Dell Precision 7540 - Enable Intel AMT

Hi
I am looking for some help on enabling Intel AMT on Dell Precision 7540 workstation notebook.

CPU is vpro capable - 9850H
Chipset is vpro capable - C246

Dell Sticker stating ‘ME Disabled 3’ can be found under the bottom cover.

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
 

Intel (R) MEInfo Version: 12.0.81.1760
Copyright (C) 2005 - 2021, Intel Corporation. All rights reserved.
 
General FW Information

Platform Type Mobile
FW Type Production
Last ME Reset Reason Global system reset
BIOS boot State Post Boot
Slot 1 Board Manufacturer 0x00001028
Slot 2 System Assembler 0x00000000
Slot 3 Reserved 0x00000000
Capability Licensing Service Enabled
Local FWUpdate Enabled
OEM ID 68853622-EED3-4E83-8A86-6CDE315F6B78
Integrated Sensor Hub Initial Power State Disabled
Intel(R) PTT Supported Yes
Intel(R) PTT initial power-up state Disabled
OEM Tag 0x00
TLS Enabled

Intel(R) ME code versions:
BIOS Version 1.13.1
MEBx Version 0.0.0.0000
GbE Version 0.5
Vendor ID 8086
FW Version 12.0.81.1753 H Corporate
LMS Version 2120.0.21.0
MEI Driver Version 2108.100.0.1053
Wireless Hardware Version 2.1.77
Wireless Driver Version 22.30.0.11

IUPs Information
PMC FW Version 300.2.11.1025
OEM FW Version 0.0.0.0000
LOCL FW Version 12.0.81.1753
WCOD FW Version 12.0.81.1753

PCH Information
PCH Version 10
PCH Device ID A30E
PCH Step Data B0
PCH SKU Type Production PRQ Revenue
PCH Replacement State Disabled
PCH Replacement Counter 0
PCH Unlocked State Disabled

Flash Information
SPI Flash ID 1 C22019
SPI Flash ID 2 Not Available
Host Read Access to ME Enabled
Host Write Access to ME Disabled
Host Read Access to EC Disabled
Host Write Access to EC Disabled

FW Capabilities 0x31319140
Protect Audio Video Path - PRESENT/ENABLED
Intel(R) Dynamic Application Loader - PRESENT/ENABLED
Intel(R) Platform Trust Technology - PRESENT/DISABLED
Persistent RTC and Memory - PRESENT/ENABLED

End Of Manufacturing
Post Manufacturing NVAR Config Enabled No
HW Binding Enabled
End of Manufacturing Enable Yes

Intel(R) Active Management Technology -
Intel(R) AMT State Disabled
M3 Autotest Enabled
Localized Language English
C-link Status Enabled
AMT Global State Enabled
Privacy/Security Level Default

Intel(R) Protected Audio Video Path
Keybox Not Provisioned
Attestation KeyBox Not Available
EPID Group ID 0x28DE
Re-key needed False
PAVP Supported Yes

Security Version Numbers
Minimum Allowed Anti Rollback SVN 1
Image Anti Rollback SVN 12
Trusted Computing Base SVN 1

FW Supported FPFs
FPF UEP ME FW
*In Use
--- --- -----
Enforcement Policy 0x03 0x03 0x03
EK Revoke State Not Revoked Not Revoked Not Revoked
PTT Enabled Enabled Enabled
OEM ID 0x00 0x00 0x00
OEM Key Manifest Present Present Present Present
OEM Platform ID 0x00 0x00 0x00
OEM Secure Boot Policy 0x3F9 0x3F9 0x3F9
CPU Debugging Enabled Enabled Enabled
BSP Initialization Enabled Enabled Enabled
Protect BIOS Environment Enabled Enabled Enabled
Measured Boot Enabled Enabled Enabled
Verified Boot Enabled Enabled Enabled
Key Manifest ID 0x0F 0x0F 0x0F
Persistent PRTC Backup Power Enabled Enabled Enabled
RPMB Migration Done Disabled Disabled Disabled
SOC Config Lock Done Not Done Done
SPI Boot Source Enabled Enabled Enabled
TXT Supported Disabled Disabled Disabled
 
ACM SVN FPF 0x02
BSMM SVN FPF 0x00
KM SVN FPF 0x00
OEM Public Key Hash FPF CD6559A4CC38566FCA276CAE00A47E0F63336409761A21F8300554746288C46F
OEM Public Key Hash UEP CD6559A4CC38566FCA276CAE00A47E0F63336409761A21F8300554746288C46F
OEM Public Key Hash ME FW CD6559A4CC38566FCA276CAE00A47E0F63336409761A21F8300554746288C46F
PTT Lockout Override Counter FPF 0x00
 

 


ME Analyzer from BIOS dump (fptw64.exe -d Dell-Precision-7540.bin -me) screenshot is attached.
https://imgur.com/8dJKdVm

How can we enable Intel ME on this notebook PC?


Regards
Harmandeep

any help please :slight_smile:

After reading https: // www . win-raid . com /t3103f39-quot-ME-FW-Image-Re-Flash-quot-and-quot-Disable-ME-quot-bios-options.html
I have tried to toggle few EFI variables but that doesn’t help either.

I still get error while trying to dump SPI “fptw -d SPI.bin”.
Error 185: FCERR is set. Hardware sequencing failed. Make sure that you have access to target flash area. FPT Operation Failed

If I try to flash bios region, I get error 167: Protected range registeres are currently set BIOS, preventing flash access.

So I cannot get full SPI dump or write to flash BIOS region.


1) Enable - Me FW Image Re-Flash | setup_var 0x8F0 0x1
2) Disable - BIOS Lock | setup_var 0xB48 0x0

0x4F2FD One Of: Me FW Image Re-Flash, VarStoreInfo (VarOffset/VarName): 0x8F0, VarStore: 0x1, QuestionId: 0x39D, Size: 1, Min: 0x0, Max 0x1, Step: 0x0 {05 91 27 11 28 11 9D 03 01 00 F0 08 10 10 00 01 00}
0x4F30E One Of Option: Disabled, Value (8 bit): 0x0 (default) {09 07 04 00 30 00 00}
0x4F315 One Of Option: Enabled, Value (8 bit): 0x1 {09 07 03 00 00 00 01}
0x4F31C End One Of {29 02}

0x6AE0F One Of: BIOS Lock, VarStoreInfo (VarOffset/VarName): 0xB48, VarStore: 0x1, QuestionId: 0xDB1, Size: 1, Min: 0x0, Max 0x1, Step: 0x0 {05 91 8A 0A 8B 0A B1 0D 01 00 48 0B 10 10 00 01 00}
0x6AE20 Default: DefaultId: 0x0, Value (8 bit): 0x1 {5B 06 00 00 00 01}
0x6AE26 One Of Option: Disabled, Value (8 bit): 0x0 (default MFG) {09 07 04 00 20 00 00}
0x6AE2D One Of Option: Enabled, Value (8 bit): 0x1 {09 07 03 00 00 00 01}
0x6AE34 End One Of {29 02}

Shared Directory contains biosreg.bin

https:// drive . google . com /drive/folders/10Bp_WO-h-a00o2ycW0u4rW1M3eKVjCn1?usp=sharing

Can please someone look into biosreg dump file and help. I think toggling few variables may help.

Regards
Harmandeep

Any help please. I am really stuck here.

[Guide] Unlock Intel Flash Descriptor Read/Write Access Permissions for SPI Servicing
[GUIDE] Grub Fix Intel FPT Error 280 or 368 - BIOS Lock Asus/Other Mod BIOS Flash
https://nstarke.github.io/firmware/uefi/…ing-ru-efi.html

I do suggest working with ur own full SPI dump, witch of course has to be unlocked first for the use of the Intel FPT tool, last resource maybe a SPI programmer.