Skip to main content

All Questions

Tagged with
0 votes
1 answer
2k views

windows 11 error The Secure Boot update failed

for some reason this error is constantly thrown and logged in the Windows Event Viewer: The Secure Boot update failed to update a Secure Boot variable with error Secure Boot is not enabled on this ...
Semen Shekhovtsov's user avatar
0 votes
0 answers
277 views

How to get minimal vendor information about the TPM chip installed in my laptop

How do I get some minimal information about the TPM chip in my Linux laptop? Information such as the manufacturer, manufacturer id, manufacturer version. So far I have tried the tpm2_getcap command to ...
a001's user avatar
  • 1
1 vote
0 answers
174 views

Why the TPM PCRs does not consider a UEFI settings change? If someone resets CMOS, it's undetected

In my laptop I've set up a bios pw when I power on the laptop, and once I enter it the laptop starts my linux distro and decrypts the disk without asking any other password. To do this I've set up TPM ...
Allexj's user avatar
  • 254
2 votes
1 answer
1k views

LUKS encryption using passphrase + TPM

I have questions about secure boot and TPMs and I couldn’t find precise answers on the web, so I’m hoping someone skilled in this domain will be able to answer. In a case of an evil maid attack, what ...
gfaure's user avatar
  • 31
0 votes
2 answers
2k views

Bypassing TPM/SecureBoot checks when installing Win11 without Rufus

I need to install Windows 11 on an older PC that doesn't support TPM and SecureBoot. According to this article, it's possible by creating DWORDs with the names BypassTPMCheck and BypassSecureBoot (...
Shtole's user avatar
  • 3
1 vote
0 answers
318 views

Is it possible to allow only a certain secure USB boot media to boot an UEFI system?

I want to restrict all USB boot media from my system, except for a certain USB boot drive that I declare secure via a certain key. Is this possible using UEFI/Secure Boot/TPM? Maybe via TPM? TPM gets ...
JohnnyFromBF's user avatar
  • 4,978
1 vote
0 answers
142 views

USB Windows 11 for TPM/SB created on non-TPM/SB system

What option is needed to install Windows 11 to a live persistent USB on a non-TPM/Secure Boot system, if the USB will be used on a TPM/Secure Boot system. I assume it is the Standard with TPM & ...
unksoldr's user avatar
0 votes
1 answer
2k views

Will TPM and Secure boot complicate hardware upgrades and changes? [closed]

Along with the new requirements of Windows 11 to have TPM and Secure Boot https://www.microsoft.com/en-us/windows/windows-11-specifications, as well as the complications highlighted from this article ...
Cerlancism's user avatar
0 votes
0 answers
312 views

How can BitLocker be configured to not require additional authentication if Secure Boot is disabled

I have a laptop with Windows 10 1703 installed, that I am trying to determine how BitLocker has been configured on. In the BIOS the laptop has Discrete TPM selected but also has the option of Intel ...
Jon's user avatar
  • 1
0 votes
0 answers
123 views

Isolate (secure) multiple boot images from harming my PC

Is it possible to protect my bare-metal from compromise, so that I can be fairly confident that (for example) restoring a VHDX system image every month keeps me clean? If so, how? I'm building a ...
shannon's user avatar
  • 101
4 votes
2 answers
37k views

Does Enabling Bitlocker require SecureBoot?

I want to enable Bitlocker on my Windows 10 computer, but I don't want to enable Secure Boot, since it interferes with other partitions. If I enable Bitlocker without a TPM (enter password at boot), ...
TestinginProd's user avatar
4 votes
0 answers
554 views

If TPM owner password set in linux, how to enter owner password in windows to enable bitlocker?

I have successfully taken ownership of, and used various features of, my tpm in linux, using tpm_takeownership and related applications. Now when I try to enter the owner password in windows to ...
bobjandal's user avatar
  • 141
1 vote
1 answer
5k views

Does Windows 8.1 Secure Boot need a TPM chip?

I've seen conflicting information about the need for a TPM chip when enabling Secure Boot in the UEFI BIOS. Is a TPM (Trusted Platform Module) chip needed for Secure Boot? Thanks Edit: Thanks ...
Eric's user avatar
  • 39
0 votes
2 answers
2k views

UEFI vs. ARM TrustZone

I understand UEFI has a Secure Boot feature that is now for all Win 8 (tablets, and smartphones). How does this fit in with ARM's TrustZone for example? Is UEFI like a firmware TPM that can sit as a ...
Mic's user avatar
  • 3