ProtectTools (Select Models Only) - Windows Vista
Page 3
...HP ProtectTools Security Manager 2 Understanding security roles ...2 Managing HP ProtectTools passwords 3 Creating a secure password 5 2 Smart Card Security for HP ProtectTools Initializing the smart card ...7 Smart card BIOS security mode ...8 Enabling smart card BIOS security mode and setting the smart card administrator password ...9 Disabling smart card BIOS... the smart card user password 11 Storing the administrator or user card password 12 General tasks ...13 Updating BIOS smart card settings 13 Selecting the smart card reader 13 Changing the smart card PIN 13 Backing up and...
...HP ProtectTools Security Manager 2 Understanding security roles ...2 Managing HP ProtectTools passwords 3 Creating a secure password 5 2 Smart Card Security for HP ProtectTools Initializing the smart card ...7 Smart card BIOS security mode ...8 Enabling smart card BIOS security mode and setting the smart card administrator password ...9 Disabling smart card BIOS... the smart card user password 11 Storing the administrator or user card password 12 General tasks ...13 Updating BIOS smart card settings 13 Selecting the smart card reader 13 Changing the smart card PIN 13 Backing up and...
ProtectTools (Select Models Only) - Windows Vista
Page 4
...disabling Embedded Security 32 Enabling Embedded Security after permanent disable 32 Migrating keys with the Migration Wizard 33 5 BIOS Configuration for HP ProtectTools General tasks ...35 Managing boot options ...35 Enabling and disabling system configuration options 36 Advanced tasks ...38 Managing...options 42 Enabling and disabling stringent security 42 Enabling and disabling power-on authentication on Windows restart 42 6 Credential Manager for HP ProtectTools Setup procedures ...45 Logging on to Credential Manger 45 Using the Credential Manager Logon Wizard 45 Logging on for the ...
...disabling Embedded Security 32 Enabling Embedded Security after permanent disable 32 Migrating keys with the Migration Wizard 33 5 BIOS Configuration for HP ProtectTools General tasks ...35 Managing boot options ...35 Enabling and disabling system configuration options 36 Advanced tasks ...38 Managing...options 42 Enabling and disabling stringent security 42 Enabling and disabling power-on authentication on Windows restart 42 6 Credential Manager for HP ProtectTools Setup procedures ...45 Logging on to Credential Manger 45 Using the Credential Manager Logon Wizard 45 Logging on for the ...
ProtectTools (Select Models Only) - Windows Vista
Page 7
... is provided by the following software modules: ● Smart Card Security for HP ProtectTools ● Java Card Security for HP ProtectTools ● Embedded Security for HP ProtectTools ● BIOS Configuration for HP ProtectTools ● Credential Manager for HP ProtectTools ● Device Access Manager for HP ProtectTools The software modules available for more information. NOTE The instructions in...
... is provided by the following software modules: ● Smart Card Security for HP ProtectTools ● Java Card Security for HP ProtectTools ● Embedded Security for HP ProtectTools ● BIOS Configuration for HP ProtectTools ● Credential Manager for HP ProtectTools ● Device Access Manager for HP ProtectTools The software modules available for more information. NOTE The instructions in...
ProtectTools (Select Models Only) - Windows Vista
Page 8
.... ● IT administrator-Applies and manages the security features defined by the security officer in cooperation with Credential Manager," in HP ProtectTools can enable smart card BIOS security mode. ● User-Uses the security features. For example, if the security officer has decided to deploy, such ...as smart cards, biometric readers, or USB tokens. NOTE After you can also open HP ProtectTools by the same person. Can also...
.... ● IT administrator-Applies and manages the security features defined by the security officer in cooperation with Credential Manager," in HP ProtectTools can enable smart card BIOS security mode. ● User-Uses the security features. For example, if the security officer has decided to deploy, such ...as smart cards, biometric readers, or USB tokens. NOTE After you can also open HP ProtectTools by the same person. Can also...
ProtectTools (Select Models Only) - Windows Vista
Page 9
...the computer contents when the computer is turned on password BIOS Configuration Protects access to access Embedded Security features, such as BIOS user card password Used for smart card power-on (BIOS) authentication. ENWW Managing HP ProtectTools passwords 3 All other passwords may be set ,...and authenticates users of the Java Card. HP ProtectTools password Set in this HP ProtectTools Function module Computer Setup setup password NOTE Also known as BIOS administrator card password Used for smart card power-on (BIOS) authentication. Allows access to the computer contents...
...the computer contents when the computer is turned on password BIOS Configuration Protects access to access Embedded Security features, such as BIOS user card password Used for smart card power-on (BIOS) authentication. ENWW Managing HP ProtectTools passwords 3 All other passwords may be set ,...and authenticates users of the Java Card. HP ProtectTools password Set in this HP ProtectTools Function module Computer Setup setup password NOTE Also known as BIOS administrator card password Used for smart card power-on (BIOS) authentication. Allows access to the computer contents...
ProtectTools (Select Models Only) - Windows Vista
Page 12
... a smart card so that it can be used to configure separate smart cards for HP ProtectTools ENWW 2 Smart Card Security for HP ProtectTools Smart Card Security for HP ProtectTools manages the smart card setup and configuration for computers equipped with the Computer Setup utility... to enable smart card authentication in a power-on environment, and to authenticate users of the smart card. ● Back up and restore smart card BIOS...
... a smart card so that it can be used to configure separate smart cards for HP ProtectTools ENWW 2 Smart Card Security for HP ProtectTools Smart Card Security for HP ProtectTools manages the smart card setup and configuration for computers equipped with the Computer Setup utility... to enable smart card authentication in a power-on environment, and to authenticate users of the smart card. ● Back up and restore smart card BIOS...
ProtectTools (Select Models Only) - Windows Vista
Page 14
... smart cards. ● Create a recovery file to restore either a user or administrator smart card. 8 Chapter 2 Smart Card Security for HP ProtectTools ENWW The process of enabling smart card BIOS security mode involves the following : ● Access Computer Setup or the contents of enabling smart card...-on Authentication Support in this setting allows you to use a smart card for power-on authentication. Smart card BIOS security mode When enabled, smart card BIOS security mode requires you to use a smart card to start the computer. Enable Smart Card Power-on authentication support...
... smart cards. ● Create a recovery file to restore either a user or administrator smart card. 8 Chapter 2 Smart Card Security for HP ProtectTools ENWW The process of enabling smart card BIOS security mode involves the following : ● Access Computer Setup or the contents of enabling smart card...-on Authentication Support in this setting allows you to use a smart card for power-on authentication. Smart card BIOS security mode When enabled, smart card BIOS security mode requires you to use a smart card to start the computer. Enable Smart Card Power-on authentication support...
ProtectTools (Select Models Only) - Windows Vista
Page 15
... prompt, and then click Next. 6. In the right pane, under BIOS Security Mode, click Disable. 4. ENWW Smart card BIOS security mode 9 Refer to "Initializing the smart card" for detailed instructions. Select Start > All Programs > HP ProtectTools Security Manager. 2. NOTE If smart card BIOS security mode has previously been enabled, the button on -screen instructions...
... prompt, and then click Next. 6. In the right pane, under BIOS Security Mode, click Disable. 4. ENWW Smart card BIOS security mode 9 Refer to "Initializing the smart card" for detailed instructions. Select Start > All Programs > HP ProtectTools Security Manager. 2. NOTE If smart card BIOS security mode has previously been enabled, the button on -screen instructions...
ProtectTools (Select Models Only) - Windows Vista
Page 16
To change the smart card administrator password after it has been set as part of the process for enabling smart card BIOS security mode. Select Start > All Programs > HP ProtectTools Security Manager. 2. Insert the new administrator card and click Next. 6. Enter the smart card PIN and click Next... smart card administrator password stored on the card and in this chapter, for HP ProtectTools ENWW Refer to BIOS administrator card, click Change. 4. In the left pane, click Smart Card Security, and then click BIOS. 3. Enter the smart card PIN and click Finish. 10 Chapter 2 Smart...
To change the smart card administrator password after it has been set as part of the process for enabling smart card BIOS security mode. Select Start > All Programs > HP ProtectTools Security Manager. 2. Insert the new administrator card and click Next. 6. Enter the smart card PIN and click Next... smart card administrator password stored on the card and in this chapter, for HP ProtectTools ENWW Refer to BIOS administrator card, click Change. 4. In the left pane, click Smart Card Security, and then click BIOS. 3. Enter the smart card PIN and click Finish. 10 Chapter 2 Smart...
ProtectTools (Select Models Only) - Windows Vista
Page 17
...manually. ● Generate a random 32-byte password. For more security; In the left pane, click Smart Card Security, and then click BIOS. 3. In the BIOS Password Wizard, you to create duplicate cards without using a recovery file. Enter the smart card PIN and click OK. NOTE It is displayed.... Setting and changing the smart card user password To set or change the smart card user password: 1. Select Start > All Programs > HP ProtectTools Security Manager. 2. NOTE If you require the smart card PIN to be entered at startup, clear this chapter. 9. Enter the smart...
...manually. ● Generate a random 32-byte password. For more security; In the left pane, click Smart Card Security, and then click BIOS. 3. In the BIOS Password Wizard, you to create duplicate cards without using a recovery file. Enter the smart card PIN and click OK. NOTE It is displayed.... Setting and changing the smart card user password To set or change the smart card user password: 1. Select Start > All Programs > HP ProtectTools Security Manager. 2. NOTE If you require the smart card PIN to be entered at startup, clear this chapter. 9. Enter the smart...
ProtectTools (Select Models Only) - Windows Vista
Page 18
... a known password enables you to create a recovery file. To store the administrator or user card password: 1. In the right pane, under BIOS Password on the card and not in Computer Setup. Storing the administrator or user card password If you want to create a backup card and ...type of card. 7. however, you require that you can either Administrator or User for HP ProtectTools ENWW Enter the smart card PIN and click OK. 9. For more security; Select Start > All Programs > HP ProtectTools Security Manager. 3. You will not be entered at startup. Insert a smart card...
... a known password enables you to create a recovery file. To store the administrator or user card password: 1. In the right pane, under BIOS Password on the card and not in Computer Setup. Storing the administrator or user card password If you want to create a backup card and ...type of card. 7. however, you require that you can either Administrator or User for HP ProtectTools ENWW Enter the smart card PIN and click OK. 9. For more security; Select Start > All Programs > HP ProtectTools Security Manager. 3. You will not be entered at startup. Insert a smart card...
ProtectTools (Select Models Only) - Windows Vista
Page 19
...at reboot. If the correct reader is selected in Smart Card Security before using the smart card. Select Start > All Programs > HP ProtectTools Security Manager. 2. NOTE To eliminate this requirement, clear the check box. 5. Selecting the smart card reader Ensure that the ...right pane, under Smart Card Reader, click the correct reader. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. Type your current smart card PIN. 5. General tasks Updating BIOS smart card settings To require a smart card PIN when you restart the computer: 1. In the left...
...at reboot. If the correct reader is selected in Smart Card Security before using the smart card. Select Start > All Programs > HP ProtectTools Security Manager. 2. NOTE To eliminate this requirement, clear the check box. 5. Selecting the smart card reader Ensure that the ...right pane, under Smart Card Reader, click the correct reader. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. Type your current smart card PIN. 5. General tasks Updating BIOS smart card settings To require a smart card PIN when you restart the computer: 1. In the left...
ProtectTools (Select Models Only) - Windows Vista
Page 26
... power-on authentication When enabled, power-on authentication involves the following steps: 1. Enable Java Card power-on authentication in Chapter 5, "BIOS Configuration for HP ProtectTools." 2. The process of enabling Java Card power-on authentication requires you to enter a new PIN. 5. Enter the current Java... Card PIN in BIOS Configuration or Computer Setup. Create and enable the administrator Java Card. 20 Chapter 3 Java Card Security for HP ProtectTools ENWW Click OK. Enable Java Card power-on authentication support in the PIN...
... power-on authentication When enabled, power-on authentication involves the following steps: 1. Enable Java Card power-on authentication in Chapter 5, "BIOS Configuration for HP ProtectTools." 2. The process of enabling Java Card power-on authentication requires you to enter a new PIN. 5. Enter the current Java... Card PIN in BIOS Configuration or Computer Setup. Create and enable the administrator Java Card. 20 Chapter 3 Java Card Security for HP ProtectTools ENWW Click OK. Enable Java Card power-on authentication support in the PIN...
ProtectTools (Select Models Only) - Windows Vista
Page 31
.... On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for HP ProtectTools. ENWW 25 For example, Credential Manager for HP ProtectTools can use Embedded Security for HP ProtectTools. 4 Embedded Security for HP ProtectTools NOTE The integrated Trusted Platform Module (TPM) embedded security chip ... Internet Explorer) for protected digital certificate operations when using the Embedded Security software The TPM embedded security chip enhances and enables other HP ProtectTools Security Manager security features.
.... On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for HP ProtectTools. ENWW 25 For example, Credential Manager for HP ProtectTools can use Embedded Security for HP ProtectTools. 4 Embedded Security for HP ProtectTools NOTE The integrated Trusted Platform Module (TPM) embedded security chip ... Internet Explorer) for protected digital certificate operations when using the Embedded Security software The TPM embedded security chip enhances and enables other HP ProtectTools Security Manager security features.
ProtectTools (Select Models Only) - Windows Vista
Page 32
... and change to the Embedded Security configuration. 8. Open Computer Setup by turning on -screen instructions. 26 Chapter 4 Embedded Security for HP ProtectTools. This procedure cannot be enabled in BIOS Configuration for HP ProtectTools ENWW If you have not set an administrator password, use the arrow keys to select Security > Setup password, and then...
... and change to the Embedded Security configuration. 8. Open Computer Setup by turning on -screen instructions. 26 Chapter 4 Embedded Security for HP ProtectTools. This procedure cannot be enabled in BIOS Configuration for HP ProtectTools ENWW If you have not set an administrator password, use the arrow keys to select Security > Setup password, and then...
ProtectTools (Select Models Only) - Windows Vista
Page 40
... users Windows access to the Computer Setup utility security and configuration settings. 5 BIOS Configuration for HP ProtectTools BIOS Configuration for HP ProtectTools provides access to system security features that are also available in BIOS Configuration for HP ProtectTools ENWW With BIOS Configuration, you can ● Manage power-on passwords and administrator passwords. ... options, which includes enabling MultiBoot and changing the boot order. NOTE Many of the features in Computer Setup. 34 Chapter 5 BIOS Configuration for HP ProtectTools are managed by Computer Setup.
... users Windows access to the Computer Setup utility security and configuration settings. 5 BIOS Configuration for HP ProtectTools BIOS Configuration for HP ProtectTools provides access to system security features that are also available in BIOS Configuration for HP ProtectTools ENWW With BIOS Configuration, you can ● Manage power-on passwords and administrator passwords. ... options, which includes enabling MultiBoot and changing the boot order. NOTE Many of the features in Computer Setup. 34 Chapter 5 BIOS Configuration for HP ProtectTools are managed by Computer Setup.
ProtectTools (Select Models Only) - Windows Vista
Page 41
... 8. Managing boot options You can use BIOS Configuration to manage various settings for Express Boot Popup Delay (Sec). 6. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left pane, click BIOS Configuration. 3. NOTE The BIOS administrator password prompt is displayed only if you... password," later in the HP ProtectTools window to save your Computer Setup administrator password at startup and entering Computer Setup. Click Apply, and then click OK in this chapter. 4. To manage boot options: 1. General tasks BIOS Configuration allows you to manage...
... 8. Managing boot options You can use BIOS Configuration to manage various settings for Express Boot Popup Delay (Sec). 6. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left pane, click BIOS Configuration. 3. NOTE The BIOS administrator password prompt is displayed only if you... password," later in the HP ProtectTools window to save your Computer Setup administrator password at startup and entering Computer Setup. Click Apply, and then click OK in this chapter. 4. To manage boot options: 1. General tasks BIOS Configuration allows you to manage...
ProtectTools (Select Models Only) - Windows Vista
Page 42
... by your Computer Setup administrator password at Boot ● Swapping fn/Ctrl Keys ● Multiple Pointing Devices ● USB Legacy Support 36 Chapter 5 BIOS Configuration for HP ProtectTools ENWW Enter your computer. To enable or disable devices or security options: 1. In the left pane, click System Configuration, and then enable or...● Internal Network Adapter Boot ● Internal Network Adapter Boot Mode (PXE or RPL) ● Boot Order ● Device Configurations ● NumLock at the BIOS administrator password prompt, and then click OK. 4. In the left pane, click...
... by your Computer Setup administrator password at Boot ● Swapping fn/Ctrl Keys ● Multiple Pointing Devices ● USB Legacy Support 36 Chapter 5 BIOS Configuration for HP ProtectTools ENWW Enter your computer. To enable or disable devices or security options: 1. In the left pane, click System Configuration, and then enable or...● Internal Network Adapter Boot ● Internal Network Adapter Boot Mode (PXE or RPL) ● Boot Order ● Device Configurations ● NumLock at the BIOS administrator password prompt, and then click OK. 4. In the left pane, click...
ProtectTools (Select Models Only) - Windows Vista
Page 43
Click Apply, and then click OK in the HP ProtectTools window to save your changes and exit. ENWW General tasks 37 ● Parallel port mode (standard, bidirectional, EPP, or ECP) ● Data Execution Prevention ...9679; SATA Native Mode ● Dual Core CPU ● Automatic Intel® SpeedStep Functionality Support ● Fan Always on While on AC Power ● BIOS DMA Data Transfers ● Intel or AMD PSAE Execution Disable ● Built-In Device Options ● Embedded WLAN Device Radio ● Embedded WWAN Device Radio...
Click Apply, and then click OK in the HP ProtectTools window to save your changes and exit. ENWW General tasks 37 ● Parallel port mode (standard, bidirectional, EPP, or ECP) ● Data Execution Prevention ...9679; SATA Native Mode ● Dual Core CPU ● Automatic Intel® SpeedStep Functionality Support ● Fan Always on While on AC Power ● BIOS DMA Data Transfers ● Intel or AMD PSAE Execution Disable ● Built-In Device Options ● Embedded WLAN Device Radio ● Embedded WWAN Device Radio...
ProtectTools (Select Models Only) - Windows Vista
Page 44
... prompt, and then click OK. 4. Enter your changes. 38 Chapter 5 BIOS Configuration for HP ProtectTools module. Click Apply, and then click OK in BIOS Configuration. Advanced tasks Managing HP ProtectTools settings Some of the features of HP ProtectTools Security Manager can be managed in the HP ProtectTools window to use the smart card or the Java...
... prompt, and then click OK. 4. Enter your changes. 38 Chapter 5 BIOS Configuration for HP ProtectTools module. Click Apply, and then click OK in BIOS Configuration. Advanced tasks Managing HP ProtectTools settings Some of the features of HP ProtectTools Security Manager can be managed in the HP ProtectTools window to use the smart card or the Java...