Skip to content

Glossary of Terms#

Administrator (hard disk) Password#

Hard disk password, available if Dual Password is enabled. - ThinkPad: Admin + User password - ThinkCentre & Thinkstation: Master + User passwords.

Admin and Master are synonyms.

More information: - "Types of password for ThinkPad" at Lenovo Support - BIOS Security Settings

Relevant settings: - Hard Disk Password (ThinkCentre) - Password Policies (ThinkCentre) - NVMe1 Password (ThinkPad)


AHC#

Advanced Host Controller Interface

More information: - "Serial ATA AHCI: Specification" at Intel.com

Relevant settings: - Configure SATA As (ThinkCentre)

See also:

RAID, SATA


AMT#

Intel® Active Management Technology

Remote management solution from Intel®.

More information: - "Intel® Active Management Technology" at Intel.com

Relevant settings: - Intel® Manageability (ThinkCentre) - Intel® AMT Settings (ThinkPad) - Onboard Ethernet Controller (ThinkCentre)

See also:

MEBx


ASPM#

Active State Power Management

PCI Express power management for power saving while fully active.

More information:

Relevant settings:

See also:

PCIe


ATA#

Advanced Technology Attachment (Hard Disk Drive)

A hard disk drive with an integrated controller. Usually implemented as a serial drive (SATA).

More information:

Relevant settings: - SATA Controller - SATA Drive {Number} Password - First Boot Device

See also:

SATA, HDD


Audit mode#

Enables programmatic discovery of signature list combinations that successfully authenticate installed EFI images without the risk of rendering a system unbootable.

Chosen signature lists configurations can be tested to ensure the system will continue to boot after the system is transitioned out of Audit Mode.

More information: - UEFI Specification Version 2.9 (March 2021) at UEFI.org

Relevant settings: - Enter Audit Mode (ThinkCentre)

See also:

Custom mode, Setup Mode


BIOS#

Basic Input/Output System

Overrides user OS permissions to access settings in all cases; has no access to OS settings.

More information: - "What Is BIOS?" at Lenovo Support

See also:

UEFI


BIOS Self-healing#

BIOS is programmed to restore the machine to its previous state through an uncorrupted, secure backup.

More information:

Relevant settings: - BIOS Self-healing (ThinkCentre)


CA#

Certification Authority

Organization that verifies identity and issues public key certificates to parties.

More information: - "Windows Secure Boot Key Creation and Management Guidance" at Microsoft.com - More information at UEFI.org

Relevant settings: - Allow Microsoft 3rd Party UEFI CA (ThinkCentre) - TLS Auth Configuration (ThinkCentre)

See also:

UEFI


C State#

Core Power States

A series of states numbered 0 to n, where each successive lower state number represents lower power consumption.

More information: - "C-State" at Intel.com

Relevant settings: - C State Support (ThinkCentre)


Custom Mode#

Custom Mode allows a user to install their own set of keys. The specifications for Secure Boot state allow a boot to occur in Custom Mode without a PK. This allows an OS to enroll a new PK which would then be used to validate its own KEK, db, and dbx.

More information:

Relevant settings: - Secure Boot Key State

Deployed Mode, Setup Mode


DASH#

Desktop and mobile Architecture for System Hardware

Secure out-of-band and remote client management standard.

More information: - DASH article at Lenovo CDRT - "Desktop and Mobile Architecture for System Hardware" at DTMF.org


Deployed mode#

In Deployed Mode, PK must be installed and the BIOS performs signature verification on programmatic attempts to update policy objects.

Relevant settings: - Enter Deployed Mode (ThinkCentre)

See also:

Setup Mode, Custom Mode


DHCP#

Dynamic Host Configuration Protocol

Network management protocol used on Internet Protocol (IP) networks for automatically assigning IP addresses and other communication parameters to devices connected to the network using a client-server architecture.

More information:

Relevant settings: - Lenovo Cloud Services (ThinkPad)


DPTF#

Dynamic Platform and Thermal Framework

Intel Dynamic Platform and Thermal Framework (IDPTF) is a power and thermal management solution. It is used to resolve fan noise, overheating, and performance-related issues of the system.

Relevant settings:


DRAM#

Dynamic Random-Access Memory

Random-access semiconductor memory that stores each bit of data in a memory cell, usually consisting of a tiny capacitor and a transistor, both typically based on metal-oxide-semiconductor technology.

More information:

Relevant settings:


EAP#

Extensible Authentication Protocol

Authentication framework supporting multiple authentication methods.

More information: - "Extensible Authentication Protocol (EAP)" at IETF.org - "802.1X Overview and EAP Types" at Intel.com

Relevant settings: - EAP Authentication Method (ThinkPad)

See also:

PEAP


EEPROM#

Electrically Erasable Programmable Read-Only Memory

Non-volatile memory storing relatively small amounts of data by allowing individual bytes to be erased and reprogrammed.

Relevant settings: - MAC Address Pass Through (ThinkPad)


EFI#

Extensible Firmware Interface

Used in the context of HTTPS Boot.

Relevant settings: - Delete HTTPs Boot Option from List (ThinkCentre)

See also:

UEFI


EIST#

Enhanced Intel SpeedStep® Technology

Dynamically adjusts processor voltage and core frequency, to decrease average power consumption and heat production.

More information: - "Overview of Enhanced Intel SpeedStep® Technology for Intel® Processors"at Intel.com

Relevant settings: - EIST Support (ThinkCentre)


EPP#

Enhanced Parallel Port

A high-speed bi-directional mode for non-printer peripherals.

More information:

Relevant settings: - Parallel Port Mode & EPP Version (ThinkCentre)


Flash BIOS#

Updating the BIOS.

More information: - "How to update BIOS" at Intel.com

Relevant settings: - "How to update system BIOS - Windows" at Lenovo.com - Flash BIOS Updating by End-Users (ThinkPad)


Form Factor#

The size and spatial design of the computer and its individual components. Broadly similar or the same across a model line.


GPU#

Graphics Processing Unit

Specialized processor originally designed to accelerate graphics rendering, able to process many pieces of data simultaneously, useful for machine learning, video editing, and gaming applications, and may be integrated into the computer’s CPU or offered as a discrete hardware unit.

More information: - "What Is a GPU?" at Intel.com

Relevant settings: - PCIe Tunneling (ThinkPad)

See also:

UMA


HDD#

Hard Disk Drive

More information: - "Laptop Hard Drives, SSD & Storage" at Lenovo.com

Relevant settings: - First Boot Device (ThinkCentre) - Boot Priority Order (THinkPad)

See also:

ATA , HDP , RST , SATA


HDP#

Hard Disk Password

Prevents unauthorized access to the data on the storage drive. Some models may support dual passwords, with a user password and an administrator password.

More information:

Relevant settings: - Require HDP on System Boot (ThinkCentre) - Hard Disk Password (ThinkCentre)

See also:

HDD


IOMMU#

Input-Output Memory Management Unit

Hardware assisted address translation from I/O device virtual addresses to physical addresses, to improve the system performance in virtual environments.

More information: - More information at Lenovo.com

Relevant settings: - Device Guard (ThinkCentre) - Device Guard (ThinkPad)


IRQ#

Interrupt Request Line

Hardware line allowing devices to take over processor resources for their function. IRQs are assigned numbers to prioritize devices.

Relevant settings: - Parallel Port IRQ (ThinkCentre) - Serial Port Setup (ThinkCentre)


ITC#

Imaging Technology Center

Lenovo's Cloud Deployment solutions.

More information: - "Welcome to Lenovo Cloud Deploy" at lenovoclouddeploy.com - "CLOUD RECOVERY FROM THE LENOVO CLOUD" at Lenovo.com

Relevant settings: - Lenovo Cloud Services (ThinkPad)


Lenovo Diagnostics#

Tool for testing Lenovo computers. Composed from Modules (diagnostics for a group of devices), tools for creating custom diagnostic scripts, system information, and log history.

More information: - "Lenovo Diagnostics for Windows" at Lenovo PC Support

Relevant settings: - Intel® Total Memory Encryption (ThinkPad)


Magic Packet#

Network packet specific to the network card, used in the Wake On LAN feature.

More information:

Relevant settings: - Wake On Lan (ThinkPad)


(M)HDP#

(Master) Hard Disk Password.

AKA:

Admin (hard disk) password.

Relevant settings: - Hard Disk Password (ThinkStation)

See also:

HDD


MDT#

Microsoft Deployment Toolkit

More information: - "Microsoft Deployment Toolkit documentation" at Microsoft.com - "Lenovo BIOS/UEFI Deployment Guide" at Lenovo CDRT


MEBx#

Intel® Management Engine BIOS Extension

A BIOS menu extension on the Intel® AMT system that can be used to view and manually configure some of Intel® AMT settings.

More information: - More information at Intel.com

Relevant settings: - Intel® MEBx (ThinkCentre)

See also:

[AMT] (https://docs.lenovocdrt.com/ref/bios/glossary?id=amt)


ME#

Intel ® Management Engine

An embedded microcontroller providing features including OOB (out of band) management.

More information: - More information at Intel.com

Relevant settings: - Enhanced Power Saving Mode (ThinkCentre)

See also:

OOB


MemTest86#

Commonly used memory (RAM) testing application.

More information: - More information at memtest86.com

Relevant settings: - Intel(R) Total Memory Encryption (ThinkPad)


MFG (mode)#

Manufacturing Mode

Relevant settings: - Security Chip (ThinkPad)


NFC#

Near-Field Communication

More information:

Relevant settings: - NFC Device (ThinkPad)


NIC#

Network Interface Controller / Card

More information:

Relevant settings: - MAC Address Pass Through (ThinkPad)


NVMe#

Non-Volatile Memory Host Controller Interface Specification

Open, logical-device interface specification for accessing a computer's non-volatile storage media, usually attached via PCI Express bus.

More information:

Relevant settings: - NVMe1 Password (ThinkPad) - Network Boot (ThinkPad)

See also

ATA


ODM#

Original Design Manufacturer

A company that designs and manufactures a product that is eventually rebranded by another firm for sale.

More information: - "Lenovo CSP Is For You!" at Lenovo YouTube
- "Lenovo's Secret Recipe For Hyperscale Success Is Called ODM+" at Forbes.com


OEM#

Original Equipment Manufacturer

A company that manufactures products that it has designed from purchased components and sells those products under the company's brand name.

More information:

Relevant settings:


OOB#

Out-of-band

As in Out-of-band management, hardware-based features that enable remotely manage devices, even when powered down.

More information:

See also:

ME


Optane™#

Standalone memory device that combines storage capacity and system acceleration.

More information: - "Intel® Optane™ Memory - Responsive Memory, Accelerated Performance"at Lenovo.com

Relevant settings: - ATA Drive Setup (ThinkCentre)


OSD#

Operating System Deployment

More information:


PCIe#

PCI (Peripheral Component Interconnect) Express

Serial expansion bus standard.

More information:

Relevant Settings

See also:

ASPM , GPU

PCR#

Platform Configuration Register

A memory location in the TPM, for storing security metrics.

More information:

Relevant settings:
- Security Chip (ThinkPad)

See also:

TPM


PEAP / EAP#

(Protected) Extensible Authentication Protocol

EAP is an authentication framework that supports multiple authentication methods. PEAP adds security services to those EAP methods that EAP provides.

More information:

Relevant settings: - Security (ThinkPad)


PK#

Platform Key

The public key used in Secure Boot.

More information: - "Key Management" at Lenovo CDRT

Relevant settings: - Enter Audit Mode (ThinkCentre) - Key Management (ThinkPad)


Platform#

A specific combination of hardware and software.

Relevant settings: - Intel (R) SIPP Support (ThinkCentre)


POP#

Power On Password

Allows the computer to power on directly to a password prompt but go no further until the correct password is entered.

More information: - BIOS Guide

Relevant settings: - Password Policies (ThinkCentre)

See also:

SVP, SMP


POST#

Power On Self Test

Process of testing and initializing memory, devices, and (depending on model) software required by OS, immediately after power on and before OS is loaded.

More information:

Relevant settings: - Password Count Exceeded Error (ThinkCentre) - USB Enumeration Delay (ThinkCentre)


Predesktop#

The Rescue and Recovery Predesktop Area provides an emergency workspace for users who are unable to start Windows on their computers. Running under Windows PE (Preinstallation Environment), the environment offers the Windows look, feel, and function and helps users solve problems without consuming IT staff time.

More information:

Relevant settings: - Predesktop Authentication (ThinkPad)


PXE#

Preboot eXecution Environment

Method for booting computers using a network interface, independent of local storage devices or installed operating systems.

More information: - ["Preboot Execution Environment (PXE)" at Microsoft.com](https://learn.microsoft.com/en-us/previous-versions/ms818762(v=msdn.10))

Relevant settings: - Network Setup (ThinkCentre) - Network Settings (ThinkPad) - Network Boot (ThinkPad)

See also:

UNDI


RAID#

Redundant Array of Independent Disks

A standard configuration of multiple, redundant hard disks into logical units for scale and reliability.

More information: - "Common RAID Disk Data Format (DDF)" at Storage Networking Industry Association

Relevant settings: - ATA Drive Setup(ThinkCentre)

See also:

ATA, Optane™


RST#

Rapid Storage Technology

Gives enhanced performance and lower power consumption. When using more than one drive, gives additional protection against data loss in the event of a hard drive failure.

More information:

Relevant settings: - Configure SATA As (ThinkCentre)

See also:

RAID, Optane™


SATA#

Serial AT ("Advanced Technology") Attachment

Standard interface between computer bus and storage devices.

More information: - "Developers Can Trust Intel Leadership in Serial ATA" at Intel.com

Relevant settings: - ATA Drive Setup (ThinkCentre) - Startup (ThinkCentre)

See also:

ATA, HDD


(SC)CM#

Configuration Manager or System Center Configuration Manager

More information:


SDB(M)#

System Deployment Boot Mode

Enables programmatic configuration of key security BIOS settings during operating system deployments.

More information: - "System Deployment Boot Mode" at Lenovo CDRT


Security Chip#

A type of Trusted Platform Module (TPM) implemented as a separate chip.

Relevant settings:

See also:

TPM

AKA:

TPM


SEL#

System Event Log

Relevant settings: - System Event Log (ThinkCentre)


Setup mode#

Enables installation of Platform Key and customization of Secure Boot signature databases.

More information:

Relevant settings: - Secure Boot Mode (ThinkPad)

See also:

Deployed Mode, Custom Mode


SGX#

Intel® Software Guard Extensions

Protect selected code and data from modification, by partitioning applications into hardened enclaves or trusted execution modules.

More information: - "Intel® Software Guard Extensions" at Intel.com


SID#

Security Identifier

More information: - More information at trustedcomputinggroup.org

Relevant settings: - Block SID Authentication (ThinkCentre) - Block SID Authentication (ThinkPad)


SIPP#

Intel® Stable Image Platform Program

Validation program that aims for no hardware changes throughout the buying cycle, for at least 15 months or until the next generational release.

More information: - "PC Upgrade: Intel® SIPP" at Intel.com

Relevant settings: - Intel (R) SIPP Support (ThinkCentre)


SMP#

System Management Password

Administrator password mid-way between the Supervisor Password (SVP) and a user password. Can be configured to have the same permissions as the SVP. Can be set through the UEFI BIOS menu or through Windows Management Instrumentation (WMI) with the Lenovo client-management interface.

More information: - More information at Lenovo Support

Relevant settings:
- System Management Password (ThinkCentre)
- System Management Password (ThinkPad) - System Management Password Access Control (ThinkCentre)

See also:

POP, SVP


SMBIOS#

System Management BIOS

Specification for integration of BIOS information into operating systems and higher-level management applications.

More information: - "System Management Bios Reference Specification Eases Implementation for Managed PCs" at Intel.com - "System Management BIOS" at DMTF.org

Relevant settings:
- BIOS Reporting (ThinkPad)

See also:

BIOS, UEFI


SRSETUP#

DOS application to allow ThinkPad Setup settings to be common to all machines and to be controlled remotely.

More information: - "ThinkPad Setup Settings Capture/Playback Utility (SRSETUP) for UEFI - ThinkPad" at Lenovo Support


SR TOOL#

IBM Service Request (SR) tool.

Replaced by Lenovo Online Service Request function.

More information:


SSD (Solid State Disk)#

Storage solution based on collections of memory microchips. Faster, lighter, and more reliable than HDD, but less capacity at the same price.

More information: - "Laptop Hard Drives, SSD & Storage" at Lenovo.com

See also:

HDD, HDP


Sticky Key#

When a modifier key (such as shift, CTRL, ALT) remains active until another key is pressed.

More information:

Relevant settings:
- Fn Sticky Key (ThinkPad)


SVP#

Supervisor Password

The Supervisor Password (SVP) protects the system information stored in UEFI BIOS.

More information: - More information at Lenovo Support

Relevant settings:
- Device Guard Settings (ThinkPad) - Supervisor Password (ThinkCentre) - Password Policies (ThinkCentre)

See also:

POP, SMP


Sx states#

System power states

More information: - "System Power States" at Microsoft.com

Relevant settings: - Enhanced Power Saving Mode (ThinkCentre)


TBCT#

Think BIOS Config Tool

More information: - "Think BIOS Config Tool" at Lenovo CDRT


TCG#

Trusted Computing Group

Standards body for secure computing.

More information: - More information at trustedcomputinggroup.org

Relevant settings: - TCG Feature setup (ThinkCentre) - Block SID Authentication (ThinkCentre)

See also:

TPM


TME#

Total Memory Encryption

Encrypts a computer’s entire memory with a single transient key. All memory data passing to and from the CPU is encrypted.

More information:

Relevant settings: - Intel(R) Total Memory Encryption (ThinkPad)


TPM#

Trusted Platform Module

A secure cryptoprocessor, which is either logically or physically separate from the main chipset, and used for security functions.

More information: - "Lenovo Trusted Platform Module (TPM) FAQ" at Lenovo Support - "Trusted Platform Module" at Microsoft.com

Relevant settings: - TCG Security Device State (ThinkCentre) - Security Chip (ThinkPad)


TSME#

Transparent Secure Memory Encryption

More information:
- White paper (PDF) at AMD.com

AKA:

AMD Memory Guard

See also:

SATA


TrackPad#

Touch-sensitive interface surface that allows you to manipulate and interact with your laptop computer through finger gestures.

More information: - "Popular Topics: Keyboard, Mouse, Touchpad, TrackPad, TrackPoint" at Lenovo Support

Relevant settings: - Trackpad (ThinkPad)


TrackPoint#

Pointing device, controls the mouse pointer with a joystick mounted in the center of the keyboard.

More information: - "Popular Topics: Keyboard, Mouse, Touchpad, TrackPad, TrackPoint" at Lenovo Support

Relevant settings: - TrackPoint (ThinkPad)

AKA:

Pointing stick


UEFI#

Unified Extensible Firmware Interface

UEFI specifications define an interface in which the implementation of UEFI performs the equivalent of the BIOS, by initiating the platform and loading the operating system.

More information: - "UEFI FAQS" at UEFI.org

Relevant settings: - UEFI BIOS Update Option Settings (ThinkPad) - SMBIOS Reporting (ThinkPad) - Lock UEFI BIOS Settings (ThinkPad) - Windows UEFI Firmware Update (ThinkCentre) - Allow Microsoft 3rd Party UEFI CA (ThinkCentre)

AKA:

BIOS, Firmware

See also:

BIOS


UMA#

Unified Memory Architecture

Architecture using part of RAM rather than dedicated graphics memory.

More information: - "Configuring UMA Frame Buffer Size" at AMD.com

Relevant settings: - Total Graphics Memory (ThinkPad)

See also:

GPU


UNDI#

Universal Network Driver Interface

API for network cards.

More information:

Relevant settings:

See also:

PXE


USB#

Universal Serial Bus

Connectivity specification that allows peripheral devices like scanners, printers, and memory sticks to be plugged into the computer and configured automatically.

More information:

Relevant settings: - USB Provisioning (ThinkCentre) - Smart USB Protection (ThinkCentre) - USB Setup (ThinkCentre) - USB Key Provisioning (ThinkPad) - USB Port (ThinkPad) - PCIe Tunneling (ThinkPad) - USB Settings (ThinkPad)


User mode#

Default mode for secure boot. Includes secure boot authentication.

Relevant settings: - System Mode (ThinkCentre) - Secure Boot Mode (ThinkPad)

See also:

Setup Mode, Custom Mode


Vantage (Lenovo)#

User interface for changing hardware settings, checking for Lenovo software and driver updates, and more.

More information: - "Commercial Vantage" at Lenovo CDRT - "Lenovo Vantage - Using your PC just got easier" at Lenovo Support - "Lenovo Vantage (download)" at Lenovo.com


VDI#

Windows Virtual Desktop

IT infrastructure that allows access enterprise computer systems from almost any device.

More information: - More information at Lenovo Support

Relevant settings: - Win VDI Boot (ThinkCentre) - Lenovo Cloud Services (ThinkPad)


VMM#

Virtual Machine Monitor

The code that creates, manages, and destroys virtualized hardware.

More information: - More information at Lenovo Support

Relevant settings: - Intel (R) Virtualization Technology (ThinkPad)


WMI#

Windows Management Instrumentation

WMI is provided as a standard feature in most Windows® operating systems. It provides a powerful set of functions, such as query-based information retrieval and event notification, which enables users to manage both local and remote computers. The Lenovo BIOS WMI interface extends the capabilities of WMI to allow management of BIOS settings.

More information: