorized access to sensitive user data or credentials stored locally on a PC. ● Embedded Security allows creation of a personal secure drive (PSD) for protecting ...
..., for user authentication. ● Password storage is protected through encryption and can be hardened through the use of a TPM embedded security chip and/ or security device authentication, such as Java Cards or biometrics. ● Embedded Security uses a Trusted Platform Module... (TPM) embedded security chip to help protect against unauthorized access to sensitive user data or credentials stored locally on a PC. ● Embedded Security allows creation of a personal secure drive (PSD) for protecting ...
Protect Tools User Guide
Page 13
... the Computer Setup utility and to all owner functions of Embedded Security. BIOS Configuration, by IT administrator Java Card Security Protects the system and the TPM chip from hibernation. When used for power-on , restarted, or restored from unauthorized access to the computer contents. Protects access to the computer contents when...
... the Computer Setup utility and to all owner functions of Embedded Security. BIOS Configuration, by IT administrator Java Card Security Protects the system and the TPM chip from hibernation. When used for power-on , restarted, or restored from unauthorized access to the computer contents. Protects access to the computer contents when...
Protect Tools User Guide
Page 33
On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for protected digital certificate operations when using the Embedded Security software The TPM embedded security chip enhances and enables other HP ProtectTools Security Manager security ...features. 3 Embedded Security for HP ProtectTools NOTE: The integrated Trusted Platform Module (TPM) embedded security chip must be installed in your computer to use the embedded chip as Microsoft Outlook and Internet Explorer)...
On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for protected digital certificate operations when using the Embedded Security software The TPM embedded security chip enhances and enables other HP ProtectTools Security Manager security ...features. 3 Embedded Security for HP ProtectTools NOTE: The integrated Trusted Platform Module (TPM) embedded security chip must be installed in your computer to use the embedded chip as Microsoft Outlook and Internet Explorer)...
Protect Tools User Guide
Page 34
... enter. 3. Type your preferences and exit Computer Setup, use the arrow keys to the Embedded Security configuration. 8. Press F10 to accept the changes to select TPM Embedded Security, and then press enter. 5. Setup procedures CAUTION: To reduce security risk, it is displayed in the lower-left corner of the computer and...
... enter. 3. Type your preferences and exit Computer Setup, use the arrow keys to the Embedded Security configuration. 8. Press F10 to accept the changes to select TPM Embedded Security, and then press enter. 5. Setup procedures CAUTION: To reduce security risk, it is displayed in the lower-left corner of the computer and...
Protect Tools User Guide
Page 53
Enabling and disabling power-on authentication support for Embedded Security Enabling this option allows the system to use the TPM embedded security chip (if available) for embedded security: 1. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left ...BIOS Configuration. 3. To enable power-on authentication support for user authentication when you turn on authentication feature, you must also configure the TPM embedded security chip using the Embedded Security for Embedded Security, click Disable. 6. Type your Computer Setup administrator password at the BIOS ...
Enabling and disabling power-on authentication support for Embedded Security Enabling this option allows the system to use the TPM embedded security chip (if available) for embedded security: 1. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left ...BIOS Configuration. 3. To enable power-on authentication support for user authentication when you turn on authentication feature, you must also configure the TPM embedded security chip using the Embedded Security for Embedded Security, click Disable. 6. Type your Computer Setup administrator password at the BIOS ...
Protect Tools User Guide
Page 56
... enable or disable stringent security: 1. Click Apply, and then click OK in the Passwords dialog box. 7. In the right pane, next to type a power-on, TPM, or smart card password when Windows restarts. Type the current password in the Enter New Password and Verify New Password boxes. 6. Without these passwords or...
... enable or disable stringent security: 1. Click Apply, and then click OK in the Passwords dialog box. 7. In the right pane, next to type a power-on, TPM, or smart card password when Windows restarts. Type the current password in the Enter New Password and Verify New Password boxes. 6. Without these passwords or...
Protect Tools User Guide
Page 62
...Solution Using Credential Manager Network Accounts option, a user can select which domain account to security risks. This only occurs with TPM authentication does not give the Network Accounts option. For example, an ! User cannot move the location of registered virtual ... Domain administrators cannot change the local PC account passwords. When the domain administrator attempts to log into. When TPM authentication is used , this option is not available. When TPM authentication is used , this option is not available. Using TPM authentication, the user is researching a...
...Solution Using Credential Manager Network Accounts option, a user can select which domain account to security risks. This only occurs with TPM authentication does not give the Network Accounts option. For example, an ! User cannot move the location of registered virtual ... Domain administrators cannot change the local PC account passwords. When the domain administrator attempts to log into. When TPM authentication is used , this option is not available. When TPM authentication is used , this option is not available. Using TPM authentication, the user is researching a...
Protect Tools User Guide
Page 63
... researching a workaround for future product enhancements. This is inserted. 5. The TPM Module is removed or damaged, users lose all Credential Manager credentials protected by the TPM, if the TPM module is removed or damaged. HP recommends that the user back up identity...Tokens. 4. Short description Details Solution Windows password from Credential local PC, Credential Manager can cancel the Credential Manager login and user will see the Microsoft Windows login. When logging in using TPM login authentication for ProtectTools 57 If the Single Sign On credentials...
... researching a workaround for future product enhancements. This is inserted. 5. The TPM Module is removed or damaged, users lose all Credential Manager credentials protected by the TPM, if the TPM module is removed or damaged. HP recommends that the user back up identity...Tokens. 4. Short description Details Solution Windows password from Credential local PC, Credential Manager can cancel the Credential Manager login and user will see the Microsoft Windows login. When logging in using TPM login authentication for ProtectTools 57 If the Single Sign On credentials...
Protect Tools User Guide
Page 65
... F10 = ROM Based Setup message is investigating resolution options for future customer software releases. HP is restored to access the TPM if the ROM was reset to factory settings Credential Manager to fail. Short description Details Solution Restoring Embedded Credential Manager fails... to register any The HP Credential Manager for ProtectTools fails to Security causes credentials after the Credential Manager installation. To enable the TPM embedded security chip: 1. Use the arrow keys to select Embedded Security Device-Disable. Select Embedded Security Device. 4. Use the ...
... F10 = ROM Based Setup message is investigating resolution options for future customer software releases. HP is restored to access the TPM if the ROM was reset to factory settings Credential Manager to fail. Short description Details Solution Restoring Embedded Credential Manager fails... to register any The HP Credential Manager for ProtectTools fails to Security causes credentials after the Credential Manager installation. To enable the TPM embedded security chip: 1. Use the arrow keys to select Embedded Security Device-Disable. Select Embedded Security Device. 4. Use the ...
Protect Tools User Guide
Page 66
... to view encrypted files in Windows 2000. Windows 2000 User can view, delete, rename, or move contents of EFS, not the Embedded Security TPM. EFS does not require a password to restore the hard drive using EFS will not function on an extra installed hard drive. It is a... feature of the folder. The hidden share can use the TPM software. therefore, a user can inadvertently or purposely encrypt or delete the file, making it does in one can be taken with administrative rights...
... to view encrypted files in Windows 2000. Windows 2000 User can view, delete, rename, or move contents of EFS, not the Embedded Security TPM. EFS does not require a password to restore the hard drive using EFS will not function on an extra installed hard drive. It is a... feature of the folder. The hidden share can use the TPM software. therefore, a user can inadvertently or purposely encrypt or delete the file, making it does in one can be taken with administrative rights...
Protect Tools User Guide
Page 67
...displayed when the system becomes active after Standby status When a user logs on to Enable. 7. There is as designed. Errors occur after enabling TPM Module. Press Enter. To use the wizard, the Embedded 5. Select File > Save Changes and Exit. 9. Computer Setup (F10) Utility ...password can be initialized since the Embedded Security chip has already an Embedded Security owner. This allows anyone with or without TPM user initialization. The PSD password box is as designed. ENWW Embedded Security for users who knows the password. Press F10 to removable ...
...displayed when the system becomes active after Standby status When a user logs on to Enable. 7. There is as designed. Errors occur after enabling TPM Module. Press Enter. To use the wizard, the Embedded 5. Select File > Save Changes and Exit. 9. Computer Setup (F10) Utility ...password can be initialized since the Embedded Security chip has already an Embedded Security owner. This allows anyone with or without TPM user initialization. The PSD password box is as designed. ENWW Embedded Security for users who knows the password. Press F10 to removable ...
Protect Tools User Guide
Page 68
..., when viewing the certificate, it shows as non-trusted. Log back in the first administrator account on the system without disabling the TPM or by another process, even though that option is encouraged to the Microsoft EFS. The issue is generated. Root Cause suspicion is used... by first disabling the TPM (through Admin. An administrator can be retrieved (as a MultiBay hard drive still shows PSD availability and does not generate errors while adding...
..., when viewing the certificate, it shows as non-trusted. Log back in the first administrator account on the system without disabling the TPM or by another process, even though that option is encouraged to the Microsoft EFS. The issue is generated. Root Cause suspicion is used... by first disabling the TPM (through Admin. An administrator can be retrieved (as a MultiBay hard drive still shows PSD availability and does not generate errors while adding...
Protect Tools User Guide
Page 69
...environment. Multiple User PSDs do not control settings of Japanese is as designed. ENWW Embedded Security for User password to Infineon TPM User Authentication. EFS Encryption works without entering password in the text box. Embedded security software and the wizard do not function ... this location is correct, the following error message is displayed: No Emergency Recovery Token is still capable on a previously initialized PC overwrites Emergency Recovery and Emergency Token files. Secure e-mail is supported, even if unchecked in User Initialization Wizard or if secure...
...environment. Multiple User PSDs do not control settings of Japanese is as designed. ENWW Embedded Security for User password to Infineon TPM User Authentication. EFS Encryption works without entering password in the text box. Embedded security software and the wizard do not function ... this location is correct, the following error message is displayed: No Emergency Recovery Token is still capable on a previously initialized PC overwrites Emergency Recovery and Emergency Token files. Secure e-mail is supported, even if unchecked in User Initialization Wizard or if secure...
Protect Tools User Guide
Page 70
... when the user attempts to Available. A decryption process failed error message is not clear and should state a more appropriate message. Unhide the TPM in use, please ensure that include computer name\admin name. If the Automatic Backup is scheduled to execute the backup. The PSD icon is... can delete the old PSD emulation and create a new PSD. Resetting System ROM to any local drive. This works properly to default hides TPM. When the administrator instead configures the Automatic Backup to save to a mapped drive, the process fails because the NT AUTHORITY\SYSTEM does not...
... when the user attempts to Available. A decryption process failed error message is not clear and should state a more appropriate message. Unhide the TPM in use, please ensure that include computer name\admin name. If the Automatic Backup is scheduled to execute the backup. The PSD icon is... can delete the old PSD emulation and create a new PSD. Resetting System ROM to any local drive. This works properly to default hides TPM. When the administrator instead configures the Automatic Backup to save to a mapped drive, the process fails because the NT AUTHORITY\SYSTEM does not...