ProtectTools (Select Models Only) - Windows Vista
Page 3
...HP ProtectTools Security Manager 2 Understanding security roles ...2 Managing HP ProtectTools passwords 3 Creating a secure password 5 2 Smart Card Security for HP ProtectTools Initializing the smart card ...7 Smart card BIOS security mode ...8 Enabling smart card BIOS security mode and setting the smart card administrator password ...9 Disabling smart card BIOS... the smart card user password 11 Storing the administrator or user card password 12 General tasks ...13 Updating BIOS smart card settings 13 Selecting the smart card reader 13 Changing the smart card PIN 13 Backing up and...
...HP ProtectTools Security Manager 2 Understanding security roles ...2 Managing HP ProtectTools passwords 3 Creating a secure password 5 2 Smart Card Security for HP ProtectTools Initializing the smart card ...7 Smart card BIOS security mode ...8 Enabling smart card BIOS security mode and setting the smart card administrator password ...9 Disabling smart card BIOS... the smart card user password 11 Storing the administrator or user card password 12 General tasks ...13 Updating BIOS smart card settings 13 Selecting the smart card reader 13 Changing the smart card PIN 13 Backing up and...
ProtectTools (Select Models Only) - Windows Vista
Page 4
...disabling Embedded Security 32 Enabling Embedded Security after permanent disable 32 Migrating keys with the Migration Wizard 33 5 BIOS Configuration for HP ProtectTools General tasks ...35 Managing boot options ...35 Enabling and disabling system configuration options 36 Advanced tasks ...38 Managing...options 42 Enabling and disabling stringent security 42 Enabling and disabling power-on authentication on Windows restart 42 6 Credential Manager for HP ProtectTools Setup procedures ...45 Logging on to Credential Manger 45 Using the Credential Manager Logon Wizard 45 Logging on for the ...
...disabling Embedded Security 32 Enabling Embedded Security after permanent disable 32 Migrating keys with the Migration Wizard 33 5 BIOS Configuration for HP ProtectTools General tasks ...35 Managing boot options ...35 Enabling and disabling system configuration options 36 Advanced tasks ...38 Managing...options 42 Enabling and disabling stringent security 42 Enabling and disabling power-on authentication on Windows restart 42 6 Credential Manager for HP ProtectTools Setup procedures ...45 Logging on to Credential Manger 45 Using the Credential Manager Logon Wizard 45 Logging on for the ...
ProtectTools (Select Models Only) - Windows Vista
Page 7
... is provided by the following software modules: ● Smart Card Security for HP ProtectTools ● Java Card Security for HP ProtectTools ● Embedded Security for HP ProtectTools ● BIOS Configuration for HP ProtectTools ● Credential Manager for HP ProtectTools ● Device Access Manager for HP ProtectTools The software modules available for your computer may be installed on...
... is provided by the following software modules: ● Smart Card Security for HP ProtectTools ● Java Card Security for HP ProtectTools ● Embedded Security for HP ProtectTools ● BIOS Configuration for HP ProtectTools ● Credential Manager for HP ProtectTools ● Device Access Manager for HP ProtectTools The software modules available for your computer may be installed on...
ProtectTools (Select Models Only) - Windows Vista
Page 8
NOTE Many of administrators and users. NOTE After you can also open HP ProtectTools by the security officer in cooperation with Credential Manager," in HP ProtectTools can enable smart card BIOS security mode. ● User-Uses the security features. For example, if the security ...), one important practice is to Credential Manager directly from the Windows® Control Panel: ▲ Select Start > All Programs > HP ProtectTools Security Manager. For more information, refer to "Logging on to divide responsibilities and rights among various types of the features in Chapter...
NOTE Many of administrators and users. NOTE After you can also open HP ProtectTools by the security officer in cooperation with Credential Manager," in HP ProtectTools can enable smart card BIOS security mode. ● User-Uses the security features. For example, if the security ...), one important practice is to Credential Manager directly from the Windows® Control Panel: ▲ Select Start > All Programs > HP ProtectTools Security Manager. For more information, refer to "Logging on to divide responsibilities and rights among various types of the features in Chapter...
ProtectTools (Select Models Only) - Windows Vista
Page 9
... utility and to the recovery file that are set and used for smart card power-on (BIOS) authentication. Managing HP ProtectTools passwords Most of the HP ProtectTools Security Manager features are secured by regular users or administrators. The following table lists the ...password is turned on , restarted, or restored from hibernation. Protects access to the computer contents. ENWW Managing HP ProtectTools passwords 3 Power-on password BIOS Configuration Protects access to the Computer Setup utility and the computer contents when the computer is turned on , restarted...
... utility and to the recovery file that are set and used for smart card power-on (BIOS) authentication. Managing HP ProtectTools passwords Most of the HP ProtectTools Security Manager features are secured by regular users or administrators. The following table lists the ...password is turned on , restarted, or restored from hibernation. Protects access to the computer contents. ENWW Managing HP ProtectTools passwords 3 Power-on password BIOS Configuration Protects access to the Computer Setup utility and the computer contents when the computer is turned on , restarted...
ProtectTools (Select Models Only) - Windows Vista
Page 12
...; Initialize a smart card so that it can be used to authenticate users of the smart card. ● Back up and restore smart card BIOS passwords stored on environment, and to enable smart card authentication in a power-on the smart card. 6 Chapter 2 Smart Card Security for computers ... enter a PIN prior to allowing the operating system to load. ● Set and change the password used with other HP ProtectTools modules, such as Credential Manager for HP ProtectTools. ● Work with the Computer Setup utility to configure separate smart cards for an administrator and a user. 2...
...; Initialize a smart card so that it can be used to authenticate users of the smart card. ● Back up and restore smart card BIOS passwords stored on environment, and to enable smart card authentication in a power-on the smart card. 6 Chapter 2 Smart Card Security for computers ... enter a PIN prior to allowing the operating system to load. ● Set and change the password used with other HP ProtectTools modules, such as Credential Manager for HP ProtectTools. ● Work with the Computer Setup utility to configure separate smart cards for an administrator and a user. 2...
ProtectTools (Select Models Only) - Windows Vista
Page 14
... Computer Setup setup password. Smart card BIOS security mode When enabled, smart card BIOS security mode requires you to use a smart card for HP ProtectTools." Enable smart card BIOS security mode in BIOS Configuration. The process of enabling smart card BIOS security mode involves the following : ...9679; Access Computer Setup or the contents of enabling smart card BIOS security mode. The smart card ...
... Computer Setup setup password. Smart card BIOS security mode When enabled, smart card BIOS security mode requires you to use a smart card for HP ProtectTools." Enable smart card BIOS security mode in BIOS Configuration. The process of enabling smart card BIOS security mode involves the following : ...9679; Access Computer Setup or the contents of enabling smart card BIOS security mode. The smart card ...
ProtectTools (Select Models Only) - Windows Vista
Page 15
... the Computer Setup setup password at the prompt and click Finish. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under BIOS Security Mode, click Disable. 4. ENWW Smart card BIOS security mode 9 NOTE If smart card BIOS security mode has previously been enabled, the button on -screen instructions. Enabling smart card...
... the Computer Setup setup password at the prompt and click Finish. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under BIOS Security Mode, click Disable. 4. ENWW Smart card BIOS security mode 9 NOTE If smart card BIOS security mode has previously been enabled, the button on -screen instructions. Enabling smart card...
ProtectTools (Select Models Only) - Windows Vista
Page 16
... the smart card administrator password: 1. In the left pane, click Smart Card Security, and then click BIOS. 3. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under BIOS Security Mode, next to "Smart card BIOS security mode," earlier in Computer Setup. NOTE The following procedure updates the smart card administrator password...
... the smart card administrator password: 1. In the left pane, click Smart Card Security, and then click BIOS. 3. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under BIOS Security Mode, next to "Smart card BIOS security mode," earlier in Computer Setup. NOTE The following procedure updates the smart card administrator password...
ProtectTools (Select Models Only) - Windows Vista
Page 17
...user password in Computer Setup, click the Change button. 4. NOTE If there is highly recommended that you create a recovery file. In the BIOS Password Wizard, you to create a recovery file. however, you to create duplicate cards without using a recovery file. Insert the new user ...offers more information, refer to be entered at startup. Enter the smart card PIN in this check box. 8. Select Start > All Programs > HP ProtectTools Security Manager. 2. Enter the smart card PIN and click OK. For more security; NOTE If you require the smart card PIN to "Creating...
...user password in Computer Setup, click the Change button. 4. NOTE If there is highly recommended that you create a recovery file. In the BIOS Password Wizard, you to create a recovery file. however, you to create duplicate cards without using a recovery file. Insert the new user ...offers more information, refer to be entered at startup. Enter the smart card PIN in this check box. 8. Select Start > All Programs > HP ProtectTools Security Manager. 2. Enter the smart card PIN and click OK. For more security; NOTE If you require the smart card PIN to "Creating...
ProtectTools (Select Models Only) - Windows Vista
Page 18
... PIN be able to access the computer with the new card. In the left pane, click Smart Card Security, and then click BIOS. 4. In the BIOS Password Wizard, you can store the password on the new card. Enter the smart card PIN again in Computer Setup. Enter the...a recovery file," later in this check box. 8. however, you must have already set the administrator password, you can either Administrator or User for HP ProtectTools ENWW Insert a smart card into the reader. 2. CAUTION This procedure updates only the password on Smart Card, click Store. 5. Select Start > All...
... PIN be able to access the computer with the new card. In the left pane, click Smart Card Security, and then click BIOS. 4. In the BIOS Password Wizard, you can store the password on the new card. Enter the smart card PIN again in Computer Setup. Enter the...a recovery file," later in this check box. 8. however, you must have already set the administrator password, you can either Administrator or User for HP ProtectTools ENWW Insert a smart card into the reader. 2. CAUTION This procedure updates only the password on Smart Card, click Store. 5. Select Start > All...
ProtectTools (Select Models Only) - Windows Vista
Page 19
... In the left pane, click Smart Card Security, and then click BIOS. 3. In the right pane, under Change PIN, click Change PIN. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. General tasks Updating BIOS smart card settings To require a smart card PIN when you restart... of the features may be unavailable or incorrectly displayed. In the right pane, under Smart Card BIOS Password Properties, click Settings. 4. ENWW General tasks 13 Select Start > All Programs > HP ProtectTools Security Manager. 2. select the check box to require a PIN at reboot. Type your ...
... In the left pane, click Smart Card Security, and then click BIOS. 3. In the right pane, under Change PIN, click Change PIN. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. General tasks Updating BIOS smart card settings To require a smart card PIN when you restart... of the features may be unavailable or incorrectly displayed. In the right pane, under Smart Card BIOS Password Properties, click Settings. 4. ENWW General tasks 13 Select Start > All Programs > HP ProtectTools Security Manager. 2. select the check box to require a PIN at reboot. Type your ...
ProtectTools (Select Models Only) - Windows Vista
Page 26
... 3. Insert the Java Card into the smart card reader. Enter a name for power-on authentication support," in Chapter 5, "BIOS Configuration for HP ProtectTools ENWW Enable Java Card power-on authentication support in Java Card Security. To assign a name to start the computer. Select ... 3. Refer to "Enabling Java Card power-on authentication involves the following steps: 1. Enable Java Card power-on authentication in BIOS Configuration or Computer Setup. The process of enabling Java Card power-on authentication and creating an administrator Java Card," later in the ...
... 3. Insert the Java Card into the smart card reader. Enter a name for power-on authentication support," in Chapter 5, "BIOS Configuration for HP ProtectTools ENWW Enable Java Card power-on authentication support in Java Card Security. To assign a name to start the computer. Select ... 3. Refer to "Enabling Java Card power-on authentication involves the following steps: 1. Enable Java Card power-on authentication in BIOS Configuration or Computer Setup. The process of enabling Java Card power-on authentication and creating an administrator Java Card," later in the ...
ProtectTools (Select Models Only) - Windows Vista
Page 31
...25 For example, Credential Manager for HP ProtectTools can use Embedded Security for HP ProtectTools. On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for HP ProtectTools. Embedded Security for HP ProtectTools protects against unauthorized access to ...applications (such as an authentication factor when the user logs on to user data or credentials. 4 Embedded Security for HP ProtectTools NOTE The integrated Trusted Platform Module (TPM) embedded security chip must be installed in your computer to use the...
...25 For example, Credential Manager for HP ProtectTools can use Embedded Security for HP ProtectTools. On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for HP ProtectTools. Embedded Security for HP ProtectTools protects against unauthorized access to ...applications (such as an authentication factor when the user logs on to user data or credentials. 4 Embedded Security for HP ProtectTools NOTE The integrated Trusted Platform Module (TPM) embedded security chip must be installed in your computer to use the...
ProtectTools (Select Models Only) - Windows Vista
Page 32
...select TPM Embedded Security, and then press enter. 5. Open Computer Setup by turning on -screen instructions. 26 Chapter 4 Embedded Security for HP ProtectTools. In the Security menu, use the arrow keys to enable and initialize the embedded security chip. Press f10 to accept the changes ... keys to select Security > Setup password, and then press enter. 3. Under Embedded Security, if the device is displayed in BIOS Configuration for HP ProtectTools ENWW Failure to initialize the embedded security chip could result in the Computer Setup utility. Then follow the on or restarting ...
...select TPM Embedded Security, and then press enter. 5. Open Computer Setup by turning on -screen instructions. 26 Chapter 4 Embedded Security for HP ProtectTools. In the Security menu, use the arrow keys to enable and initialize the embedded security chip. Press f10 to accept the changes ... keys to select Security > Setup password, and then press enter. 3. Under Embedded Security, if the device is displayed in BIOS Configuration for HP ProtectTools ENWW Failure to initialize the embedded security chip could result in the Computer Setup utility. Then follow the on or restarting ...
ProtectTools (Select Models Only) - Windows Vista
Page 40
With BIOS Configuration, you can ● Manage power-on passwords and administrator passwords. ● Configure other power-on authentication features, such as enabling smart card passwords and ... order. This gives users Windows access to the Computer Setup utility security and configuration settings. NOTE Many of the features in Computer Setup. 34 Chapter 5 BIOS Configuration for HP ProtectTools are managed by Computer Setup. 5 BIOS Configuration for HP ProtectTools BIOS Configuration for HP ProtectTools provides access to system security features that are also available in...
With BIOS Configuration, you can ● Manage power-on passwords and administrator passwords. ● Configure other power-on authentication features, such as enabling smart card passwords and ... order. This gives users Windows access to the Computer Setup utility security and configuration settings. NOTE Many of the features in Computer Setup. 34 Chapter 5 BIOS Configuration for HP ProtectTools are managed by Computer Setup. 5 BIOS Configuration for HP ProtectTools BIOS Configuration for HP ProtectTools provides access to system security features that are also available in...
ProtectTools (Select Models Only) - Windows Vista
Page 41
.... If you have already set the Computer Setup setup password. In the left pane, click BIOS Configuration. 3. In the left pane, click System Configuration. 5. ENWW General tasks 35 Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, select the delays (in the list. 8....the up arrow or the down arrow to save your Computer Setup administrator password at startup and entering Computer Setup. NOTE The BIOS administrator password prompt is displayed only if you turn on or restart the computer. Enable or disable MultiBoot. 7. Managing boot options ...
.... If you have already set the Computer Setup setup password. In the left pane, click BIOS Configuration. 3. In the left pane, click System Configuration. 5. ENWW General tasks 35 Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, select the delays (in the list. 8....the up arrow or the down arrow to save your Computer Setup administrator password at startup and entering Computer Setup. NOTE The BIOS administrator password prompt is displayed only if you turn on or restart the computer. Enable or disable MultiBoot. 7. Managing boot options ...
ProtectTools (Select Models Only) - Windows Vista
Page 42
To enable or disable devices or security options: 1. In the left pane, click BIOS Configuration. 3. Enabling and disabling system configuration options NOTE Some of the items listed below may not be supported by your Computer Setup... administrator password at Boot ● Swapping fn/Ctrl Keys ● Multiple Pointing Devices ● USB Legacy Support 36 Chapter 5 BIOS Configuration for HP ProtectTools ENWW Select Start > All Programs > HP ProtectTools Security Manager. 2. Enter your computer. In the left pane, click System Configuration, and then enable or disable a system ...
To enable or disable devices or security options: 1. In the left pane, click BIOS Configuration. 3. Enabling and disabling system configuration options NOTE Some of the items listed below may not be supported by your Computer Setup... administrator password at Boot ● Swapping fn/Ctrl Keys ● Multiple Pointing Devices ● USB Legacy Support 36 Chapter 5 BIOS Configuration for HP ProtectTools ENWW Select Start > All Programs > HP ProtectTools Security Manager. 2. Enter your computer. In the left pane, click System Configuration, and then enable or disable a system ...
ProtectTools (Select Models Only) - Windows Vista
Page 43
... Prevention ● SATA Native Mode ● Dual Core CPU ● Automatic Intel® SpeedStep Functionality Support ● Fan Always on While on AC Power ● BIOS DMA Data Transfers ● Intel or AMD PSAE Execution Disable ● Built-In Device Options ● Embedded WLAN Device Radio ● Embedded WWAN Device Radio... ● Embedded Bluetooth® Device Radio ● LAN/WLAN Switching ● Wake on LAN from Off 5. Click Apply, and then click OK in the HP ProtectTools window to save your changes and exit. ENWW General tasks 37
... Prevention ● SATA Native Mode ● Dual Core CPU ● Automatic Intel® SpeedStep Functionality Support ● Fan Always on While on AC Power ● BIOS DMA Data Transfers ● Intel or AMD PSAE Execution Disable ● Built-In Device Options ● Embedded WLAN Device Radio ● Embedded WWAN Device Radio... ● Embedded Bluetooth® Device Radio ● LAN/WLAN Switching ● Wake on LAN from Off 5. Click Apply, and then click OK in the HP ProtectTools window to save your changes and exit. ENWW General tasks 37
ProtectTools (Select Models Only) - Windows Vista
Page 44
...Card power-on the computer. Enter your changes. 38 Chapter 5 BIOS Configuration for HP ProtectTools module. Advanced tasks Managing HP ProtectTools settings Some of the features of HP ProtectTools Security Manager can be managed in the HP ProtectTools window to use the smart card or the Java Card ...authentication when you must also configure the smart card using the Smart Card Security for HP ProtectTools or Java Card Security for HP ProtectTools ENWW Click Apply, and then click OK in BIOS Configuration. NOTE To fully enable the power-on authentication feature, you turn on ...
...Card power-on the computer. Enter your changes. 38 Chapter 5 BIOS Configuration for HP ProtectTools module. Advanced tasks Managing HP ProtectTools settings Some of the features of HP ProtectTools Security Manager can be managed in the HP ProtectTools window to use the smart card or the Java Card ...authentication when you must also configure the smart card using the Smart Card Security for HP ProtectTools or Java Card Security for HP ProtectTools ENWW Click Apply, and then click OK in BIOS Configuration. NOTE To fully enable the power-on authentication feature, you turn on ...