Difference between revisions of "IC-OS Installation - UEFI Configuration - Gen2 ASUS"

From Internet Computer Wiki
Jump to: navigation, search
(Created page with "coming soon")
 
(Page creation, copy of GBY runbook)
Line 1: Line 1:
coming soon
+
==1. UEFI - Enter Setup==
 +
 
 +
#Reboot or power on the server.
 +
#Watch for the screen with the ASUS logo. Press DEL (delete) a couple of times to enter the setup menu.
 +
[[File:Screenshot 2023-08-09 at 2.05.41 PM.png|580px]]
 +
 
 +
==2. UEFI - Check Version==
 +
 
 +
#Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is '''2.21.1279''' or higher. This version was tested and found to support features required for IC-OS.
 +
#*Is your version lower than '''2.21.1279'''? Download the latest version and follow the included instructions at the [https://www.gigabyte.com/Support Gigabyte support site]
 +
==3. UEFI - Advanced Settings==
 +
 
 +
#Change to the '''Advanced''' menu.
 +
#Select '''Trusted Computing'''
 +
#:[[File:Gigabyte bios 17.jpg|580px]]
 +
#Set '''Security Device Support''' to '''Enabled'''
 +
#Set '''SHA256 PCR Bank''' to '''Enabled'''
 +
#Set '''Platform Hierarchy''' to '''Enabled'''
 +
#Set '''Storage Hierarchy''' to '''Enabled'''
 +
#Set '''Endorsement Hierarchy''' to '''Enabled'''
 +
#:[[File:Gigabyte bios 2.jpg|580px]]
 +
#Press '''escape''' to return to the '''Advanced''' main menu.
 +
#Select '''CPU Configuration''' and press '''enter'''
 +
#:[[File:Giga bios CPU configuration.png|580px]]
 +
#Set '''SVM Mode''' to '''Enabled'''
 +
#:[[File:Giga bios SVM.png|580px]]
 +
#Select '''PCI Subsystem Settings''' and press '''enter'''
 +
#:[[File:Gigabyte bios 15.jpg|580px]]
 +
#Set '''SR-IOV Support''' to '''Enabled''' (scroll to bottom of page to find setting)
 +
#:[[File:Gigabyte bios 16.jpg|580px]]
 +
#Press '''escape''' to return to the '''Advanced''' main menu.
 +
 
 +
==4. UEFI - AMD CBS==
 +
 
 +
#Change to the '''AMD CBS''' menu. Then select '''CPU Common Options''' and press '''enter'''
 +
#:[[File:Gigabyte bios CPU common options.jpg|580px]]
 +
#Set '''SEV ASID Count''' to '''253 ASIDs'''
 +
#Set '''SEV-ES ASID Space Limit Control''' to '''Manual'''
 +
#Set '''SEV-ES ASID Space Limit''' to '''100'''
 +
#Set '''SNP Memory (RMP Table) Coverage''' to '''Enabled'''
 +
#Set '''SMEE''' to '''Enabled'''
 +
#:[[File:Giga AMD CBS.png|580px]]
 +
#Select '''Performance'''
 +
#:[[File:Giga bios performance.png|580px]]
 +
#Set '''SMT Control''' to '''Enabled'''
 +
#:[[File:Giga bios SMT.jpg|580px]]
 +
#Press '''escape''' twice to return to the '''AMD CBS''' main menu.
 +
#Select '''DF Common Options''' and press '''enter'''
 +
#:[[File:Giga bios DF.png|580px]]
 +
#Select '''Memory Addressing''' and press '''enter'''
 +
#:[[File:Giga bios memory addressing.png|580px]]
 +
#Set '''NUMA nodes per socket''' to '''NPS0'''
 +
#:[[File:Giga bios NUMA.jpg|580px]]
 +
#Press '''escape''' twice to return to the '''AMD CBS''' main menu.
 +
#Select '''UMC Common Options''' and press '''enter'''
 +
#:[[File:Screenshot 2023-08-03 at 5.02.37 PM.png|580px]]
 +
#Select '''DDR4 Common Options''' and press '''enter'''
 +
#:[[File:Screenshot 2023-08-03 at 5.02.55 PM.png|580px]]
 +
#Select '''Security''' and press '''enter'''
 +
#:[[File:Screenshot 2023-08-03 at 5.03.12 PM.png|580px]]
 +
#Set '''TSME''' to '''Disabled'''
 +
#:[[File:Screenshot 2023-08-03 at 5.03.41 PM.png|580px]]
 +
#Press '''escape''' three times to return to the '''AMD CBS''' main menu.
 +
#Select '''NBIO Common Options''' and press '''enter'''
 +
#:[[File:Gigabyte bios 13.jpg|580px]]
 +
#Set '''Enable AER Cap''' to '''Enabled'''
 +
#Set '''SEV-SNP Support''' to '''Enabled'''
 +
#:[[File:Screenshot 2023-08-04 at 10.06.52 AM.png|580px]]
 +
#Select xGMI
 +
#Press '''escape''' to return to the '''AMD CBS''' main menu.
 +
 
 +
==5. UEFI - Boot Menu==
 +
 
 +
#Change to the '''Boot''' menu. Then set '''Boot Mode Select''' to '''UEFI'''
 +
#:[[File:Gigabyte bios 19.jpg|580px]]
 +
#Select '''Save Changes and Exit'', then select '''''<nowiki/>''Yes''<nowiki/>''<nowiki/>'<nowiki/>'' at''<nowiki/>'' the prompt and press '''enter'''.
 +
#:[[File:Gigabyte bios 21.jpg|580px]]
 +
The system will now reboot. Please do not unplug the IC-OS USB stick at this point.
 +
 
 +
==6. Boot the IC-OS USB image==
 +
#Watch for the screen with the Gigabyte logo and boot options underneath it. Press F10 a couple of times, once the options are listed.
 +
#:[[File:Gigabyte loading screen.jpg|580px]]
 +
#In the boot menu, select the ''first partition on the USB device'' and press '''enter''', e.g.:
 +
#:[[File:SM-35.png|580px]]
 +
 
 +
<br>
 +
 
 +
==Return to the Installation Runbook==
 +
 
 +
*If using the '''non-HSM''' onboarding procedure, return to the [[IC-OS Installation Runbook#8. UEFI Setup and Boot Menu|IC-OS Installation Runbook]].
 +
 
 +
*If using the '''legacy, HSM''' onboarding procedure, return to the [[NitroKey HSM installation runbook#8. UEFI Setup and Boot Menu|NitroKey HSM installation runbook]]

Revision as of 19:12, 9 August 2023

1. UEFI - Enter Setup

  1. Reboot or power on the server.
  2. Watch for the screen with the ASUS logo. Press DEL (delete) a couple of times to enter the setup menu.

Screenshot 2023-08-09 at 2.05.41 PM.png

2. UEFI - Check Version

  1. Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is 2.21.1279 or higher. This version was tested and found to support features required for IC-OS.
    • Is your version lower than 2.21.1279? Download the latest version and follow the included instructions at the Gigabyte support site

3. UEFI - Advanced Settings

  1. Change to the Advanced menu.
  2. Select Trusted Computing
    Gigabyte bios 17.jpg
  3. Set Security Device Support to Enabled
  4. Set SHA256 PCR Bank to Enabled
  5. Set Platform Hierarchy to Enabled
  6. Set Storage Hierarchy to Enabled
  7. Set Endorsement Hierarchy to Enabled
    Gigabyte bios 2.jpg
  8. Press escape to return to the Advanced main menu.
  9. Select CPU Configuration and press enter
    Giga bios CPU configuration.png
  10. Set SVM Mode to Enabled
    Giga bios SVM.png
  11. Select PCI Subsystem Settings and press enter
    Gigabyte bios 15.jpg
  12. Set SR-IOV Support to Enabled (scroll to bottom of page to find setting)
    Gigabyte bios 16.jpg
  13. Press escape to return to the Advanced main menu.

4. UEFI - AMD CBS

  1. Change to the AMD CBS menu. Then select CPU Common Options and press enter
    Gigabyte bios CPU common options.jpg
  2. Set SEV ASID Count to 253 ASIDs
  3. Set SEV-ES ASID Space Limit Control to Manual
  4. Set SEV-ES ASID Space Limit to 100
  5. Set SNP Memory (RMP Table) Coverage to Enabled
  6. Set SMEE to Enabled
    Giga AMD CBS.png
  7. Select Performance
    Giga bios performance.png
  8. Set SMT Control to Enabled
    Giga bios SMT.jpg
  9. Press escape twice to return to the AMD CBS main menu.
  10. Select DF Common Options and press enter
    Giga bios DF.png
  11. Select Memory Addressing and press enter
    Giga bios memory addressing.png
  12. Set NUMA nodes per socket to NPS0
    Giga bios NUMA.jpg
  13. Press escape twice to return to the AMD CBS main menu.
  14. Select UMC Common Options and press enter
    Screenshot 2023-08-03 at 5.02.37 PM.png
  15. Select DDR4 Common Options and press enter
    Screenshot 2023-08-03 at 5.02.55 PM.png
  16. Select Security and press enter
    Screenshot 2023-08-03 at 5.03.12 PM.png
  17. Set TSME to Disabled
    Screenshot 2023-08-03 at 5.03.41 PM.png
  18. Press escape three times to return to the AMD CBS main menu.
  19. Select NBIO Common Options and press enter
    Gigabyte bios 13.jpg
  20. Set Enable AER Cap to Enabled
  21. Set SEV-SNP Support to Enabled
    Screenshot 2023-08-04 at 10.06.52 AM.png
  22. Select xGMI
  23. Press escape to return to the AMD CBS main menu.

5. UEFI - Boot Menu

  1. Change to the Boot menu. Then set Boot Mode Select to UEFI
    Gigabyte bios 19.jpg
  2. Select Save Changes and Exit, then select Yes' at the prompt and press enter.
    Gigabyte bios 21.jpg

The system will now reboot. Please do not unplug the IC-OS USB stick at this point.

6. Boot the IC-OS USB image

  1. Watch for the screen with the Gigabyte logo and boot options underneath it. Press F10 a couple of times, once the options are listed.
    Gigabyte loading screen.jpg
  2. In the boot menu, select the first partition on the USB device and press enter, e.g.:
    SM-35.png


Return to the Installation Runbook