Chapter 4, “Main features of computers built with Intel AMT,” on page 7: This chapter provides the main features of Intel vPro built-in computers. Chapter 5, “Intel AMT setup and configuration based on Lenovo ThinkCentre M58p,” on page 9: This chapter provides detailed instructions on how to configure the settings of Intel AMT.
Page 8
ThinkCentre M58p with Intel AMT White Paper...
Chapter 1. Introduction to Intel vPro and Intel AMT technology ™ The Intel vPro technology is a business computer platform brand, enabling business computers with enhanced remote management capabilities. For computers built with Intel vPro technology, IT administrators can use a third party software to remotely collect inventory information, diagnose problems, and provide various services regardless of the system power state or operating system condition.
Page 10
Transport Layer Security User Interface VLAN Virtual Local Area Network Zero Touch Configuration ThinkCentre M58p with Intel AMT White Paper...
ThinkCentre M58p also supports the Client Initiated Remote Access (CIRA) function. You can use this function through ISV applications. Client Initiated Remote Access (CIRA) allows client initiated, secure OOB...
Page 12
Remote Hardware Increases speed and accuracy over manual inventory tracking, and asset tracking reduces asset accounting costs Third-party nonvolatile Increases speed and accuracy over manual inventory tracking, and storage reduces asset accounting cost ThinkCentre M58p with Intel AMT White Paper...
Intel AMT features, such as out-of-band access to asset information, event logs, hardware and software tables, and embedded capabilities. To ensure the usability and efficiency of our computers, Lenovo, as an OEM, is planning to develop complete solutions with Intel and leading third party security and enterprise management software vendors.
Page 14
ThinkCentre M58p with Intel AMT White Paper...
Chapter 4. Main features of computers built with Intel AMT Computers built with Intel AMT version 2.0 or later (vPro technology) have the following features and improvements: Remote Power Control – Power Down – Power Up – Power Reset – Power Cycle v Asset Management –...
Page 16
ThinkCentre M58p with Intel AMT White Paper...
Chapter 5. Intel AMT setup and configuration based on Lenovo ThinkCentre M58p The Management Engine BIOS Extension (MEBx) is a separate BIOS from the normal system BIOS. It is an option ROM module provided by Intel. The MEBx enables you to configure settings that control the operation of the Management Engine (ME) that runs on the Intel AMT client, which must be set up and configured in a system before use.
Press Y. The Intel ME platform configuration window opens. This window allows you to configure the features of the Intel ME, such as ME state, power control, and so on. Use the default values for the Intel ME configuration. ThinkCentre M58p with Intel AMT White Paper...
Page 19
Select Intel ME Features Control, the ME Features Control window opens. There are three options: v Manageability Feature Selection v Intel Quiet System Technology v Return to Previous Menu Manageability Feature Selection Chapter 5. Intel AMT setup and configuration based on Lenovo ThinkCentre M58p...
Page 20
Power Loss If set to OFF After Power Loss, Intel ME will remain off after returning from a G3 (AC power lost) state. If the power package selected does not indicate OFF After ThinkCentre M58p with Intel AMT White Paper...
Subnet mask: The subnet mask is used to determine which subnet IP address the IP address belongs to. v Default Gateway address: The default gateway of the Intel ME. v Preferred DNS address: Preferred Domain name server address. Chapter 5. Intel AMT setup and configuration based on Lenovo ThinkCentre M58p...
Page 22
In-process. – Set PID and PPS – Sets the PID and PPS. The PID and PPS should be entered in the dash format. (Ex. PID: 1234-ABCD; PPS: 1234-ABCD-1234-ABCD- 1234-ABCD-1234-ABCD) ThinkCentre M58p with Intel AMT White Paper...
Page 23
- [+] To change the active state of the currently selected certificate hash. Press + in the Manage Certificate Hash screen, and Yes will toggle the active Chapter 5. Intel AMT setup and configuration based on Lenovo ThinkCentre M58p...
Page 24
Kerberos is used, this option should be set to Disabled. The user authentication is through Kerberos. If Kerberos is not used, you have the choice to enable or disable user authentication on SOL/IDE-R session. ThinkCentre M58p with Intel AMT White Paper...
Page 25
Note: Secure firmware update requires an administrator user name and password. If the administrator user name and password are not provided, the firmware cannot be updated. Chapter 5. Intel AMT setup and configuration based on Lenovo ThinkCentre M58p...
Serial Over LAN (SOL) driver is an Intel AMT ME driver. This driver enables the remote display of managed client user interface through management console and emulates serial communication over a standard network connection. ThinkCentre M58p with Intel AMT White Paper...
If Enterprise mode is selected, you will have to configure the PKI or the PID/PPS before using the provision server to provision Intel AMT. b. If DHCP is enabled, the host operating system of ThinkCentre M58p should also be configured in DHCP mode. Intel AMT will share IP address with ®...
The Web server built into each Intel AMT system enables you to: v View the system status; v View the hardware information of AMT computer, including system, processor, memory, and disk; v View, start, stop, and clear the event log; ThinkCentre M58p with Intel AMT White Paper...
Page 29
v Remote power control, including: turn power off, cycle power off and on, reset, normal boot, boot from local CD/DVD drive, and boot from local hard drive; v View and manage Intel AMT power policies; v View and manage Intel AMT network settings; v View and manage Intel AMT user accounts.
Page 30
ThinkCentre M58p with Intel AMT White Paper...
Appendix A. Two examples of Intel AMT setup and configuration: SMB mode and enterprise mode Intel AMT setup and configuration steps - SMB mode The following are quick steps for AMT setup and configuration of SMB mode: 1. Access the MEBx by pressing Ctrl+P during boot-up process. 2.
Page 32
6. Use default values for Intel (R) ME configuration, Password Policy, Secure Firmware Update, Set PRTC, and Idle Timeout 7. Select Exit to exit MEBx for saving the settings you have made in MEBx. ThinkCentre M58p with Intel AMT White Paper...
Appendix B. Default configuration values for Intel MEBx This section introduces the default values of configuration settings for the Intel MEBx. The following table includes the default configuration settings and values for the features in the Intel MEBx settings. Table 4. Reference of default configuration settings and values Menu Default values Menu...
Page 34
ThinkCentre M58p with Intel AMT White Paper...
Actual results may vary. Users of this document should verify the applicable data for their specific environment. Trademarks The following terms are trademarks of Lenovo in the United States, other countries, or both: Lenovo the Lenovo logo...
Page 38
Part Number: 53Y5286 Printed in USA (1P) P/N: 53Y5286...