ProtectTools (Select Models Only) - Windows Vista
Page 3
...HP ProtectTools Security Manager 2 Understanding security roles ...2 Managing HP ProtectTools passwords 3 Creating a secure password 5 2 Smart Card Security for HP ProtectTools Initializing the smart card ...7 Smart card BIOS security mode ...8 Enabling smart card BIOS security mode and setting the smart card administrator password ...9 Disabling smart card BIOS... the smart card user password 11 Storing the administrator or user card password 12 General tasks ...13 Updating BIOS smart card settings 13 Selecting the smart card reader 13 Changing the smart card PIN 13 Backing up and...
...HP ProtectTools Security Manager 2 Understanding security roles ...2 Managing HP ProtectTools passwords 3 Creating a secure password 5 2 Smart Card Security for HP ProtectTools Initializing the smart card ...7 Smart card BIOS security mode ...8 Enabling smart card BIOS security mode and setting the smart card administrator password ...9 Disabling smart card BIOS... the smart card user password 11 Storing the administrator or user card password 12 General tasks ...13 Updating BIOS smart card settings 13 Selecting the smart card reader 13 Changing the smart card PIN 13 Backing up and...
ProtectTools (Select Models Only) - Windows Vista
Page 4
...disabling Embedded Security 32 Enabling Embedded Security after permanent disable 32 Migrating keys with the Migration Wizard 33 5 BIOS Configuration for HP ProtectTools General tasks ...35 Managing boot options ...35 Enabling and disabling system configuration options 36 Advanced tasks ...38 Managing...options 42 Enabling and disabling stringent security 42 Enabling and disabling power-on authentication on Windows restart 42 6 Credential Manager for HP ProtectTools Setup procedures ...45 Logging on to Credential Manger 45 Using the Credential Manager Logon Wizard 45 Logging on for the ...
...disabling Embedded Security 32 Enabling Embedded Security after permanent disable 32 Migrating keys with the Migration Wizard 33 5 BIOS Configuration for HP ProtectTools General tasks ...35 Managing boot options ...35 Enabling and disabling system configuration options 36 Advanced tasks ...38 Managing...options 42 Enabling and disabling stringent security 42 Enabling and disabling power-on authentication on Windows restart 42 6 Credential Manager for HP ProtectTools Setup procedures ...45 Logging on to Credential Manger 45 Using the Credential Manager Logon Wizard 45 Logging on for the ...
ProtectTools (Select Models Only) - Windows Vista
Page 7
...Platform Module (TPM) embedded security chip (select models only) be preinstalled, preloaded, or available for download from the HP Web site. ENWW 1 NOTE The instructions in this guide are written with the assumption that help protect against unauthorized ...modules: ● Smart Card Security for HP ProtectTools ● Java Card Security for HP ProtectTools ● Embedded Security for HP ProtectTools ● BIOS Configuration for HP ProtectTools ● Credential Manager for HP ProtectTools ● Device Access Manager for HP ProtectTools The software modules available for your ...
...Platform Module (TPM) embedded security chip (select models only) be preinstalled, preloaded, or available for download from the HP Web site. ENWW 1 NOTE The instructions in this guide are written with the assumption that help protect against unauthorized ...modules: ● Smart Card Security for HP ProtectTools ● Java Card Security for HP ProtectTools ● Embedded Security for HP ProtectTools ● BIOS Configuration for HP ProtectTools ● Credential Manager for HP ProtectTools ● Device Access Manager for HP ProtectTools The software modules available for your ...
ProtectTools (Select Models Only) - Windows Vista
Page 8
...divide responsibilities and rights among various types of the features in Chapter 6 "Credential Manager for the system, the user can enable smart card BIOS security mode. ● User-Uses the security features. For more information, refer to "Logging on to deploy, such as smart cards, ... and determines the security features to Credential Manager directly from the Windows® Control Panel: ▲ Select Start > All Programs > HP ProtectTools Security Manager. For example, if the security officer has decided to deploy smart cards, the IT administrator can set the smart card...
...divide responsibilities and rights among various types of the features in Chapter 6 "Credential Manager for the system, the user can enable smart card BIOS security mode. ● User-Uses the security features. For more information, refer to "Logging on to deploy, such as smart cards, ... and determines the security features to Credential Manager directly from the Windows® Control Panel: ▲ Select Start > All Programs > HP ProtectTools Security Manager. For example, if the security officer has decided to deploy smart cards, the IT administrator can set the smart card...
ProtectTools (Select Models Only) - Windows Vista
Page 9
...of the Java Card. ENWW Managing HP ProtectTools passwords 3 HP ProtectTools password Set in this HP ProtectTools Function module Computer Setup setup password NOTE Also known as BIOS administrator, f10 Setup, or Security Setup password BIOS Configuration, by IT administrator Protects access ... used for power-on , restarted, or restored from hibernation. The passwords that contains the BIOS passwords. Managing HP ProtectTools passwords Most of the HP ProtectTools Security Manager features are indicated in this table as well. Protects access to the Computer...
...of the Java Card. ENWW Managing HP ProtectTools passwords 3 HP ProtectTools password Set in this HP ProtectTools Function module Computer Setup setup password NOTE Also known as BIOS administrator, f10 Setup, or Security Setup password BIOS Configuration, by IT administrator Protects access ... used for power-on , restarted, or restored from hibernation. The passwords that contains the BIOS passwords. Managing HP ProtectTools passwords Most of the HP ProtectTools Security Manager features are indicated in this table as well. Protects access to the Computer...
ProtectTools (Select Models Only) - Windows Vista
Page 12
...load. ● Set and change the password used with other HP ProtectTools modules, such as Credential Manager for HP ProtectTools. ● Work with an optional smart card reader. 2 Smart Card Security for HP ProtectTools Smart Card Security for HP ProtectTools manages the smart card setup and configuration for computers equipped... a smart card so that it can be used to authenticate users of the smart card. ● Back up and restore smart card BIOS passwords stored on environment, and to enable smart card authentication in a power-on the smart card. 6 Chapter 2 Smart Card Security for...
...load. ● Set and change the password used with other HP ProtectTools modules, such as Credential Manager for HP ProtectTools. ● Work with an optional smart card reader. 2 Smart Card Security for HP ProtectTools Smart Card Security for HP ProtectTools manages the smart card setup and configuration for computers equipped... a smart card so that it can be used to authenticate users of the smart card. ● Back up and restore smart card BIOS passwords stored on environment, and to enable smart card authentication in a power-on the smart card. 6 Chapter 2 Smart Card Security for...
ProtectTools (Select Models Only) - Windows Vista
Page 14
... the computer when the computer is set as the Computer Setup setup password. Refer to "Enabling smart card BIOS security mode and setting the smart card administrator password," later in Chapter 5, "BIOS Configuration for HP ProtectTools." NOTE Enabling this chapter. 3. The smart card administrator password links the smart card to the computer for...
... the computer when the computer is set as the Computer Setup setup password. Refer to "Enabling smart card BIOS security mode and setting the smart card administrator password," later in Chapter 5, "BIOS Configuration for HP ProtectTools." NOTE Enabling this chapter. 3. The smart card administrator password links the smart card to the computer for...
ProtectTools (Select Models Only) - Windows Vista
Page 15
... the smart card" for detailed instructions. ● Creating a recovery file. Select Start > All Programs > HP ProtectTools Security Manager. 2. Click Next. 5. In the right pane, under BIOS Security Mode, click Disable. 4. To disable smart card security: 1. In the left pane, click Smart Card... Refer to access the computer. Enabling smart card BIOS security mode and setting the smart card administrator password To enable smart card BIOS security mode and set the smart card administrator password: 1. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane,...
... the smart card" for detailed instructions. ● Creating a recovery file. Select Start > All Programs > HP ProtectTools Security Manager. 2. Click Next. 5. In the right pane, under BIOS Security Mode, click Disable. 4. To disable smart card security: 1. In the left pane, click Smart Card... Refer to access the computer. Enabling smart card BIOS security mode and setting the smart card administrator password To enable smart card BIOS security mode and set the smart card administrator password: 1. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane,...
ProtectTools (Select Models Only) - Windows Vista
Page 16
...password: 1. Insert the new administrator card and click Next. 6. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left pane, click Smart Card Security, and then click BIOS. 3. To change the smart card administrator password after it has been set as part of the process... for HP ProtectTools ENWW Enter the smart card PIN and click Finish. 10 Chapter 2 Smart Card Security for enabling smart card BIOS security mode. Changing the smart card administrator password The smart card administrator...
...password: 1. Insert the new administrator card and click Next. 6. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left pane, click Smart Card Security, and then click BIOS. 3. To change the smart card administrator password after it has been set as part of the process... for HP ProtectTools ENWW Enter the smart card PIN and click Finish. 10 Chapter 2 Smart Card Security for enabling smart card BIOS security mode. Changing the smart card administrator password The smart card administrator...
ProtectTools (Select Models Only) - Windows Vista
Page 17
... is displayed. In the left pane, click Smart Card Security, and then click BIOS. 3. Enter the smart card PIN in Computer Setup, click the Change button. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under BIOS Security Mode, next to be entered at startup, clear this chapter. 9. Insert the...
... is displayed. In the left pane, click Smart Card Security, and then click BIOS. 3. Enter the smart card PIN in Computer Setup, click the Change button. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under BIOS Security Mode, next to be entered at startup, clear this chapter. 9. Insert the...
ProtectTools (Select Models Only) - Windows Vista
Page 18
... recovery file to create a backup card and have already set the administrator password, you can either Administrator or User for HP ProtectTools ENWW In the BIOS Password Wizard, you can store the password on the new card. NOTE If you do not require the smart card PIN...able to be entered at startup. CAUTION This procedure updates only the password on Smart Card, click Store. 5. Select Start > All Programs > HP ProtectTools Security Manager. 3. NOTE Using a known password enables you to create duplicate cards without using a recovery file. The system prompts you to ...
... recovery file to create a backup card and have already set the administrator password, you can either Administrator or User for HP ProtectTools ENWW In the BIOS Password Wizard, you can store the password on the new card. NOTE If you do not require the smart card PIN...able to be entered at startup. CAUTION This procedure updates only the password on Smart Card, click Store. 5. Select Start > All Programs > HP ProtectTools Security Manager. 3. NOTE Using a known password enables you to create duplicate cards without using a recovery file. The system prompts you to ...
ProtectTools (Select Models Only) - Windows Vista
Page 19
... the right pane, under Smart Card Reader, click the correct reader. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under Smart Card BIOS Password Properties, click Settings. 4. If the correct reader is automatically refreshed. Changing the smart card PIN To ...Insert the smart card into the reader. ENWW General tasks 13 Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left pane, click Smart Card Security, and then click BIOS. 3. NOTE To eliminate this requirement, clear the check box. 5. Enter the smart card ...
... the right pane, under Smart Card Reader, click the correct reader. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. In the right pane, under Smart Card BIOS Password Properties, click Settings. 4. If the correct reader is automatically refreshed. Changing the smart card PIN To ...Insert the smart card into the reader. ENWW General tasks 13 Select Start > All Programs > HP ProtectTools Security Manager. 2. In the left pane, click Smart Card Security, and then click BIOS. 3. NOTE To eliminate this requirement, clear the check box. 5. Enter the smart card ...
ProtectTools (Select Models Only) - Windows Vista
Page 26
...When enabled, power-on authentication requires you to "Enabling and disabling smart card or Java Card power-on authentication support," in Chapter 5, "BIOS Configuration for power-on authentication. Create and enable the administrator Java Card. 20 Chapter 3 Java Card Security for the Java Card in the... Name box. 7. Click OK. Enter a name for HP ProtectTools ENWW The process of enabling Java Card power-on authentication support in BIOS Configuration or Computer Setup. To assign a name to start the computer. Insert the Java Card into the ...
...When enabled, power-on authentication requires you to "Enabling and disabling smart card or Java Card power-on authentication support," in Chapter 5, "BIOS Configuration for power-on authentication. Create and enable the administrator Java Card. 20 Chapter 3 Java Card Security for the Java Card in the... Name box. 7. Click OK. Enter a name for HP ProtectTools ENWW The process of enabling Java Card power-on authentication support in BIOS Configuration or Computer Setup. To assign a name to start the computer. Insert the Java Card into the ...
ProtectTools (Select Models Only) - Windows Vista
Page 31
.... On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for HP ProtectTools protects against unauthorized access to user data or credentials. 4 Embedded Security for HP ProtectTools NOTE The integrated Trusted Platform Module (TPM) embedded security chip must be installed in your computer to use Embedded...
.... On select models, the TPM embedded security chip also enables enhanced BIOS security features accessed through BIOS Configuration for HP ProtectTools protects against unauthorized access to user data or credentials. 4 Embedded Security for HP ProtectTools NOTE The integrated Trusted Platform Module (TPM) embedded security chip must be installed in your computer to use Embedded...
ProtectTools (Select Models Only) - Windows Vista
Page 32
...Based Setup" message is displayed in the following 2 sections to select TPM Embedded Security, and then press enter. 5. Type your password in BIOS Configuration for HP ProtectTools ENWW To save your IT administrator immediately initialize the embedded security chip. To enable the embedded security chip: 1. In the Security menu,... Security > Setup password, and then press enter. 3. Open Computer Setup by turning on -screen instructions. 26 Chapter 4 Embedded Security for HP ProtectTools. Setup procedures CAUTION To reduce security risk, it is hidden, select Available. 6.
...Based Setup" message is displayed in the following 2 sections to select TPM Embedded Security, and then press enter. 5. Type your password in BIOS Configuration for HP ProtectTools ENWW To save your IT administrator immediately initialize the embedded security chip. To enable the embedded security chip: 1. In the Security menu,... Security > Setup password, and then press enter. 3. Open Computer Setup by turning on -screen instructions. 26 Chapter 4 Embedded Security for HP ProtectTools. Setup procedures CAUTION To reduce security risk, it is hidden, select Available. 6.
ProtectTools (Select Models Only) - Windows Vista
Page 40
... Setup utility security and configuration settings. NOTE Many of the features in BIOS Configuration for HP ProtectTools are also available in Computer Setup. 34 Chapter 5 BIOS Configuration for HP ProtectTools provides access to system security features that are managed by Computer Setup. With BIOS Configuration, you can ● Manage power-on passwords and administrator passwords...
... Setup utility security and configuration settings. NOTE Many of the features in BIOS Configuration for HP ProtectTools are also available in Computer Setup. 34 Chapter 5 BIOS Configuration for HP ProtectTools provides access to system security features that are managed by Computer Setup. With BIOS Configuration, you can ● Manage power-on passwords and administrator passwords...
ProtectTools (Select Models Only) - Windows Vista
Page 41
... prompt is displayed only if you have enabled MultiBoot, select the boot order by pressing f10 at the BIOS administrator password prompt, and then click OK. Click Apply, and then click OK in the HP ProtectTools window to save your Computer Setup administrator password at startup and entering Computer Setup. If you...
... prompt is displayed only if you have enabled MultiBoot, select the boot order by pressing f10 at the BIOS administrator password prompt, and then click OK. Click Apply, and then click OK in the HP ProtectTools window to save your Computer Setup administrator password at startup and entering Computer Setup. If you...
ProtectTools (Select Models Only) - Windows Vista
Page 42
...9679; Internal Network Adapter Boot Mode (PXE or RPL) ● Boot Order ● Device Configurations ● NumLock at the BIOS administrator password prompt, and then click OK. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. Enter your computer. To enable or disable devices or security options: 1. Enabling and disabling system configuration options...supported by your Computer Setup administrator password at Boot ● Swapping fn/Ctrl Keys ● Multiple Pointing Devices ● USB Legacy Support 36 Chapter 5 BIOS Configuration for HP ProtectTools ENWW
...9679; Internal Network Adapter Boot Mode (PXE or RPL) ● Boot Order ● Device Configurations ● NumLock at the BIOS administrator password prompt, and then click OK. 4. Select Start > All Programs > HP ProtectTools Security Manager. 2. Enter your computer. To enable or disable devices or security options: 1. Enabling and disabling system configuration options...supported by your Computer Setup administrator password at Boot ● Swapping fn/Ctrl Keys ● Multiple Pointing Devices ● USB Legacy Support 36 Chapter 5 BIOS Configuration for HP ProtectTools ENWW
ProtectTools (Select Models Only) - Windows Vista
Page 43
... Prevention ● SATA Native Mode ● Dual Core CPU ● Automatic Intel® SpeedStep Functionality Support ● Fan Always on While on AC Power ● BIOS DMA Data Transfers ● Intel or AMD PSAE Execution Disable ● Built-In Device Options ● Embedded WLAN Device Radio ● Embedded WWAN Device Radio...® Device Radio ● LAN/WLAN Switching ● Wake on LAN from Off 5. ENWW General tasks 37 Click Apply, and then click OK in the HP ProtectTools window to save your changes and exit.
... Prevention ● SATA Native Mode ● Dual Core CPU ● Automatic Intel® SpeedStep Functionality Support ● Fan Always on While on AC Power ● BIOS DMA Data Transfers ● Intel or AMD PSAE Execution Disable ● Built-In Device Options ● Embedded WLAN Device Radio ● Embedded WWAN Device Radio...® Device Radio ● LAN/WLAN Switching ● Wake on LAN from Off 5. ENWW General tasks 37 Click Apply, and then click OK in the HP ProtectTools window to save your changes and exit.
ProtectTools (Select Models Only) - Windows Vista
Page 44
... Disable. 6. In the left pane, click BIOS Configuration. 3. Select Start > All Programs > HP ProtectTools Security Manager. 2. Advanced tasks Managing HP ProtectTools settings Some of the features of HP ProtectTools Security Manager can be managed in the HP ProtectTools window to use the smart card or ...turn on the computer. NOTE To disable smart card power-on authentication support: 1. Enter your changes. 38 Chapter 5 BIOS Configuration for HP ProtectTools ENWW NOTE To fully enable the power-on authentication feature, you must also configure the smart card using the Smart...
... Disable. 6. In the left pane, click BIOS Configuration. 3. Select Start > All Programs > HP ProtectTools Security Manager. 2. Advanced tasks Managing HP ProtectTools settings Some of the features of HP ProtectTools Security Manager can be managed in the HP ProtectTools window to use the smart card or ...turn on the computer. NOTE To disable smart card power-on authentication support: 1. Enter your changes. 38 Chapter 5 BIOS Configuration for HP ProtectTools ENWW NOTE To fully enable the power-on authentication feature, you must also configure the smart card using the Smart...