Difference between revisions of "IC-OS Installation - UEFI Configuration - Gen2 Gigabyte"
From Internet Computer Wiki
(Add correct images) |
|||
Line 2: | Line 2: | ||
# Reboot or power on the server. | # Reboot or power on the server. | ||
− | # Watch for the screen with the | + | # Watch for the screen with the Gigabyte logo and boot options underneath it. Press DEL (delete) a couple of times, once the options are listed. |
#: [[File:Gigabyte loading screen.jpg|580px]] | #: [[File:Gigabyte loading screen.jpg|580px]] | ||
Line 9: | Line 9: | ||
# Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is '''2.21.1280''' or higher. This version was tested and found to support features required for IC-OS. | # Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is '''2.21.1280''' or higher. This version was tested and found to support features required for IC-OS. | ||
#* Is your version lower than '''2.21.1280'''? Download the latest version and follow the included instructions at the [https://www.supermicro.com/en/support/resources/downloadcenter/swdownload Supermicro support site] | #* Is your version lower than '''2.21.1280'''? Download the latest version and follow the included instructions at the [https://www.supermicro.com/en/support/resources/downloadcenter/swdownload Supermicro support site] | ||
+ | * TOO FIX WITH GIGABYTE SUPPORT | ||
== 3. UEFI - Advanced Settings == | == 3. UEFI - Advanced Settings == | ||
# Change to the '''Advanced''' menu. Then select '''PCI Subsystem Settings''' and press enter | # Change to the '''Advanced''' menu. Then select '''PCI Subsystem Settings''' and press enter | ||
− | + | [[File:Gigabyte bios 15.jpg|580px]] | |
− | # Set ''' | + | # Set '''SR-IOV Support''' to Enabled (scroll to bottom of page) |
− | #: [[File: | + | #: [[File:Gigabyte bios 16.jpg|580px]] |
− | # Select ''' | + | # Select '''Trusted Computing''' |
− | #: [[File: | + | #: [[File:Gigabyte bios 17.jpg|580px]] |
− | # Set ''' | + | # Set '''Security Device Support''' to '''Enabled''' |
− | #: [[File: | + | # Set '''SHA256 PCR Bank''' to '''Enabled''' |
− | # | + | # Set '''Platform Hierarchy''' to '''Enabled''' |
− | #: [[File: | + | # Set '''Storage Hierarchy''' to '''Enabled''' |
+ | # Set '''Endorsement Hierarchy''' to '''Enabled''' | ||
+ | #: [[File:Gigabyte bios 18.jpg|580px]] | ||
+ | |||
+ | == 4. UEFI - AMD CBS == | ||
+ | |||
+ | # Change to the '''AMD CBS''' menu. Then select '''CPU Common Options''' and press enter | ||
+ | #: [[File:Gigabyte bios CPU common options.jpg|580px]] | ||
# Set '''SMEE''' to '''Enabled''' | # Set '''SMEE''' to '''Enabled''' | ||
# Set '''SEV-ES ASID Space Limit Control''' to '''Manual''' | # Set '''SEV-ES ASID Space Limit Control''' to '''Manual''' | ||
# Set '''SEV-ES ASID Space Limit''' to '''100''' | # Set '''SEV-ES ASID Space Limit''' to '''100''' | ||
# Set '''SNP Memory (RMP Table) Coverage''' to '''Enabled''' | # Set '''SNP Memory (RMP Table) Coverage''' to '''Enabled''' | ||
− | #: [[File: | + | #: [[File:Gigabyte bios 12.jpg|580px]] |
# Press ESC (escape) to return to previous menu | # Press ESC (escape) to return to previous menu | ||
− | # Select ''' | + | # Select '''NBIO Common Options''' and press enter |
− | #: [[File: | + | #: [[File:Gigabyte bios 13.jpg|580px]] |
# Set '''SEV-SNP Support''' to '''Enabled''' | # Set '''SEV-SNP Support''' to '''Enabled''' | ||
− | #: [[File: | + | #: [[File:Gigabyte bios 14.jpg|580px]] |
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | == | + | == 5. UEFI - Boot Menu == |
# Change to the '''Boot''' menu; Set '''Boot Mode Select''' to '''UEFI''' | # Change to the '''Boot''' menu; Set '''Boot Mode Select''' to '''UEFI''' | ||
− | #: [[File: | + | #: [[File:Gigabyte bios 19.jpg|580px]] |
− | # Change to '''Save | + | # Change to '''Save Changes and Exit'', then select '''Yes''' at the prompt and press enter. |
− | + | #: [[File:Gigabyte bios 21.jpg|580px]] | |
− | #: [[File: | ||
The system will now reboot. Please do not unplug the IC-OS USB stick at this point. | The system will now reboot. Please do not unplug the IC-OS USB stick at this point. | ||
− | == | + | == 6. Boot the IC-OS USB image == |
− | # Watch for the screen with the | + | # Watch for the screen with the Gigabyte logo and boot options underneath it. Press F10 a couple of times, once the options are listed. |
− | #: [[File: | + | #: [[File:Gigabyte loading screen.jpg|580px]] |
− | |||
− | |||
# In the boot menu, select the ''first partition on the USB device'' and press enter, e.g.: | # In the boot menu, select the ''first partition on the USB device'' and press enter, e.g.: | ||
− | #: [[File: | + | #: [[File:Gigabyte bios 22.jpg|580px]] |
<br> | <br> | ||
Line 72: | Line 61: | ||
* If using the '''legacy, HSM''' onboarding procedure, return to the [[NitroKey HSM installation runbook#8. UEFI Setup and Boot Menu|NitroKey HSM installation runbook]] | * If using the '''legacy, HSM''' onboarding procedure, return to the [[NitroKey HSM installation runbook#8. UEFI Setup and Boot Menu|NitroKey HSM installation runbook]] | ||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− |
Revision as of 23:11, 26 July 2023
1. UEFI - Enter Setup
- Reboot or power on the server.
- Watch for the screen with the Gigabyte logo and boot options underneath it. Press DEL (delete) a couple of times, once the options are listed.
2. UEFI - Check Version
- Check the version number at the bottom of the screen. Ensure the UEFI/BIOS version is 2.21.1280 or higher. This version was tested and found to support features required for IC-OS.
- Is your version lower than 2.21.1280? Download the latest version and follow the included instructions at the Supermicro support site
- TOO FIX WITH GIGABYTE SUPPORT
3. UEFI - Advanced Settings
- Change to the Advanced menu. Then select PCI Subsystem Settings and press enter
- Set SR-IOV Support to Enabled (scroll to bottom of page)
- Select Trusted Computing
- Set Security Device Support to Enabled
- Set SHA256 PCR Bank to Enabled
- Set Platform Hierarchy to Enabled
- Set Storage Hierarchy to Enabled
- Set Endorsement Hierarchy to Enabled
4. UEFI - AMD CBS
- Change to the AMD CBS menu. Then select CPU Common Options and press enter
- Set SMEE to Enabled
- Set SEV-ES ASID Space Limit Control to Manual
- Set SEV-ES ASID Space Limit to 100
- Set SNP Memory (RMP Table) Coverage to Enabled
- Press ESC (escape) to return to previous menu
- Select NBIO Common Options and press enter
- Set SEV-SNP Support to Enabled
5. UEFI - Boot Menu
- Change to the Boot menu; Set Boot Mode Select to UEFI
- Change to Save Changes and Exit, then select Yes' at the prompt and press enter.
The system will now reboot. Please do not unplug the IC-OS USB stick at this point.
6. Boot the IC-OS USB image
- Watch for the screen with the Gigabyte logo and boot options underneath it. Press F10 a couple of times, once the options are listed.
- In the boot menu, select the first partition on the USB device and press enter, e.g.:
Return to the Installation Runbook
- If using the non-HSM onboarding procedure, return to the IC-OS Installation Runbook.
- If using the legacy, HSM onboarding procedure, return to the NitroKey HSM installation runbook