
Menu Item Description
Secure Boot Enables Secure Boot, where the BIOS authenticates each pre-boot image
using the certificates in the Secure Boot Policy. Secure Boot is disabled
by default.
Secure Boot Policy When Secure Boot policy is Standard, the BIOS uses the system
manufacturer’s key and certificates to authenticate pre-boot images.
When Secure Boot policy is Custom, the BIOS uses the user-defined key
and certificates. Secure Boot policy is Standard by default.
Secure Boot Policy
Summary
Displays the list of certificates and hashes that secure boot uses to
authenticate images.
Secure Boot Custom Policy Settings screen
Secure Boot Custom Policy Settings is displayed only when Secure Boot Policy is set to Custom.
In the System Setup Main Menu, click System BIOS → System Security → Secure Boot Custom Policy
Settings
.
Menu Item Description
Platform Key Imports, exports, deletes, or restores the platform
key (PK).
Key Exchange Key Database Allows you to import, export, delete, or restore
entries in the Key Exchange Key (KEK) Database.
Authorized Signature Database Imports, exports, deletes, or restores entries in the
Authorized Signature Database (db).
Forbidden Signature Database Imports, exports, deletes, or restores entries in the
Forbidden Signature Database (dbx).
Miscellaneous Settings screen
You can use the Miscellaneous Settings screen to perform specific functions such as updating the asset
tag, and changing the system date and time.
To view the Miscellaneous Settings click System Setup Main Menu → System BIOS → Miscellaneous
Settings.
Menu Item Description
System Time Enables you to set the time on the system.
System Date Enables you to set the date on the system.
Asset Tag Displays the asset tag and enables you to modify it for security and
tracking purposes.
Keyboard NumLock Enables you to set whether the system boots with the NumLock enabled
or disabled. By default the Keyboard NumLock is set to On.
NOTE: This option does not apply to 84-key keyboards.
F1/F2 Prompt on Error Enables or disables the F1/F2 prompt on error. By default, F1/F2 Prompt
on Error is set to Enabled. The F1/F2 prompt also includes keyboard
errors.
Load Legacy Video Option
ROM
Enables you to determine whether the system BIOS loads the legacy
video (INT 10H) option ROM from the video controller. Selecting Enabled
41