Questions about intel me and descriptor

I flashed the intel me region with intel fpt.

I changed the hidden bios setting named Me FW Reflash(…)
And it worked. (only for ME region)
But how does it give the permission needed for flashing?
It’s locked by intel descriptor too, isn’t it?
Can bios override descriptor’s read/write permissions?

Thank you in advance.

Usually yes if the original OEM bios is flashed again using normal procedures over an unlocked SPI region bios (FD unlocked or partial).
The ME Reflash hidden option works most of the cases, not touching the default NVRAM setting, it can revert back to disable after set it to enable and reflash finished, ive seen some that stays enable some revert.
On bios that have all other options as Bios lock SMI lock etc… you can set them visible without modify the NVRAM defaults and set all to disable, apart from the ME Reflash behavior that i mentioned before.

2 Likes