Security: Power-on password
Keyboard password
Diskette drive control enable/disable
Diskette boot control enable/disable
External USB port enable/disable
Network Server Mode
Serial interface control
Administrator's password
Disk configuration lock
Removable Diskette drive (optional)
Removable CD-ROM or DVD drive
Security: UEFI Secure Boot and Secure Start support
Tamper-free updates - components digitally signed and verified
Immutable Silicon Root of Trust
Ability to rollback firmware
FIPS 140-2 validation
Secure erase of NAND/User data
Common Criteria certification
TPM (Trusted Platform Module) 1.2 option
Configurable for PCI DSS compliance
TPM (Trusted Platform Module) 2.0 option
Advanced Encryption Standard (AES) and Triple Data Encryption Standard (3DES) on browser
Bezel Locking Kit option
Support for Commercial National Security Algorithms (CNSA)
Chassis Intrusion detection option
Secure Recovery - recover critical firmware to known good state on detection of compromised firmware
Security: UEFI Secure Boot and Secure Start support
Tamper-free updates - components digitally signed and verified
Immutable Silicon Root of Trust
Ability to rollback firmware
FIPS 140-2 validation
Secure erase of NAND/User data
Common Criteria certification
Configurable for PCI DSS compliance
Embedded TPM (Trusted Platform Module) 2.0. Excluded for shipments to China.
Advanced Encryption Standard (AES) and Triple Data Encryption Standard (3DES) on browser
Support for Commercial National Security Algorithms (CNSA)
Secure Recovery - recover critical firmware to a known good state on detection of compromised firmware