Questions tagged [secure-boot]
For questions on “Secure Boot” and “Restricted Boot” the new bios feature that is in computers with the “Windows 8” logo.
234
questions
5
votes
0
answers
3k
views
Kernel lockdown disallows loading of an self-compiled and self-signed in-tree kernel module
I'm having difficulties loading a kernel module that I myself compiled and signed for Secure Boot. The module in question is ec_sys, located within drivers/acpi directory of the kernel tree.
I'm using ...
5
votes
6
answers
104k
views
How to CLEAN INSTALL Windows 7 Professional 64Bit on Dell Inspiron 15R Turbo / Special Edition laptop?
I recently bought a Dell Inspiron 15R Turbo/Special Edition with following configuration:
3rd Generation Intel® Core™ i5-3210M processor,
Windows 8 Single Language, English (64bit),
8GB 2 DIMM (4GB ...
4
votes
4
answers
12k
views
Black BIOS screen after enabling Secure Boot?
I am not sure if I have understood the underlying concept clearly. I have MSI B450M Pro board and MSI GT710 GPU based graphics card. Windows 10 installed in UEFI Boot mode on an SSD.
I thought to ...
4
votes
1
answer
7k
views
How to Secure Boot EFI images signed with an installed custom key?
I've been trying to configure UEFI Secure Boot to use my own keys for a dual boot (Windows 10 + Linux) system.
This system is a Dell XPS 8700 (circa 2015) with an American Megatrends firmware/BIOS, ...
4
votes
2
answers
2k
views
Moving a Windows 10 SSD to external enclosure for dual boot
My laptop came with Windows 10 pre-installed using UEFI and Secure Boot on an SSD, the Windows drive encrypted with Bitlocker. I pulled that SSD and installed Ubuntu on a new SSD.
I bought an ...
4
votes
2
answers
37k
views
Does Enabling Bitlocker require SecureBoot?
I want to enable Bitlocker on my Windows 10 computer, but I don't want to enable Secure Boot, since it interferes with other partitions.
If I enable Bitlocker without a TPM (enter password at boot), ...
4
votes
1
answer
5k
views
How to disable Windows Defender Application Control once and for all?
(Please read before marking this as a duplicate, thanks.)
Description
I am developing my own Win32 x86_64 application which interferes heavily with the system, is able to communicate with drivers ...
4
votes
4
answers
9k
views
How can I disable SecureBoot when my system won't boot?
I recently upgraded from Windows 8 to 8.1 and received a warning that SecureBoot was not properly configured. I proceeded to try correcting this by installing the default keys from the BIOS and ...
4
votes
0
answers
554
views
If TPM owner password set in linux, how to enter owner password in windows to enable bitlocker?
I have successfully taken ownership of, and used various features of, my tpm in linux, using tpm_takeownership and related applications.
Now when I try to enter the owner password in windows to ...
3
votes
4
answers
79k
views
Secure Boot State is OFF although it is turned on in UEFI Firmware Settings
Please help me the following problems:
While checking system information using msinfo32, I see that Secure Boot State is OFF although I enabled it in UEFI Firmware Settings before.
I also accessed ...
3
votes
2
answers
3k
views
EFI sig list converter or viewer
I recently used efitools' keytool.efi to save the EFI secure boot keys from my UEFI firmware. I now have a few .esl files that contain EFI signature lists, but they are binaries, and I would like to ...
3
votes
3
answers
4k
views
what is the purpose of UEFI Secure Boot?
I heard that new computers will have a "secureboot" feature built in, and that it's supposed to keep "unsigned code" from booting.
I haven't seen any issue with a possibility to boot the wrong OS,as ...
3
votes
2
answers
9k
views
How to install a windows guest in qemu/kvm with secure boot enabled
My host machine is archlinux and I am using virt-manager as a frontend of qemu.
I just have no idea about how to enabling secure boot for windows qemu guests. I have tried using the OVMF_CODE.secboot....
3
votes
1
answer
3k
views
Undo 'sbsign' on executable, remove an attached image signature
I've signed an EFI image using the sbsign utility from the sbsigntools package, for example:
# sbsign --key db.key --cert db.pem \
--output /boot/efi/EFI/Grub/grubx64.efi /boot/efi/EFI/Grub/...
3
votes
2
answers
3k
views
Where is the data used in secure boot process stored?
I am spent a lot of time researching and reading about this topic but I am now very confused.
I have read that computer manufacturers include some Microsoft keys. For example, Microsoft Corporation ...