220-801 · Question #812
Which of the following BIOS level settings allow an administrator to view warnings on possible hardware level changes?
The correct answer is B. Intrusion detection. BIOS-level chassis intrusion detection uses a physical sensor on the case to alert administrators when the system cover has been opened, indicating a possible unauthorized hardware change.
Question
Options
- ADrive lock
- BIntrusion detection
- CBIOS password
- DTrusted platform module
How the community answered
(33 responses)- A3% (1)
- B91% (30)
- D6% (2)
Why each option
BIOS-level chassis intrusion detection uses a physical sensor on the case to alert administrators when the system cover has been opened, indicating a possible unauthorized hardware change.
Drive lock is a BIOS feature that sets a password directly on the hard drive using the ATA Security feature set, preventing unauthorized boot from that drive.
Intrusion detection at the BIOS level works with a chassis intrusion header and switch on the motherboard - when the case is opened, the circuit is triggered and the BIOS logs the event and can display a warning on the next boot. This allows administrators to detect unauthorized physical access or hardware modifications.
A BIOS password restricts access to BIOS setup configuration screens but does not detect or report physical hardware-level changes to the chassis.
A Trusted Platform Module (TPM) is a dedicated security chip used for cryptographic key storage, disk encryption, and secure boot attestation, not for detecting chassis intrusion.
Concept tested: BIOS chassis intrusion detection feature
Source: https://learn.microsoft.com/en-us/windows-hardware/design/device-experiences/oem-secure-boot
Topics
Community Discussion
No community discussion yet for this question.