76
Install Default Secure Boot Keys
Please install default secure boot keys if it’s the first time you use secure boot.
Clear Secure Boot Keys
This item appears only when you load the default Secure Boot keys. Use this item to
clear all default Secure Boot keys.
Key Management
This item enables expert users to modify Secure Boot Policy variables without full authenti-
cation. This appears only when you set Secure Boot Mode to [Custom].
Factory Key Provision
Allows you to install factory default Secure Boot keys after the platform reset and
while the System is in Setup mode.
Install Default Secure Boot Keys
Please install default secure boot keys if it’s the first time you use secure boot.
Clear Secure Boot Keys
This item appears only when you load the default Secure Boot keys. Use this item to
clear all default Secure Boot keys.
Export Secure Boot variables
Allows you to
copy NVRAM content of Secure Boot variables to files in a root folder
on a file_system device.
Enroll Efi Image
Allows the image to run in Secure Boot mode. Enroll SHA256 hash of the binary
into Authorized Signature Database (db).
Device Guard Ready
Remove 'UEFI CA' from DB
Device Guard ready system must not list ‘Microsoft UEFI CA’ Certificate in Authorized
Signature database (db).
Restore DB defaults
Allows you to restore DB variable to factory defaults.
Platform Key(PK)
Enroll Factory Defaults or load certificates from a file: