mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-06-21 05:13:40 +00:00
added images
This commit is contained in:
Binary file not shown.
After Width: | Height: | Size: 240 KiB |
Binary file not shown.
After Width: | Height: | Size: 35 KiB |
Binary file not shown.
After Width: | Height: | Size: 47 KiB |
@ -8,7 +8,7 @@ ms.sitesec: library
|
|||||||
ms.pagetype: security
|
ms.pagetype: security
|
||||||
ms.localizationpriority: medium
|
ms.localizationpriority: medium
|
||||||
author: justinha
|
author: justinha
|
||||||
ms.date: 12/13/2018
|
ms.date: 12/15/2018
|
||||||
---
|
---
|
||||||
|
|
||||||
# System Guard Secure Launch and SMM protection
|
# System Guard Secure Launch and SMM protection
|
||||||
@ -75,12 +75,13 @@ System Guard Secure Launch can be configured for Mobile Device Management (MDM)
|
|||||||
1. Click **Start** > type and then click **Edit group policy**.
|
1. Click **Start** > type and then click **Edit group policy**.
|
||||||
2. Click **Computer Configuration** > **Administrative Templates** > **System** > **Device Guard** > **Turn On Virtualization Based Security** > **Secure Launch Configuration**.
|
2. Click **Computer Configuration** > **Administrative Templates** > **System** > **Device Guard** > **Turn On Virtualization Based Security** > **Secure Launch Configuration**.
|
||||||
|
|
||||||

|

|
||||||
|
|
||||||
### Windows Security app
|
### Windows Security app
|
||||||
|
|
||||||
|
Click **Start** > **Settings** > **Update & Security** > **Windows Security** > **Open Windows Security** > **Device security** > **Core isolation** > **Firmware protection**.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
### Registry
|
### Registry
|
||||||
|
|
||||||
@ -90,6 +91,14 @@ System Guard Secure Launch can be configured for Mobile Device Management (MDM)
|
|||||||
4. Right-click **SystemGuard** > **New** > **DWORD (32-bit) Value** and name the new DWORD **Enabled**.
|
4. Right-click **SystemGuard** > **New** > **DWORD (32-bit) Value** and name the new DWORD **Enabled**.
|
||||||
5. Double-click **Enabled**, change the value to **1**, and click **OK**.
|
5. Double-click **Enabled**, change the value to **1**, and click **OK**.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
## How to verify System Guard Secure Launch is configured and running
|
||||||
|
|
||||||
|
To verify that Secure Launch is running, use System Information (MSInfo32). Click **Start**, search for **System Information**, and look under **Virtualization-based Security Services Running** and **Virtualization-based Security Services Configured**.
|
||||||
|
|
||||||
|

|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
Reference in New Issue
Block a user