Description: If this option is enabled, a confirmation message is displayed when you clear the security
chip.
UEFI BIOS Update Option
• Flash BIOS Updating by End-Users
Values: Disabled, Enabled
Description: When this option is enabled, all users can update the UEFI BIOS. If you disable this option,
only the person who knows the supervisor password can update the UEFI BIOS.
• Secure RollBack Prevention
Values: Disabled, Enabled
Description: When this option is disabled, you can flash the UEFI BIOS to earlier version.
Note: This item is set as Disabled by default when the OS Optimized Defaults on the Restart menu is
set as Disabled. This item is set as Enabled by default when the OS Optimized Defaults is set as
Enabled.
• Windows UEFI Firmware Update
Values: Enabled, Disabled
Description: Enable or disable the Windows UEFI Firmware Update feature. Select Enabled to allow
Windows UEFI Firmware Update. If you select Disabled, BIOS will skip Windows UEFI Firmware Update.
Memory Protection
• Execution Prevention
Values: Disabled, Enabled
Description: Some computer viruses and worms cause memory buffers to overflow. By enabling this
option, you can protect your computer against attacks from such viruses and worms. If the option is
enabled but you find that a program does not run properly, disable this option first and then reset the
settings.
Virtualization
• Intel(R) Virtualization Technology
Values: Disabled, Enabled
Description: If this option is enabled, a Virtual Machine Monitor (VMM) can utilize the additional hardware
capabilities provided by Intel Virtualization Technology. This setting should be set to Disabled to prevent
security risks if operating system does not support a VMM.
Note: This item is set as Disabled by default when the OS Optimized Defaults on the Restart menu is
set as Disabled. This item is set as Enabled by default when the OS Optimized Defaults is set as
Enabled.
• Intel(R) VT-d Feature
Values: Disabled, Enabled
Description: Intel VT-d stands for Intel Virtualization Technology for Directed I/O. When enabled, a VMM
can utilize the platform infrastructure for I/O virtualization. This setting should be set to Disabled to
prevent security risks if the operating system does not support a VMM.
Note: This item is set as Disabled by default when the OS Optimized Defaults on the Restart menu is
set as Disabled. This item is set as Enabled by default when the OS Optimized Defaults is set as
Enabled.
Chapter 6. Advanced configuration 65