Password Policies Settings#
Set Minimum Length#
A minimum length set here applies to:
- Supervisor Password (SVP)
- System Management Password (SMP)
- Power-On Password (PoP)
- Hard Disk Password (HDP)
Possible options:
- Disabled – passwords can have 1 to 128 characters. Default.
- 4 Characters
- 5 Characters
- 6 Characters
- 7 Characters
- 8 Characters
- 9 Characters
- 10 Characters
- 11 Characters
- 12 Characters
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| SetMinimumLength | Disable, 4 Characters, 5 Characters, 6 Characters, 7 Characters, 8 Characters, 9 Characters, 10 Characters, 11 Characters, 12 Characters | Yes | Both |
Set Strong Password#
A strong password is defined as:
- Upper case, lower case, and numeric characters are all required
- Special characters are optional
- The minimum length is 8
Possible options:
- Disabled – the minimum length is 1 character. Default.
- Enabled
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| SetStrongPassword | Disabled, Enabled | Yes | Both |
Keyboard Layout#
Keyboard layout for password.
Possible options:
- English – Default.
- French
- German
- Chinese
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| KeyboardLayout | English, French, German, Chinese | Yes | Both |
BIOS Password At System Boot#
Whether to prompt for passwords when the system starts from the full off or hibernate state.
Attention
To prevent unauthorized access to the system we recommend to setting user authentication on the OS.
Possible options:
- Yes – Default.
- No
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| BIOSPasswordAtSystemBoot | Yes, No | Yes | Both |
BIOS Password At Reboot#
Whether to require Power-On Password when system restarts.
Possible options:
- No - Default.
- Yes
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| BIOSPasswordAtReboot | No, Yes | Yes | Both |
BIOS Password At Boot Device List#
Whether user is prompted for a password when F12 is pressed during POST (Power On Self Test).
Attention
Password prompt requires that Administrator Password is set.
Possible options:
- No – Default.
- Yes
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| BIOSPasswordAtBootDeviceList | No, Yes | Yes | Both |
Require SVP when Flashing#
Whether the Supervisor Password (SVP) is required when updating the system software.
Possible options:
- No – Default.
- Yes
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| RequireSVPwhenFlashing | No, Yes | Yes | Both |
POP Changeable by User#
Whether the Power-On Password (POP) can be changed without Supervisor Password (SVP).
Possible options:
- Yes – Default.
- No – the Power-On Password can only be changed with the SVP.
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| POPChangeablebyUser | Yes, No | Yes | Both |
Allow Jumper Clear SVP#
Whether to allow the hardware jumper to clear the Supervisor Password.
Attention
No action can reset the SVP if user forgets it.
Possible options:
- Yes – Default.
- No
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| AllowJumperClearSVP | Yes, No | Yes | Both |
Jumper Clears Supervisor and System Manager Password#
Allows the hardware jumper to clear the Supervisor Password and System Manager Password.
Possible options:
- Enabled – Default.
- Disabled
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| JumperClearsBiosConfigPasswords | Enable, Disable | Yes | Both |
Jumper Clears Certificates#
Allows the hardware jumper to clear the enrolled Supervisor and System Manager certificates.
Possible options:
- Enabled – Default.
- Disabled
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| JumperClearsCertificates | Enable, Disable | Yes | Both |
Password Count Exceeded Error#
Whether to show the POST 0199 error and prompt for password after three failed attempts.
Attention
If Enabled, then after 3 attempts with an incorrect password, the system will show a 0199 error.
- User can bypass the error by pressing F2.
- 0199 error is still shown.
- Clear the error condition by pressing F10, or saving the settings after this has been verified, by entering bios with correct SVP.
- If a user attempts to change BIOS settings and uses the wrong password, the system will deny access.
- After a third failed attempt, all other attempts will fail. No further changes can be made, and user needs to reboot.
Possible options:
- Enabled – Default.
- Disabled
| WMI Setting name | Values | SVP / SMP Req'd | AMD/Intel |
|---|---|---|---|
| PasswordCountExceededError | Enabled, Disabled | Yes | Both |