Skip to main content

How to enable secure boot in Windows 11

Enabling Secure Boot is an important step in upgrading to Windows 11, as it's part of the system requirements. It ensures that unauthorized software can't run on your PC, and you will have to enable it before you install Windows 11 or it just won't work. Fortunately, enabling Secure Boot is as quick as changing a single BIOS setting.

Here's how to do it.

Difficulty

Easy

Duration

5 minutes

What You Need

  • Desktop PC or laptop

Secure Boot setting in an ASUS BIOS.
DigitalTrends

How to enable Secure Boot in Windows 11

The most straightforward way to enable Secure Boot is to use the BIOS setting. To access your BIOS, you'll need to use either your motherboard's BIOS key command (often Del or F2, but it varies by manufacturer), or use the Windows 11 boot options. For more help, follow our guide on how to use the BIOS to access it.

Step 1: Start your PC up and access your UEFI/BIOS using your system's BIOS key during the post process.

Step 2: If your UEFI/BIOS is in a Basic or Simple mode, switch to Advanced or similar to get the full range of options.

Step 3: The actual location of the Secure Boot setting will vary by motherboard manufacturer and model, but look for a Boot or Security tab at the top of the screen and navigate to that. Look through the options to find Secure Boot. You may have to navigate through a few menus to find it.

If you can't find it, check your manufacturer's website to see if it doesn't support it on that motherboard model. Alternatively, you may just need to update your BIOS.

Step 4: Toggle Secure Boot to On or Enabled if it isn't already. If you ever want to disable Secure Boot, you just come right back here and switch it to Off or Disabled as appropriate.

In my case on an ASUS motherboard, I had to set Secure Boot Mode to Standard.

Step 5: Save your settings and reboot your PC. When you boot back up, Secure Boot should be enabled.

How to check if Secure Boot is enabled in Windows 11

It's possible to doublecheck if Secure Boot is enabled in Windows 11. Here's how.

Step 1: Use Windows search to look for "msinfo32" and select the System Information result.

Step 2: Scroll down the list until you find Secure Boot. It will have either an On or Off next to it, letting you know what state it's in. Pictured here, is when I noticed mine was off and I hadn't realized it.

Windows 11 System Information
DigitalTrends

Now that you've enabled Secure Boot, what about Safe Boot? If you've ever gotten stuck with a blue screen of death, or a boot error, booting into safe mode can be a real lifesaver.

Jon Martindale
Jon Martindale is the Evergreen Coordinator for Computing, overseeing a team of writers addressing all the latest how to…
What is the Antimalware Service Executable, and should you disable it?
Person using Windows 11 laptop on their lap by the window.

The Antimalware Service Executable is a process you might see pop-up in Task Manager's task list now and again, beavering away at ... something. While it's not always obvious what it's up to, and the sign of "malware" in your process list might put the fear in you, you needn't fret. It's an important component in your Windows security, working as part of the iconic Windows Defender suite of tools.

In the past, older PCs may have seen a performance advantage from disabling the antimalware service executable, but unless you really, really have to for some very specific reasons, you shouldn't need to on a modern PC. Indeed, it would be better if you didn't.
What is the antimalware service executable?
The antimalware service executable, or MsMpEng.exe, to use the name you'll probably see crop up in Task Manager, is a component of the Windows Defender antimalware suite of tools. Together they help protect your Windows PC from viruses and other malware that might otherwise try to steal your data or corrupt your system files.

Read more
Zuckerberg says holographic AR glasses are coming
A person wearing the Ray-Ban Meta smartglasses, taking a photo.

In a recent interview, Mark Zuckerberg shared his thoughts and Meta’s plans for holographic AR glasses. The end goal is a device that can completely replace your phone with a spatial interface that keeps your head up and hands-free, while still providing access to all the information you need.

Zuckerberg said he anticipates three basic models of smart glasses becoming standard gear for daily use. The first is already available -- audio and camera glasses with integrated AI capabilities. The $300 Ray-Ban Meta Smart Glasses fall into this category. The next step up could add a small heads-up display (HUD).

Read more
Best laptop deals: Save on the Dell XPS 14, MacBook Pro 16 and more
The Dell XPS 14 on a white table with the screen open.

There are a lot of excellent laptop brands on the market, and if you're looking to pick up a new laptop, then you'll be happy to know that there are a huge ton of options out there, and there are a surprising amount of deals to be had. While it's true that desktop computers tend to offer a lot more in terms of specs, they aren't as portable, and for those who need to take their computers to work or school, the laptop is the only choice. On the bright side, you don't have to get one of the best laptops to get a well-specced machine, and that's part of the reason why we've collected some of our favorites below.
Since we've collected these deals from the best brands, you'll find HP laptop deals, Dell laptop deals, Acer laptop deals, Lenovo laptop deals, and more. They run the gamut from Chromebook deals and 2-in-1 laptop deals to powerful gaming laptop deals and everything in between.

HP Chromebook 14a -- $300, was $370

Read more