All Questions
Tagged with secure-boot tpm
14
questions
0
votes
1
answer
2k
views
windows 11 error The Secure Boot update failed
for some reason this error is constantly thrown and logged in the Windows Event Viewer:
The Secure Boot update failed to update a Secure Boot variable with error Secure Boot is not enabled on this ...
0
votes
0
answers
277
views
How to get minimal vendor information about the TPM chip installed in my laptop
How do I get some minimal information about the TPM chip in my Linux laptop?
Information such as the manufacturer, manufacturer id, manufacturer version.
So far I have tried the tpm2_getcap command to ...
1
vote
0
answers
174
views
Why the TPM PCRs does not consider a UEFI settings change? If someone resets CMOS, it's undetected
In my laptop I've set up a bios pw when I power on the laptop, and once I enter it the laptop starts my linux distro and decrypts the disk without asking any other password. To do this I've set up TPM ...
2
votes
1
answer
1k
views
LUKS encryption using passphrase + TPM
I have questions about secure boot and TPMs and I couldn’t find precise answers on the web, so I’m hoping someone skilled in this domain will be able to answer.
In a case of an evil maid attack, what ...
0
votes
2
answers
2k
views
Bypassing TPM/SecureBoot checks when installing Win11 without Rufus
I need to install Windows 11 on an older PC that doesn't support TPM and SecureBoot.
According to this article, it's possible by creating DWORDs with the names BypassTPMCheck and BypassSecureBoot (...
1
vote
0
answers
318
views
Is it possible to allow only a certain secure USB boot media to boot an UEFI system?
I want to restrict all USB boot media from my system, except for a certain USB boot drive that I declare secure via a certain key.
Is this possible using UEFI/Secure Boot/TPM? Maybe via TPM? TPM gets ...
1
vote
0
answers
142
views
USB Windows 11 for TPM/SB created on non-TPM/SB system
What option is needed to install Windows 11 to a live persistent USB on a non-TPM/Secure Boot system, if the USB will be used on a TPM/Secure Boot system. I assume it is the Standard with TPM & ...
0
votes
1
answer
2k
views
Will TPM and Secure boot complicate hardware upgrades and changes? [closed]
Along with the new requirements of Windows 11 to have TPM and Secure Boot https://www.microsoft.com/en-us/windows/windows-11-specifications, as well as the complications highlighted from this article ...
0
votes
0
answers
312
views
How can BitLocker be configured to not require additional authentication if Secure Boot is disabled
I have a laptop with Windows 10 1703 installed, that I am trying to determine how BitLocker has been configured on.
In the BIOS the laptop has Discrete TPM selected but also has the option of Intel ...
0
votes
0
answers
123
views
Isolate (secure) multiple boot images from harming my PC
Is it possible to protect my bare-metal from compromise, so that I can be fairly confident that (for example) restoring a VHDX system image every month keeps me clean? If so, how?
I'm building a ...
4
votes
2
answers
37k
views
Does Enabling Bitlocker require SecureBoot?
I want to enable Bitlocker on my Windows 10 computer, but I don't want to enable Secure Boot, since it interferes with other partitions.
If I enable Bitlocker without a TPM (enter password at boot), ...
4
votes
0
answers
554
views
If TPM owner password set in linux, how to enter owner password in windows to enable bitlocker?
I have successfully taken ownership of, and used various features of, my tpm in linux, using tpm_takeownership and related applications.
Now when I try to enter the owner password in windows to ...
1
vote
1
answer
5k
views
Does Windows 8.1 Secure Boot need a TPM chip?
I've seen conflicting information about the need for a TPM chip when enabling Secure Boot in the UEFI BIOS.
Is a TPM (Trusted Platform Module) chip needed for Secure Boot?
Thanks
Edit:
Thanks ...
0
votes
2
answers
2k
views
UEFI vs. ARM TrustZone
I understand UEFI has a Secure Boot feature that is now for all Win 8 (tablets, and smartphones). How does this fit in with ARM's TrustZone for example? Is UEFI like a firmware TPM that can sit as a ...