Select to restore all of the machine settings to the factory default values and completely erase the data stored in the machine. It is not normally necessary to use this setting, but it is useful to erase personal or confidential information when disposing of the machine. Initializing All Data/Settings
<TPM Settings>
<Management Settings> <Data Management>
If the TPM setting is activated, you can safely store in the TPM chip encryption key (TPM key) that encrypts confidential information such as the password, public key pair for TLS communication, and user certificate stored in the machine. Doing so, you can prevent important information for the machine from leaking. Also, you can recover the system if the TPM chip fails by restoring the TPM key.
Make sure to change the "Administrator" password from the default value, to prevent a third party other than the administrator from being able to back up the TPM key. If a third party takes the TPM backup key, you will not be able to restore the TPM key.
For the purpose of enhanced security, the TPM key can only be backed up once. If the TPM settings are enabled, make sure to back up the TPM key on to a USB memory device, and store it in a secure place to prevent loss or theft.
The security functions provided by TPM do not guarantee complete protection of the data and hardware.