Difference between revisions of "IC-OS Installation - UEFI Configuration - Gen2 ASUS"
From Internet Computer Wiki
(Complete runbook) |
m |
||
Line 8: | Line 8: | ||
#Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is '''2.21.1280''' or higher. This version was tested and found to support features required for IC-OS. | #Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is '''2.21.1280''' or higher. This version was tested and found to support features required for IC-OS. | ||
− | #*Is your version lower than '''2.21. | + | #*Is your version lower than '''2.21.1280'''? Download the latest version and follow the included instructions at the [https://www.asus.com/us/support/ ASUS support site] |
==3. UEFI - Advanced Settings== | ==3. UEFI - Advanced Settings== | ||
Line 79: | Line 79: | ||
==6. Boot the IC-OS USB image == | ==6. Boot the IC-OS USB image == | ||
#Watch for the screen with the ASUS logo. Press DEL (delete) a couple of times to enter the setup menu. | #Watch for the screen with the ASUS logo. Press DEL (delete) a couple of times to enter the setup menu. | ||
− | [[File:Screenshot 2023-08-09 at 2.05.41 PM.png|580px]] | + | #:[[File:Screenshot 2023-08-09 at 2.05.41 PM.png|580px]] |
#Change to the '''Exit''' menu. | #Change to the '''Exit''' menu. | ||
#Select the ''first partition on the USB device'' and press '''enter''', e.g.: | #Select the ''first partition on the USB device'' and press '''enter''', e.g.: |
Revision as of 20:08, 9 August 2023
1. UEFI - Enter Setup
- Reboot or power on the server.
- Watch for the screen with the ASUS logo. Press DEL (delete) a couple of times to enter the setup menu.
2. UEFI - Check Version
- Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is 2.21.1280 or higher. This version was tested and found to support features required for IC-OS.
- Is your version lower than 2.21.1280? Download the latest version and follow the included instructions at the ASUS support site
3. UEFI - Advanced Settings
- Change to the Advanced menu.
- Select Trusted Computing
- Set Security Device Support to Enabled
- Set SHA256 PCR Bank to Enabled
- Set Platform Hierarchy to Enabled
- Set Storage Hierarchy to Enabled
- Set Endorsement Hierarchy to Enabled
- Press escape to return to the Advanced main menu.
- Select AMD CBS and press enter
- Select CPU Common Options and press enter
- Set SEV ASID Count to 253 ASIDs
- Set SEV-ES ASID Space Limit Control to Manual
- Set SEV-ES ASID Space Limit to 100
- Set SNP Memory (RMP Table) Coverage to Enabled
- Set SMEE to Enabled
- Select Performance
- Set SMT Control to Enabled
- Press escape twice to return to the AMD CBS main menu.
- Select DF Common Options and press enter
- Select Memory Addressing and press enter
- Set NUMA nodes per socket to NPS0
- Press escape twice to return to the AMD CBS main menu.
- Select UMC Common Options and press enter
- Select DDR4 Common Options and press enter
- Select Security and press enter
- Set TSME to Disabled
- Press escape three times to return to the AMD CBS main menu.
- Select NBIO Common Options and press enter
- Set Enable AER Cap to Enabled
- Set SEV-SNP Support to Enabled
- Press escape twice to return to the Advanced main menu.
- Select CPU Configuration and press enter
- Set SVM Mode to Enabled
- Press escape to return to the Advanced main menu.
- Select PCI Subsystem Settings and press enter
- Set SR-IOV Support to Enabled
- Press escape to return to the Advanced main menu.
4. UEFI - Exit
- Change to the Exit menu.
- Select Save Changes and Reset, then select Yes at the prompt and press enter.
The system will now reboot. Please do not unplug the IC-OS USB stick at this point.
6. Boot the IC-OS USB image
- Watch for the screen with the ASUS logo. Press DEL (delete) a couple of times to enter the setup menu.
- Change to the Exit menu.
- Select the first partition on the USB device and press enter, e.g.:
Return to the Installation Runbook
- If using the non-HSM onboarding procedure, return to the IC-OS Installation Runbook.
- If using the legacy, HSM onboarding procedure, return to the NitroKey HSM installation runbook