![Quanmax QBOX-100P Series User Manual Download Page 62](http://html1.mh-extra.com/html/quanmax/qbox-100p-series/qbox-100p-series_user-manual_3456918062.webp)
QBOX-100P Series - User Guide, Rev. 1.0
// 62
Figure 29: BIOS Security Setup Menu - Secure Boot - Key Management*
BIOS SETUP UTILITY
Main
Advanced
Power
Boot
Security
Save & Exit
Provision Factory Default keys
[Disabled]
> Reset to Setup Mode
> Enroll Efi Image
> Save all Secure Boot variables
→
←
: Select Screen
↑
↓
: Select Item
Security Boot Variable
∣
Size
∣
Keys#
∣
Key Source
Enter: Select
> Platform Key (PK)
∣
862
∣
1
∣
Test (AMI)
+/-: Change Opt.
> Key Exchange Keys
∣
1560
∣
1
∣
Default
F1: General Help
> Authorized Signatures
∣
3143
∣
2
∣
Default
F2: Previous Values
> Forbidden Signatures
∣
652
∣
13
∣
Default
F3: Optimized Defaults
> Authorized TimeStamps
∣
0
∣
0
∣
No Key
F4: Save & Exit
> OsRecovery Signature
∣
0
∣
0
∣
No Key
ESC: Exit
Version 2.18.1263. Copyright (C) 2019, American Megatrends, Inc.
* This sub-menu appears only when selecting [Customized] for Key Management in the previous sub-menu.
Feature
Option
Description
Provision Factory
Default keys
[Disabled], [Enabled]
Select whether to allow to provision factory default Secure Boot
keys when system is in setup mode.
Reset to Setup Mode
[Yes], [No]
Force system to Setup Mode - clear all Secure Boot Variables
Enroll Efi Image
Select a File system
Allow the image to run in Secure Boot mode.
Enroll SHA256 Hash Certificate of the Image into Authorized
Signature Database (db).
Save all Secure Boot
variables
Select a File system
Save NVRAM content of Secure Boot policy variables to the files
(EFI_SIGNATURE_LIST data format) in root folder on a target file
system device.
Platform Key (PK)
[Save To File], [Set
New Var], [Delete
Var]
Enroll Factory Defaults or load certificates from a file:
1. Public Key Certificate in (a) EFI_SIGNATURE_LIST; (b)
EFI_CERT_X509 (DER encoded); (c) EFI_CERT_RSA2048 (bin); (d)
EFI_CERT_SHA256, 384, 512
2. Authenticated UEFI Variable
3. EFI PE / COFF Image (SHA256)
Key Source: Default, External, Mixed, Test
Key Exchange Keys
[Save To File], [Set
New Var], [Append
Key], [Delete Var]
Authorized
Signatures
[Save To File], [Set
New Var], [Append
Key], [Delete Var]
Forbidden Signatures [Save To File], [Set
New Var], [Append
Key], [Delete Var]
Authorized
TimeStamps
[Set New Var],
[Append Key]
OsRecovery
Signatures
[Set New Var],
[Append Key]