Security: Cryptographically signed firmware
Secure Boot
Secure Erase
Silicon Root of Trust
System Lockdown (requires iDRAC9 Enterprise or Datacenter)
TPM 2.0 FIPS, CC-TCG certified, TPM 2.0 China NationZ
Secured Component Verification (Hardware integrity check)
Data at Rest Encryption (SEDs with local or external key mgmt)