Difference between revisions of "Intel Active Management Technology (AMT)"

From ThinkWiki
Jump to: navigation, search
m
m
Line 19: Line 19:
 
=== Pre-configuration ===
 
=== Pre-configuration ===
 
* Use ThinkVantage System Update so you have the latest BIOS
 
* Use ThinkVantage System Update so you have the latest BIOS
 +
* Reboot the system
  
 
=== Enabling AMT in BIOS ===
 
=== Enabling AMT in BIOS ===
* You should enable AMT in BIOS
 
 
* Hit the ThinkVantage button during the POST screen, then after the menu appears hit 'F1'
 
* Hit the ThinkVantage button during the POST screen, then after the menu appears hit 'F1'
 
** Select 'Config' on the main screen
 
** Select 'Config' on the main screen
Line 28: Line 28:
 
**** Hit 'F10' to Save and Exit
 
**** Hit 'F10' to Save and Exit
  
=== Enabling AMT in Intel Management Engine BIOS Extension ===
+
=== Configuring Intel ME BIOS Extension for the first time ===
 
* After the POST screen you will see the Intel ME BIOS Extension screen. Hit Ctrl+P to enter the setup.
 
* After the POST screen you will see the Intel ME BIOS Extension screen. Hit Ctrl+P to enter the setup.
** The default password is 'admin' (without quotes)
+
* The default password is 'admin' (without quotes)
** If you try to change the Intel ME password and get "Error - Intel(R) ME password change rejected" message, then you are using a weak password. This are guidelines for the Intel ME strong password:
+
* If you try to change the Intel ME password and get "Error - Intel(R) ME password change rejected" message, then you are using a weak password. This are guidelines for the Intel ME strong password:
*** between 8- and 32-characters long
+
** between 8- and 32-characters long
*** Contain both upper and lower case Latin characters
+
** Contain both upper and lower case Latin characters
*** Have at least one numeric character
+
** Have at least one numeric character
*** Have at least one ASCII non-alphanumeric character (!, @, #, $, %, ^, &, *)
+
** Have at least one ASCII non-alphanumeric character (!, @, #, $, %, ^, &, *)
** Select Intel(R) ME Configuration
+
 
*** Select 'Intel(R) ME State Control'
+
=== Enabling AMT in Intel Management Engine BIOS Extension ===
**** Set it ENABLED
+
* In the main MEBx menu Select Intel(R) ME Configuration
**** Select Return to Previous Menu
+
** Select 'Intel(R) ME State Control'
*** Select 'Intel(R) ME Firmware Local Update Qualifier'
+
*** Set it ENABLED
**** Set it to ALWAYS OPEN
+
*** Select Return to Previous Menu
**** Select Return to Previous Menu
+
** Select 'Intel(R) ME Firmware Local Update Qualifier'
*** Select 'Intel(R) ME Features Control'
+
*** Set it to ALWAYS OPEN
**** Select 'Manageability Feature Selection'
+
*** Select Return to Previous Menu
***** Choose 'Intel(R) AMT'
+
** Select 'Intel(R) ME Features Control'
**** Return to previous menu
+
*** Select 'Manageability Feature Selection'
*** Select 'Intel(R) ME Power Control'
+
**** Choose 'Intel(R) AMT'
**** Select 'Intel (R) ME ON in Host Sleep States'
+
*** Select Return to Previous menu
***** Set the 'widest' range of Sleep States
+
** Select 'Intel(R) ME Power Control'
***** Hit 'ESC' to Exit. The system will reboot now.
+
*** Select 'Intel (R) ME ON in Host Sleep States'
 +
**** Set the 'widest' range of Sleep States
 +
**** Hit 'ESC' to Exit. The system will reboot now.
  
 
=== Configuring AMT via Intel ME ===
 
=== Configuring AMT via Intel ME ===

Revision as of 00:43, 21 February 2008

Intel Active Management Technology (AMT)

Some Lenovo laptop include some of Intel's Management features.

Version Models
AMT 2.5 T61, T61p, X61 Tablet

Features

  • Management over the Network (LAN and WLAN, using AMT 2.5)
  • Remote Asset (Hardware and Software) Inventory
  • Remote Diagnostic and repair (even if laptop is off or down)
  • Agent Presence Checking (isolate corrupted laptops)
  • Encrypted software update (w/ remote power-on).
  • System isolation and recovery (Use hardware to filter inbound and outbound traffic, except management traffic)
  • Dedicated Flash memory (Firmware + Inventory + ISV Data)

Hints how to setup it via Intel ME BIOS Extension (MEBx) based on the T61p (Small business Mode)

Pre-configuration

  • Use ThinkVantage System Update so you have the latest BIOS
  • Reboot the system

Enabling AMT in BIOS

  • Hit the ThinkVantage button during the POST screen, then after the menu appears hit 'F1'
    • Select 'Config' on the main screen
      • Select 'Intel(R) AMT'
        • Set 'Intel(R) AMT Control' to 'Enabled'
        • Hit 'F10' to Save and Exit

Configuring Intel ME BIOS Extension for the first time

  • After the POST screen you will see the Intel ME BIOS Extension screen. Hit Ctrl+P to enter the setup.
  • The default password is 'admin' (without quotes)
  • If you try to change the Intel ME password and get "Error - Intel(R) ME password change rejected" message, then you are using a weak password. This are guidelines for the Intel ME strong password:
    • between 8- and 32-characters long
    • Contain both upper and lower case Latin characters
    • Have at least one numeric character
    • Have at least one ASCII non-alphanumeric character (!, @, #, $, %, ^, &, *)

Enabling AMT in Intel Management Engine BIOS Extension

  • In the main MEBx menu Select Intel(R) ME Configuration
    • Select 'Intel(R) ME State Control'
      • Set it ENABLED
      • Select Return to Previous Menu
    • Select 'Intel(R) ME Firmware Local Update Qualifier'
      • Set it to ALWAYS OPEN
      • Select Return to Previous Menu
    • Select 'Intel(R) ME Features Control'
      • Select 'Manageability Feature Selection'
        • Choose 'Intel(R) AMT'
      • Select Return to Previous menu
    • Select 'Intel(R) ME Power Control'
      • Select 'Intel (R) ME ON in Host Sleep States'
        • Set the 'widest' range of Sleep States
        • Hit 'ESC' to Exit. The system will reboot now.

Configuring AMT via Intel ME

  • Hit Ctrl+P when the Intel ME BIOS messages apear
  • Select 'Intel(R) AMT Configuration'
    • Select 'Host Name' and enter the same name as for the OS Host name
    • Select 'TCP/IP'
      • Hit 'N' to enable the Network Interface
      • Hit 'N' to enable DHCP
      • provide your domain name as set (or to be set) in the OS
    • Select 'Provision Model'
      • Hit 'N' to not change to AMT 1.0 Mode
      • Hit 'Y; to change to Small Business
    • Select 'SOL/IDE-R'
      • Hit 'Y' to confirm the warning
      • Set Username & Password to ENABLED (if it's set to ENABLED don't hit just 'ENTER' because you disable it)
      • Set Serial Over LAN to ENABLED
      • Set IDE Redirection to ENABLED
    • Select 'Secure Firmware Update'
      • Set it to ENABLED
    • Hit 'ESC' to Exit. The system will reboot again.

Configuring the OS

  • Use ThinkVantage System Update to get the AMT Software
  • After update reboot
  • After Log-in you should see the message 'Intel(R) Active Management Technology (Intel(R) AMT) status on this computer is enabled.'

Links

  • See Also Centrino Pro
  • Intel - AMT [1]
  • Intel® Active Management Technology (Intel AMT) Software Development Kit (SDK) Start Here Guide [2]
  • Tips & Tricks for Setting up & Accessing an Intel AMT Client [3]