Taskbar Notification Menu Items

Infineon Security Platform

Infineon Security Platform Solution - Taskbar Notification Icon

Taskbar Notification Menu Items

Depending on the current status of the Infineon Security Platform, and the status of the currently logged in user, the Taskbar Notification Menu offers different menu items.

Using this menu, all Infineon Security Platform Solution Tools permitted for the currently logged in user can be started. If the currently logged in user is not allowed to start a Solution Tool, the respective menu item is not contained in the menu.

This shield icon is visible only for users with administrative rights under operating systems with User Account Control (e.g. Windows 7 and Windows Vista).

The following table lists all menu items.

Menu Item Explanation
Manage Security Platform Start the Infineon Security Platform Settings Tool.

Under operating systems with User Account Control the Settings Tool is started without elevated privileges.

Security Platform Initialization Start the Infineon Security Platform Quick Initialization Wizard.
This menu item is available, when the Infineon Security Platform setup has not yet been performed. This entry is grayed if the policy Allow Platform Enrollment is disabled (this policy is in effect if the Security Platform is not initialized before).

This menu item is not available in server mode as the Security Platform is automatically initialized if the client system is integrated into a Trust Domain with centralized management.

Security Platform User Initialization Start the Infineon Security Platform Quick Initialization Wizard.
This menu item is available, when the currently logged in user has not yet been set up as an Infineon Security Platform User. This entry is grayed if the Security Platform is not initialized and the policy Allow User Enrollment is disabled (this policy is in effect only for users who are not yet initialized).

This menu item is not available in server mode if the current user is not a member of User Enrollment Group.

Enable backup of your Security Platform Features Include your keys and credentials in automatic backups. You will be prompted to authenticate to the Security Platform.
This menu item is available, if the Security Platform Administrator has configured Backup, but the current user has not yet enabled this feature.

This menu item is not available in server mode as Backup and Restoration is handled by Trusted Computing Management Server.

Enable Password Reset Feature Enable the Password Reset feature for your user account.
This menu item is available, if the Security Platform Administrator has configured Password Reset, but the current user has not yet enabled this feature.
Personal Secure Drive - Load
or
Personal Secure Drive - <DriveLetter:DriveLabel> - Load
Load your Personal Secure Drive. If you have set up more than one PSD, then the menu will list all drives (<DriveLetter:DriveLabel>).
This menu item is available, if you have configured at least one PSD (which is currently not loaded).
Personal Secure Drive - Unload
or
Personal Secure Drive - <DriveLetter:DriveLabel> - Unload
Unload your Personal Secure Drive. If you have set up more than one PSD, then the menu will list all drives (<DriveLetter:DriveLabel>).
This menu item is available, if you have configured at least one PSD (which is currently loaded).
Personal Secure Drive - Load at Logon
or
Personal Secure Drive - <DriveLetter:DriveLabel> - Load at Logon
Specify whether you want to load your PSD automatically after your Windows logon. If you have set up more than one PSD, then the menu will list all drives (<DriveLetter:DriveLabel>). If a checkmark is displayed here, your PSD will be loaded. Click here to add/remove the checkmark.
This menu item is available, if you have configured at least one PSD.
Personal Secure Drive - Create/Manage Create, change or delete a Personal Secure Drive via User Initialization Wizard.
Personal Secure Drive - Unload all Unload all your Personal Secure Drives which are currently loaded.
Logout from Encrypting File System Click here to logout from Encrypting File System. This means that you will have to authenticate again to access your EFS protected data.
This menu item is available, if you have authenticated before to access some data protected by EFS.
Change Basic User Password Click here to change your Basic User Password.
This menu item is available, if your Basic User Password has expired. Basic User Password expiration can be set with the user policy Maximum Basic User Password age.
Synchronize Basic User Passphrase Click here to synchronize your Basic User Passphrase on authentication device and Security Platform.
This menu item is available, if your authentication device and your Security Platform have different Basic User Passphrases. Possible reasons are:
  • You have reset your Basic User Passphrase without updating your authentication device.
  • You are using your authentication device on several Security Platforms, and you have changed your Basic User Passphrase on another Security Platform.
Reconfigure User Features Click here to reconfigure your Security Platform Features. This menu item is available, if your PSD or EFS requires reconfiguration. Possible reasons are:
  • Your EFS or PSD certificate is not valid or not available anymore. This also occurs for File and folder encryption with Encrypting File System (EFS), if you have configured both EFS and PSD, and changed your PSD certificate afterwards.
  • A restoration was performed, and your PSD can not be loaded any more (e.g. because the drive letter is in use).
Temporarily Disable Security Platform until next system start Click here to suspend the functionality of the Infineon Security Platform until the system is restarted the next time. Applications designed to use the Security Platform will no longer have access to data protected by the Trusted Platform Module, including EFS protected data, the Personal Secure Drive and others. Access to protected data is restored once the Security Platform is re-enabled.
This menu item is available, if the Infineon Security Platform is initialized and enabled.
Note that this function is not available on Security Platforms with a Trusted Platform Module 1.2.
Enable Security Platform operation For administrators this menu item is available on a Security Platform initialized in stand-alone mode, if the Security Platform has been disabled by the owner. The Owner Password is required to enable the Security Platform.
This menu item is also available for users on an initialized Security Platform with Trusted Platform Module version less than 1.2, if the Security Platform has been temporarily disabled by the user. In this case the user has to reboot the system.

This menu item is not available in server mode as the Security Platform is automatically initialized if the client system is integrated into a Trust Domain with centralized management.

Restore Security Platform Restore Security Platform credentials and settings from a Backup archive.
This menu item is available to an administrator, if the Security Platform has not been initialized or has been initialized with another operating system, or if the Platform Owner has changed.

This menu item is not available in server mode as Backup and Restoration is handled by Trusted Computing Management Server.

Restore Security Platform Features Restore your user credentials and settings from a Backup archive.
This menu item is available, if your Basic User Key cannot be loaded, i.e. your Security Platform Features cannot be used.

This menu item is not available in server mode as Backup and Restoration is handled by Trusted Computing Management Server.

User Credentials / Settings - Request Local Working Copy Get a local working copy of your user credentials and settings from Trusted Computing Management Server. Block any changes from other computer as long as you have not accepted or discarded your local changes (i.e. the server mode user session state is set to "Permanent Read/Write").

This menu item is only available in server mode.

Perform this action before taking your platform offline, if you want to change your user credentials or settings without having a network connection to Trusted Computing Management Server. A typical example is changing or resetting your Basic User Password on a notebook which is offline.

Preconditions:

  • The current user has been initialized in server mode.
  • Your Platform is connected to Trusted Computing Management Server.
  • There is no active local working copy on the same platform (i.e. the user session state on the same platform is not "Permanent Read/Write").

If there is a current writing access to your user credentials, or your user credentials are not up-to-date, you will be informed that you cannot request a local working copy currently. In the first case, wait for a short time and try again. In the second case, a balloon will prompt you to update your user credentials.

Details on user session states.

User Credentials / Settings - Accept Local Changes Release the changes of your user credentials or settings to Trusted Computing Management Server. Allow changes from other platform again.

This menu item is only available in server mode.

Perform this action when your platform is online again, after having changed your credentials or settings locally.

Preconditions:

  • The current user has been initialized in server mode.
  • Your Platform is connected to Trusted Computing Management Server.
  • There is an active local working copy (i.e. the user session state on this platform is "Permanent Read/Write").

User Credentials / Settings - Discard Local Changes Discard changes of your user credentials or settings. Allow changes from other platform again.

This menu item is only available in server mode.

Perform this action when your platform is online again, and you have not changed your credentials and settings at all, or you want to revert your changes.

Preconditions:

  • The current user has been initialized in server mode.
  • Your Platform is connected to Trusted Computing Management Server.
  • There is an active local working copy (i.e. the user session state on this platform is "Permanent Read/Write").

Update User Credentials and Settings Perform this task to update your user credentials and settings on the current platform.

This menu item is only available in server mode.
Preconditions:

  • The current user has been initialized in server mode.
  • Your Platform is connected to Trusted Computing Management Server.

Details on user credentials and settings update

Refresh Refresh the Taskbar Notification Icon and Taskbar Notification Menu.
Delete Authentication Cache Reverse the effect of Remember password for all applications, which has been set in the Basic User Password authentication dialog. Thus you will be prompted to authenticate again when required.

This menu item is only available, if Remember password for all applications has been checked in the Basic User Password authentication dialog before.

Enable Infineon TPM Strong Cryptographic Provider To enable Infineon TPM Strong Cryptographic Provider a key must be generated. Click here to authorize the key generation.
Help The Infineon Security Platform Help is started.
Various menu items for context-sensitive Help Context-specific help for the current Platform State and necessary user actions is displayed.


©Infineon Technologies AG