Glossary of Terms#
Administrator (hard disk) Password#
Hard disk password, available if Dual Password
is enabled.
- ThinkPad: Admin + User password
- ThinkCentre & Thinkstation: Master + User passwords.
Admin and Master are synonyms.
More information: - "Types of password for ThinkPad" at Lenovo Support - BIOS Security Settings
Relevant settings: - Hard Disk Password (ThinkCentre) - Password Policies (ThinkCentre) - NVMe1 Password (ThinkPad)
AHC#
Advanced Host Controller Interface
More information: - "Serial ATA AHCI: Specification" at Intel.com
Relevant settings: - Configure SATA As (ThinkCentre)
See also:
AMT#
Intel® Active Management Technology
Remote management solution from Intel®.
More information: - "Intel® Active Management Technology" at Intel.com
Relevant settings: - Intel® Manageability (ThinkCentre) - Intel® AMT Settings (ThinkPad) - Onboard Ethernet Controller (ThinkCentre)
See also:
ASPM#
Active State Power Management
PCI Express power management for power saving while fully active.
More information:
Relevant settings:
See also:
ATA#
Advanced Technology Attachment (Hard Disk Drive)
A hard disk drive with an integrated controller. Usually implemented as a serial drive (SATA).
More information:
Relevant settings: - SATA Controller - SATA Drive {Number} Password - First Boot Device
See also:
Audit mode#
Enables programmatic discovery of signature list combinations that successfully authenticate installed EFI images without the risk of rendering a system unbootable.
Chosen signature lists configurations can be tested to ensure the system will continue to boot after the system is transitioned out of Audit Mode.
More information: - UEFI Specification Version 2.9 (March 2021) at UEFI.org
Relevant settings: - Enter Audit Mode (ThinkCentre)
See also:
BIOS#
Basic Input/Output System
Overrides user OS permissions to access settings in all cases; has no access to OS settings.
More information: - "What Is BIOS?" at Lenovo Support
See also:
BIOS Self-healing#
BIOS is programmed to restore the machine to its previous state through an uncorrupted, secure backup.
More information:
Relevant settings: - BIOS Self-healing (ThinkCentre)
CA#
Certification Authority
Organization that verifies identity and issues public key certificates to parties.
More information: - "Windows Secure Boot Key Creation and Management Guidance" at Microsoft.com - More information at UEFI.org
Relevant settings: - Allow Microsoft 3rd Party UEFI CA (ThinkCentre) - TLS Auth Configuration (ThinkCentre)
See also:
C State#
Core Power States
A series of states numbered 0 to n, where each successive lower state number represents lower power consumption.
More information: - "C-State" at Intel.com
Relevant settings: - C State Support (ThinkCentre)
Custom Mode#
Custom Mode allows a user to install their own set of keys. The specifications for Secure Boot state allow a boot to occur in Custom Mode without a PK. This allows an OS to enroll a new PK which would then be used to validate its own KEK, db, and dbx.
More information:
Relevant settings: - Secure Boot Key State
DASH#
Desktop and mobile Architecture for System Hardware
Secure out-of-band and remote client management standard.
More information: - DASH article at Lenovo CDRT - "Desktop and Mobile Architecture for System Hardware" at DTMF.org
Deployed mode#
In Deployed Mode, PK must be installed and the BIOS performs signature verification on programmatic attempts to update policy objects.
Relevant settings: - Enter Deployed Mode (ThinkCentre)
See also:
DHCP#
Dynamic Host Configuration Protocol
Network management protocol used on Internet Protocol (IP) networks for automatically assigning IP addresses and other communication parameters to devices connected to the network using a client-server architecture.
More information:
Relevant settings: - Lenovo Cloud Services (ThinkPad)
DPTF#
Dynamic Platform and Thermal Framework
Intel Dynamic Platform and Thermal Framework (IDPTF) is a power and thermal management solution. It is used to resolve fan noise, overheating, and performance-related issues of the system.
Relevant settings:
DRAM#
Dynamic Random-Access Memory
Random-access semiconductor memory that stores each bit of data in a memory cell, usually consisting of a tiny capacitor and a transistor, both typically based on metal-oxide-semiconductor technology.
More information:
Relevant settings:
EAP#
Extensible Authentication Protocol
Authentication framework supporting multiple authentication methods.
More information: - "Extensible Authentication Protocol (EAP)" at IETF.org - "802.1X Overview and EAP Types" at Intel.com
Relevant settings: - EAP Authentication Method (ThinkPad)
See also:
EEPROM#
Electrically Erasable Programmable Read-Only Memory
Non-volatile memory storing relatively small amounts of data by allowing individual bytes to be erased and reprogrammed.
Relevant settings: - MAC Address Pass Through (ThinkPad)
EFI#
Extensible Firmware Interface
Used in the context of HTTPS Boot.
Relevant settings: - Delete HTTPs Boot Option from List (ThinkCentre)
See also:
EIST#
Enhanced Intel SpeedStep® Technology
Dynamically adjusts processor voltage and core frequency, to decrease average power consumption and heat production.
More information: - "Overview of Enhanced Intel SpeedStep® Technology for Intel® Processors"at Intel.com
Relevant settings: - EIST Support (ThinkCentre)
EPP#
Enhanced Parallel Port
A high-speed bi-directional mode for non-printer peripherals.
More information:
Relevant settings: - Parallel Port Mode & EPP Version (ThinkCentre)
Flash BIOS#
Updating the BIOS.
More information: - "How to update BIOS" at Intel.com
Relevant settings: - "How to update system BIOS - Windows" at Lenovo.com - Flash BIOS Updating by End-Users (ThinkPad)
Form Factor#
The size and spatial design of the computer and its individual components. Broadly similar or the same across a model line.
GPU#
Graphics Processing Unit
Specialized processor originally designed to accelerate graphics rendering, able to process many pieces of data simultaneously, useful for machine learning, video editing, and gaming applications, and may be integrated into the computer’s CPU or offered as a discrete hardware unit.
More information: - "What Is a GPU?" at Intel.com
Relevant settings: - PCIe Tunneling (ThinkPad)
See also:
HDD#
Hard Disk Drive
More information: - "Laptop Hard Drives, SSD & Storage" at Lenovo.com
Relevant settings: - First Boot Device (ThinkCentre) - Boot Priority Order (THinkPad)
See also:
HDP#
Hard Disk Password
Prevents unauthorized access to the data on the storage drive. Some models may support dual passwords, with a user password and an administrator password.
More information:
Relevant settings: - Require HDP on System Boot (ThinkCentre) - Hard Disk Password (ThinkCentre)
See also:
IOMMU#
Input-Output Memory Management Unit
Hardware assisted address translation from I/O device virtual addresses to physical addresses, to improve the system performance in virtual environments.
More information: - More information at Lenovo.com
Relevant settings: - Device Guard (ThinkCentre) - Device Guard (ThinkPad)
IRQ#
Interrupt Request Line
Hardware line allowing devices to take over processor resources for their function. IRQs are assigned numbers to prioritize devices.
Relevant settings: - Parallel Port IRQ (ThinkCentre) - Serial Port Setup (ThinkCentre)
ITC#
Imaging Technology Center
Lenovo's Cloud Deployment solutions.
More information: - "Welcome to Lenovo Cloud Deploy" at lenovoclouddeploy.com - "CLOUD RECOVERY FROM THE LENOVO CLOUD" at Lenovo.com
Relevant settings: - Lenovo Cloud Services (ThinkPad)
Lenovo Diagnostics#
Tool for testing Lenovo computers. Composed from Modules (diagnostics for a group of devices), tools for creating custom diagnostic scripts, system information, and log history.
More information: - "Lenovo Diagnostics for Windows" at Lenovo PC Support
Relevant settings: - Intel® Total Memory Encryption (ThinkPad)
Magic Packet#
Network packet specific to the network card, used in the Wake On LAN feature.
More information:
Relevant settings: - Wake On Lan (ThinkPad)
(M)HDP#
(Master) Hard Disk Password.
AKA:
Admin (hard disk) password.
Relevant settings: - Hard Disk Password (ThinkStation)
See also:
MDT#
Microsoft Deployment Toolkit
More information: - "Microsoft Deployment Toolkit documentation" at Microsoft.com - "Lenovo BIOS/UEFI Deployment Guide" at Lenovo CDRT
MEBx#
Intel® Management Engine BIOS Extension
A BIOS menu extension on the Intel® AMT system that can be used to view and manually configure some of Intel® AMT settings.
More information: - More information at Intel.com
Relevant settings: - Intel® MEBx (ThinkCentre)
See also:
[AMT] (https://docs.lenovocdrt.com/ref/bios/glossary?id=amt)
ME#
Intel ® Management Engine
An embedded microcontroller providing features including OOB (out of band) management.
More information: - More information at Intel.com
Relevant settings: - Enhanced Power Saving Mode (ThinkCentre)
See also:
MemTest86#
Commonly used memory (RAM) testing application.
More information: - More information at memtest86.com
Relevant settings: - Intel(R) Total Memory Encryption (ThinkPad)
MFG (mode)#
Manufacturing Mode
Relevant settings: - Security Chip (ThinkPad)
NFC#
Near-Field Communication
More information:
Relevant settings: - NFC Device (ThinkPad)
NIC#
Network Interface Controller / Card
More information:
Relevant settings: - MAC Address Pass Through (ThinkPad)
NVMe#
Non-Volatile Memory Host Controller Interface Specification
Open, logical-device interface specification for accessing a computer's non-volatile storage media, usually attached via PCI Express bus.
More information:
Relevant settings: - NVMe1 Password (ThinkPad) - Network Boot (ThinkPad)
See also
ODM#
Original Design Manufacturer
A company that designs and manufactures a product that is eventually rebranded by another firm for sale.
More information:
- "Lenovo CSP Is For You!" at Lenovo YouTube
- "Lenovo's Secret Recipe For Hyperscale Success Is Called ODM+" at Forbes.com
OEM#
Original Equipment Manufacturer
A company that manufactures products that it has designed from purchased components and sells those products under the company's brand name.
More information:
Relevant settings:
OOB#
Out-of-band
As in Out-of-band management, hardware-based features that enable remotely manage devices, even when powered down.
More information:
See also:
Optane™#
Standalone memory device that combines storage capacity and system acceleration.
More information: - "Intel® Optane™ Memory - Responsive Memory, Accelerated Performance"at Lenovo.com
Relevant settings: - ATA Drive Setup (ThinkCentre)
OSD#
Operating System Deployment
More information:
PCIe#
PCI (Peripheral Component Interconnect) Express
Serial expansion bus standard.
More information:
Relevant Settings
See also:
PCR#
Platform Configuration Register
A memory location in the TPM, for storing security metrics.
More information:
Relevant settings:
- Security Chip (ThinkPad)
See also:
PEAP / EAP#
(Protected) Extensible Authentication Protocol
EAP is an authentication framework that supports multiple authentication methods. PEAP adds security services to those EAP methods that EAP provides.
More information:
Relevant settings: - Security (ThinkPad)
PK#
Platform Key
The public key used in Secure Boot.
More information: - "Key Management" at Lenovo CDRT
Relevant settings: - Enter Audit Mode (ThinkCentre) - Key Management (ThinkPad)
Platform#
A specific combination of hardware and software.
Relevant settings: - Intel (R) SIPP Support (ThinkCentre)
POP#
Power On Password
Allows the computer to power on directly to a password prompt but go no further until the correct password is entered.
More information: - BIOS Guide
Relevant settings: - Password Policies (ThinkCentre)
See also:
POST#
Power On Self Test
Process of testing and initializing memory, devices, and (depending on model) software required by OS, immediately after power on and before OS is loaded.
More information:
Relevant settings: - Password Count Exceeded Error (ThinkCentre) - USB Enumeration Delay (ThinkCentre)
Predesktop#
The Rescue and Recovery Predesktop Area provides an emergency workspace for users who are unable to start Windows on their computers. Running under Windows PE (Preinstallation Environment), the environment offers the Windows look, feel, and function and helps users solve problems without consuming IT staff time.
More information:
Relevant settings: - Predesktop Authentication (ThinkPad)
PXE#
Preboot eXecution Environment
Method for booting computers using a network interface, independent of local storage devices or installed operating systems.
More information: - ["Preboot Execution Environment (PXE)" at Microsoft.com](https://learn.microsoft.com/en-us/previous-versions/ms818762(v=msdn.10))
Relevant settings: - Network Setup (ThinkCentre) - Network Settings (ThinkPad) - Network Boot (ThinkPad)
See also:
RAID#
Redundant Array of Independent Disks
A standard configuration of multiple, redundant hard disks into logical units for scale and reliability.
More information: - "Common RAID Disk Data Format (DDF)" at Storage Networking Industry Association
Relevant settings: - ATA Drive Setup(ThinkCentre)
See also:
RST#
Rapid Storage Technology
Gives enhanced performance and lower power consumption. When using more than one drive, gives additional protection against data loss in the event of a hard drive failure.
More information:
Relevant settings: - Configure SATA As (ThinkCentre)
See also:
SATA#
Serial AT ("Advanced Technology") Attachment
Standard interface between computer bus and storage devices.
More information: - "Developers Can Trust Intel Leadership in Serial ATA" at Intel.com
Relevant settings: - ATA Drive Setup (ThinkCentre) - Startup (ThinkCentre)
See also:
(SC)CM#
Configuration Manager or System Center Configuration Manager
More information:
- "What is Configuration Manager?" at Microsoft.com
- "What happened to System Center Configuration Manager?" at Microsoft.com
SDB(M)#
System Deployment Boot Mode
Enables programmatic configuration of key security BIOS settings during operating system deployments.
More information: - "System Deployment Boot Mode" at Lenovo CDRT
Security Chip#
A type of Trusted Platform Module (TPM) implemented as a separate chip.
Relevant settings:
See also:
AKA:
TPM
SEL#
System Event Log
Relevant settings: - System Event Log (ThinkCentre)
Setup mode#
Enables installation of Platform Key and customization of Secure Boot signature databases.
More information:
Relevant settings: - Secure Boot Mode (ThinkPad)
See also:
SGX#
Intel® Software Guard Extensions
Protect selected code and data from modification, by partitioning applications into hardened enclaves or trusted execution modules.
More information: - "Intel® Software Guard Extensions" at Intel.com
SID#
Security Identifier
More information: - More information at trustedcomputinggroup.org
Relevant settings: - Block SID Authentication (ThinkCentre) - Block SID Authentication (ThinkPad)
SIPP#
Intel® Stable Image Platform Program
Validation program that aims for no hardware changes throughout the buying cycle, for at least 15 months or until the next generational release.
More information: - "PC Upgrade: Intel® SIPP" at Intel.com
Relevant settings: - Intel (R) SIPP Support (ThinkCentre)
SMP#
System Management Password
Administrator password mid-way between the Supervisor Password (SVP) and a user password. Can be configured to have the same permissions as the SVP. Can be set through the UEFI BIOS menu or through Windows Management Instrumentation (WMI) with the Lenovo client-management interface.
More information: - More information at Lenovo Support
Relevant settings:
- System Management Password (ThinkCentre)
- System Management Password (ThinkPad)
- System Management Password Access Control (ThinkCentre)
See also:
SMBIOS#
System Management BIOS
Specification for integration of BIOS information into operating systems and higher-level management applications.
More information: - "System Management Bios Reference Specification Eases Implementation for Managed PCs" at Intel.com - "System Management BIOS" at DMTF.org
Relevant settings:
- BIOS Reporting (ThinkPad)
See also:
SRSETUP#
DOS application to allow ThinkPad Setup settings to be common to all machines and to be controlled remotely.
More information: - "ThinkPad Setup Settings Capture/Playback Utility (SRSETUP) for UEFI - ThinkPad" at Lenovo Support
SR TOOL#
IBM Service Request (SR) tool.
Replaced by Lenovo Online Service Request function.
More information:
SSD (Solid State Disk)#
Storage solution based on collections of memory microchips. Faster, lighter, and more reliable than HDD, but less capacity at the same price.
More information: - "Laptop Hard Drives, SSD & Storage" at Lenovo.com
See also:
Sticky Key#
When a modifier key (such as shift, CTRL, ALT) remains active until another key is pressed.
More information:
Relevant settings:
- Fn Sticky Key (ThinkPad)
SVP#
Supervisor Password
The Supervisor Password (SVP) protects the system information stored in UEFI BIOS.
More information: - More information at Lenovo Support
Relevant settings:
- Device Guard Settings (ThinkPad)
- Supervisor Password (ThinkCentre)
- Password Policies (ThinkCentre)
See also:
Sx states#
System power states
More information: - "System Power States" at Microsoft.com
Relevant settings: - Enhanced Power Saving Mode (ThinkCentre)
TBCT#
Think BIOS Config Tool
More information: - "Think BIOS Config Tool" at Lenovo CDRT
TCG#
Trusted Computing Group
Standards body for secure computing.
More information: - More information at trustedcomputinggroup.org
Relevant settings: - TCG Feature setup (ThinkCentre) - Block SID Authentication (ThinkCentre)
See also:
TME#
Total Memory Encryption
Encrypts a computer’s entire memory with a single transient key. All memory data passing to and from the CPU is encrypted.
More information:
Relevant settings: - Intel(R) Total Memory Encryption (ThinkPad)
TPM#
Trusted Platform Module
A secure cryptoprocessor, which is either logically or physically separate from the main chipset, and used for security functions.
More information: - "Lenovo Trusted Platform Module (TPM) FAQ" at Lenovo Support - "Trusted Platform Module" at Microsoft.com
Relevant settings: - TCG Security Device State (ThinkCentre) - Security Chip (ThinkPad)
TSME#
Transparent Secure Memory Encryption
More information:
- White paper (PDF) at AMD.com
AKA:
AMD Memory Guard
See also:
TrackPad#
Touch-sensitive interface surface that allows you to manipulate and interact with your laptop computer through finger gestures.
More information: - "Popular Topics: Keyboard, Mouse, Touchpad, TrackPad, TrackPoint" at Lenovo Support
Relevant settings: - Trackpad (ThinkPad)
TrackPoint#
Pointing device, controls the mouse pointer with a joystick mounted in the center of the keyboard.
More information: - "Popular Topics: Keyboard, Mouse, Touchpad, TrackPad, TrackPoint" at Lenovo Support
Relevant settings: - TrackPoint (ThinkPad)
AKA:
Pointing stick
UEFI#
Unified Extensible Firmware Interface
UEFI specifications define an interface in which the implementation of UEFI performs the equivalent of the BIOS, by initiating the platform and loading the operating system.
More information: - "UEFI FAQS" at UEFI.org
Relevant settings: - UEFI BIOS Update Option Settings (ThinkPad) - SMBIOS Reporting (ThinkPad) - Lock UEFI BIOS Settings (ThinkPad) - Windows UEFI Firmware Update (ThinkCentre) - Allow Microsoft 3rd Party UEFI CA (ThinkCentre)
AKA:
BIOS, Firmware
See also:
UMA#
Unified Memory Architecture
Architecture using part of RAM rather than dedicated graphics memory.
More information: - "Configuring UMA Frame Buffer Size" at AMD.com
Relevant settings: - Total Graphics Memory (ThinkPad)
See also:
UNDI#
Universal Network Driver Interface
API for network cards.
More information:
Relevant settings:
See also:
USB#
Universal Serial Bus
Connectivity specification that allows peripheral devices like scanners, printers, and memory sticks to be plugged into the computer and configured automatically.
More information:
Relevant settings: - USB Provisioning (ThinkCentre) - Smart USB Protection (ThinkCentre) - USB Setup (ThinkCentre) - USB Key Provisioning (ThinkPad) - USB Port (ThinkPad) - PCIe Tunneling (ThinkPad) - USB Settings (ThinkPad)
User mode#
Default mode for secure boot. Includes secure boot authentication.
Relevant settings: - System Mode (ThinkCentre) - Secure Boot Mode (ThinkPad)
See also:
Vantage (Lenovo)#
User interface for changing hardware settings, checking for Lenovo software and driver updates, and more.
More information: - "Commercial Vantage" at Lenovo CDRT - "Lenovo Vantage - Using your PC just got easier" at Lenovo Support - "Lenovo Vantage (download)" at Lenovo.com
VDI#
Windows Virtual Desktop
IT infrastructure that allows access enterprise computer systems from almost any device.
More information: - More information at Lenovo Support
Relevant settings: - Win VDI Boot (ThinkCentre) - Lenovo Cloud Services (ThinkPad)
VMM#
Virtual Machine Monitor
The code that creates, manages, and destroys virtualized hardware.
More information: - More information at Lenovo Support
Relevant settings: - Intel (R) Virtualization Technology (ThinkPad)
WMI#
Windows Management Instrumentation
WMI is provided as a standard feature in most Windows® operating systems. It provides a powerful set of functions, such as query-based information retrieval and event notification, which enables users to manage both local and remote computers. The Lenovo BIOS WMI interface extends the capabilities of WMI to allow management of BIOS settings.
More information: