Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
faq:xpc_slim:dq170 [2016/09/27 14:38] Shuttlefaq:xpc_slim:dq170 [2021/11/11 09:17] (current) Shuttle
Line 1: Line 1:
 ====== DQ170 ====== ====== DQ170 ======
-===== About vPro ===== + 
-Intel® vPro™ is a brand name for a specific set of management and security technologies.\\ +{{section>faq:hardware:bios#how_to_make_a_bootable_usb_flash_drive&firstseconly&nofooter&noeditbutton&noreadmore}} 
-Intel® Active Management Technology (AMT) is a subset of Intel vPro technology.+ 
 +{{section>faq:hardware:bios#how_do_i_update_the_bios_version_in_uefi_uefi_mode&firstseconly&nofooter&noeditbutton&noreadmore}} 
 + 
 +===== Introduction to vPro ===== 
 +**Intel® vPro™** is a brand name for a specific set of management and security technologies.\\ 
 +**Intel® Active Management Technology** (AMT) is a subset of Intel vPro technology.
  
 Intel AMT allows remote access to the PC for management and security tasks, even if the operating system is down, the hard drive has crashed or the PC is powered off, as long as the platform is connected to line power and to a network. Independent software vendors (ISVs) can build applications that take advantage of the features of Intel AMT using the application programming interface (API). Intel AMT allows remote access to the PC for management and security tasks, even if the operating system is down, the hard drive has crashed or the PC is powered off, as long as the platform is connected to line power and to a network. Independent software vendors (ISVs) can build applications that take advantage of the features of Intel AMT using the application programming interface (API).
Line 12: Line 17:
   - correct firmware settings and appropriate software   - correct firmware settings and appropriate software
  
-===== List of processors featuring Intel vPro technology ===== +===== vPro-enabled processors ===== 
-^Class^Model^Cores/Threads^CPU Clock^Turbo Clock^Cache^TDP^Graphics Engine^Graphics Clock^vPro^ +List of vPro-enabled LGA 1151 desktop processors, which can be used with DQ170.\\ 
-|Core i7|6700|4/8|3.4 GHz|4.0 GHz|8 MB|65 W|HD 530|350~1150 MHz|✔| +Only Core i5 / i7 models (except the K series) support the vPro function. 
-|:::|6700T|4/8|2.8 GHz|3.6 GHz|8 MB|35 W|HD 530|350~1100 MHz|✔| +^Class^Model^vPro^ 
-|Core i5|6600|4/4|3.3 GHz|3.9 GHz|6 MB|65 W|HD 530|350~1150 MHz|✔| +|Core i7|6700|✔| 
-|:::|6600T|4/4|2.7 GHz|3.5 GHz|6 MB|35 W|HD 530|350~1100 MHz|✔| +|:::|6700T|| 
-|:::|6500|4/4|3.2 GHz|3.6 GHz|6 MB|65 W|HD 530|350~1150 MHz|✔| +|:::|7700|| 
-|:::|6500T|4/4|2.5 GHz|3.1 GHz|6 MB|35 W|HD 530|350~1100 MHz|✔| +|:::|7700T|✔| 
- +|Core i5|6600|✔| 
-===== Which LAN port is featuring vPro functions? ===== +|:::|6600T|✔| 
-Please use the **left** ethernet port of DQ170 for remote management. \\ +|:::|6500|| 
-{{:faq:xpc_slim:dq170:dq170_lan-ports.jpg?nolink&400|}}\\ (Rear view of DQ170)+|:::|6500T|| 
 +|:::|7600|✔| 
 +|:::|7600T|| 
 +|:::|7500|| 
 +|:::|7500T|✔| 
 +===== Which LAN port can be used for vPro? ===== 
 +Rear view of the DQ170 - only the left network port is enabled for Intel® vPro Technology.\\ 
 +{{:faq:xpc_slim:dq170:dq170_lan-ports.jpg?nolink|}}
  
 ===== DQ170 BIOS Setup Configuration ===== ===== DQ170 BIOS Setup Configuration =====
   - Please press the "Del" key while booting to enter BIOS.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_01.png?nolink&300||}}   - Please press the "Del" key while booting to enter BIOS.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_01.png?nolink&300||}}
-  - Enter the "Advanced" tab and the "Trusted Computing" menu\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_02.png?nolink&300|}} +  - Enter the "Advanced" tab and the "Trusted Computing" menu.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_02.png?nolink&300|}} 
-  - With the "Security Device Support" setting, you can enable the Hardware TPM module:\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_03.png?nolink&300||}}\\ DQ170 is equipped with a Trusted Platform Module (TPM v2.0): Nuvoton NPCT650AAAWX. TPM is an international standard for a secure cryptoprocessor, which is a dedicated microcontroller designed to secure hardware by integrating cryptographic keys into devices. This module can only support UEFI mode, not legacy mode. Under Windows 7 you need to install the Microsoft Hotfix KB2920188 (see [[http://global.shuttle.com/support/download|DQ170 download page]]) - under Windows 10 there is no problem+  - Select "Security Device Support" to enable the Hardware TPM module:\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_03.png?nolink&300||}}\\ The DQ170 is equipped with a Trusted Platform Module (TPM v2.0): Nuvoton Digital IC NPCT6 with FW software (Version 1.3). TPM is an international standard for a secure crypto processor, which is a dedicated microcontroller designed to secure hardware by integrating cryptographic keys in devices. This module only supports UEFI mode, not Legacy mode. Windows 7 requires the Microsoft Hotfix KB2920188 (see [[https://global.shuttle.com/support/download|DQ170 download page]]) to be installed. This is not required for Windows 10 installations
-  - Enter the "AMT Configuration" menu to configure the AMT related settings.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_04.png?nolink&300||}} +  - Enter the "AMT Configuration" menu to configure the AMT-related settings.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_04.png?nolink&300||}} 
-  - Please perform the following settings in this AMT Configuration menu: +  - Please enter the AMT Configuration menu and make sure
-    - Set "Intel AMT" to "enabled" +    - "Intel AMT" is set to "enabled" 
-    - Set "MEBx Selection Screen" to "enabled" - then the system will show "Press <CTRL+P> to Enter MEBX setup menu" during the boot process.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_05.png?nolink&300||}} +    - "MEBx Selection Screen" is set to "enabled". In this case the system will show "Press <CTRL+P> to Enter MEBX setup menu" during boot process.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_05.png?nolink&300||}} 
-  - Save Changes and Exit the BIOS Setup Utility - the system will boot again.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_06.png?nolink&300||}}+  - Save Changes and Exit the BIOS Setup Utility - the system will now re-boot.\\ {{:faq:xpc_slim:dq170:dq170_vpro_bios_06.png?nolink&300||}}
  
 ===== DQ170 MEBX Setup Configuration ===== ===== DQ170 MEBX Setup Configuration =====
-  - Please press the <CTRL + P> keys while booting to enter MEBX setup menu. (MEBX = Intel® Management Engine BIOS Extension)\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_01.png?nolink&300|}} +  -Please press the <CTRL + P> keys while booting to enter the MEBX setup menu. (MEBX = Intel® Management Engine BIOS Extension)\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_01.png?nolink&300|}} 
-  - Please login the MEBX setup menu - the default password is "admin" (case sensitive).\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_02.png?nolink&300|}} +  - Please log in to the MEBX setup menu - the default password is "admin" (case sensitive).\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_02.png?nolink&300|}} 
-  - During first time login, the system will request to set a new password.\\ You can enter "Intel(R) ME General Setting" in order to set a new password.\\ Password rule: At least one upper case letter + digit character + non alpha-numeric character, for example: Admin123456!\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_03.png?nolink&300|}} +  - On first time login, the system will request a new password to be set.\\ 
-  - Go to the TCP/IP setting by following this path:+Enter "Intel(R) ME General Setting" to set a new password.\\ 
 +Password rule: At least one capital letter + digit character + non alpha-numeric character, for example: Admin123456!\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_03.png?nolink&300|}} 
 +  - Go to the TCP/IP settings as follows:
     - Main menu     - Main menu
     - Intel(R) AMT Configuration     - Intel(R) AMT Configuration
Line 45: Line 59:
     - TCP/IP setting     - TCP/IP setting
     - Wired LAN IPV4 Configuration\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_04.png?nolink&300|}}     - Wired LAN IPV4 Configuration\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_04.png?nolink&300|}}
-  - On this page you can disable the "DHCP Mode" and set local IP information. When configuring a vPro-enabled device it is best that the MEBX firmware and operating system share the same type of networking configuration, so that each is DHCP-enabled or static IP address.\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_05.png?nolink&300|}} {{:faq:xpc_slim:dq170:dq170_vpro_mebx_06.png?nolink&300|}} +  -Here, the "DHCP Mode" and the local IP information can be set.\\ When configuring a vPro-enabled deviceit is recommended the MEBX firmware and operating system share the same type of network configuration, so that each is DHCP-enabled or have static IP addresses.\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_05.png?nolink&300|}} {{:faq:xpc_slim:dq170:dq170_vpro_mebx_06.png?nolink&300|}} 
-  - Please enter the option "Activate Network Access".\\ This activates the current network settings and opens the ME network interface. This option disappears after activation.\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_07.png?nolink&300|}} +  - Please enter "Activate Network Access".\\ 
-  - After performing all settingyou can exit MEBX setup menu.\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_08.png?nolink&300|}}+This activates the current network settings and opens the ME network interface.\\ 
 +This option disappears after activation.\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_07.png?nolink&300|}} 
 +  - After performing all changesplease exit the MEBX setup menu.\\ {{:faq:xpc_slim:dq170:dq170_vpro_mebx_08.png?nolink&300|}} 
 + 
 +===== Appropriate vPro-Software ===== 
 +There are several management console applications available which can be used to set up and manage Intel vPro technology-based PCs like the DQ170. We picked out two applications: 
 +==== Intel vPro Manager ==== 
 +Intel vPro Platform Solution Manager (60 days test version) 
 +This is a framework application that allows you to launch plugin applications ("plugins") to remotely manage your Intel® vPro™ technology-based PC clients. The available plugins perform tasks such as Alarm Clock, Asset Inventory, Event Log, IDE-Redirection, KVM Remote Control, Power Management, and Serial Over LAN. The plugins can be used for evaluation purposes within a limited period of time. 
 +  * Download and install [[https://downloadcenter.intel.com/download/22183/Intel-vPro-Technology-Solution-Reference-Design-Intel-vPro-Platform-Solution-Manager|Intel vPro Platform Solution Manager]] on the control side PC 
 +  * [[https://software.intel.com/en-us/blogs/2013/04/19/introducing-the-intel-vpro-platform-solution-manager|Introduction]]  
 + 
 +**The Main Screen**: 
 +  - This is a display that shows which AMT clients you have added and wish to manage. 
 +  - This is the system you are currently connected to. 
 +  - These are the categories of the available plugins. 
 +  - This is the plugin panel. For the Intel AMT category, this shows all the feature plugins that are available. 
 +  - Settings: You can specify saving a list of machines on exit, automatically connect to machines in a list, save the log data on exit and you can view the log file. 
 +  - When selecting a plugin, a new window pertaining to the plugin selected will open. 
 + 
 +{{:faq:xpc_slim:dq170:dq170_vpro_software.jpg?nolink&500|}} 
 + 
 +=== Intel® Active Management Technology SDK === 
 +Independent software vendors (ISVs) can build applications that take advantage of the features of Intel AMT using the application programming interface (API) which acts very simple and consistent across all Intel AMT versions and SKUs. This enables software developers to easily build support for Intel AMT features into their applications. [[https://software.intel.com/en-us/amt-sdk/download|API Download]] 
 + 
 +==== MeshCommander ==== 
 +MeshCommander (Apache 2.0 License, Open Source) 
 + 
 +This is a web-based Intel AMT console. Web applications are flexible and offer many deployment options. 
 +  * Remote management tool for Intel® AMT computers 
 +  * Intel AMT can be managed entirely from a browser 
 +  * Can be installed on an IIS web server in your network 
 +  * Source code and samples available to build your own web-based Intel AMT tools ([[https://www.meshcommander.com/meshcommander |Download]]) 
 + 
 +**Current Features**: 
 +  * Hardware KVM viewer: remote control from own keyboard, video monitor, mouse 
 +  * Serial-over-LAN VT100 terminal (SOL aka Console Redirection): enables the I/O of the serial port of a managed system to be redirected over IP. 
 +  * IDE-Redirect support (IDE-R): remote imaging of non-functioning devices 
 +  * Power control 
 +  * AMT Event and Audit log viewer with filter box 
 +  * Hardware asset 
 +  * Account management - allows the administrator to delegate some features to others 
 +  * Network settings overview for wired/wireless interface, supports IPv4 and IPv6 
 +  * WIFI management 
 +  * User consent control 
 +  * Enabled feature control 
 +  * Certificate & TLS management 
 +  * CIRA & Environment Detection 
 +  * WSMAN browser (Web Services Management) 
 + 
 +{{:faq:xpc_slim:dq170:dq170_meshcommander.jpg?nolink&500|}}
  
 ==== Related links ==== ==== Related links ====
 {{backlinks>.}} {{backlinks>.}}
  • Last modified: 2016/09/27 14:38
  • by Shuttle