Step reference

Dell BIOS configuration

Apply Dell firmware settings in WinPE before Windows installs — Secure Boot, TPM, virtualization, boot, wireless and Thunderbolt — using Dell Command | Configure.

1 min readUpdated Jul 21, 2026

What it does

Applies BIOS/firmware settings on Dell hardware using Dell Command | Configure, in WinPE before Windows installs. Every setting is optional — leave a field blank to leave it unchanged — and the step is skipped automatically on non-Dell hardware, so it's safe in a mixed-fleet template.

Options

Each setting is Enable / Disable unless a set of choices is listed; leave blank to leave it as-is.

SettingNotes
Secure BootEnable to satisfy Windows 11 / BitLocker requirements.
Legacy Boot / CSMUsually disabled for modern UEFI installs.
TPMEnable / Disable.
TPM Security (activate)Enable to activate the TPM.
Virtualization (VT-x / AMD-V)For Hyper-V, WSL2, sandboxes.
VT for Direct I/O (VT-d / IOMMU)Directed-I/O virtualization.
Fast BootMinimal / Thorough / Auto.
Wake on LANDisable / LAN only / LAN + PXE boot.
Wireless LAN (Wi-Fi)Enable / Disable.
BluetoothEnable / Disable.
Thunderbolt / USB4Enable / Disable.
BIOS admin passwordVault secret name. Leave blank to skip.

Good to know

  • Protected settings may need the BIOS admin password. Where a Dell model protects settings behind a setup password, supply it here (as a vault secret) so the change can be applied.
  • Runs in WinPE, before the OS, so firmware is correct from the very first Windows boot.
  • Non-blocking by default: it warns and continues rather than stopping the whole build.
  • On HP hardware, use HP BIOS configuration instead.

Part of the step catalogue.