mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-06-20 12:53:38 +00:00
added images
This commit is contained in:
Binary file not shown.
After Width: | Height: | Size: 240 KiB |
Binary file not shown.
After Width: | Height: | Size: 35 KiB |
Binary file not shown.
After Width: | Height: | Size: 47 KiB |
@ -8,7 +8,7 @@ ms.sitesec: library
|
||||
ms.pagetype: security
|
||||
ms.localizationpriority: medium
|
||||
author: justinha
|
||||
ms.date: 12/13/2018
|
||||
ms.date: 12/15/2018
|
||||
---
|
||||
|
||||
# System Guard Secure Launch and SMM protection
|
||||
@ -75,12 +75,13 @@ System Guard Secure Launch can be configured for Mobile Device Management (MDM)
|
||||
1. Click **Start** > type and then click **Edit group policy**.
|
||||
2. Click **Computer Configuration** > **Administrative Templates** > **System** > **Device Guard** > **Turn On Virtualization Based Security** > **Secure Launch Configuration**.
|
||||
|
||||

|
||||

|
||||
|
||||
### Windows Security app
|
||||
|
||||
Click **Start** > **Settings** > **Update & Security** > **Windows Security** > **Open Windows Security** > **Device security** > **Core isolation** > **Firmware protection**.
|
||||
|
||||
|
||||

|
||||
|
||||
### Registry
|
||||
|
||||
@ -90,6 +91,14 @@ System Guard Secure Launch can be configured for Mobile Device Management (MDM)
|
||||
4. Right-click **SystemGuard** > **New** > **DWORD (32-bit) Value** and name the new DWORD **Enabled**.
|
||||
5. Double-click **Enabled**, change the value to **1**, and click **OK**.
|
||||
|
||||

|
||||
|
||||
## How to verify System Guard Secure Launch is configured and running
|
||||
|
||||
To verify that Secure Launch is running, use System Information (MSInfo32). Click **Start**, search for **System Information**, and look under **Virtualization-based Security Services Running** and **Virtualization-based Security Services Configured**.
|
||||
|
||||

|
||||
|
||||
|
||||
|
||||
|
||||
|
Reference in New Issue
Block a user