Chapter 4: BIOS
169
Export Secure Boot Variables
This feature exports the NVRAM contents of Secure Boot variables to a storage device.
Enroll EFI Image
This feature specifies which EFI (Extensible Firmware Interface) image should be used for
the system when it operates in the Secure Boot mode.
Device Guard Ready
Remove 'UEFI CA' from DB
Select Yes to remove UEFI CA from the database. The options are
Yes
and No.
Restore DB defaults
Select Yes to restore database variables to the manufacturer default settings. The options
are
Yes
and No.
Secure Boot Variable/Size/Keys/Key Source
Platform Key (PK)
Use this feature to enter and configure a set of values to be used as platform firmware
keys for the system. These values also indicate the sizes, keys numbers, and the sources
of the authorized signatures. Select Update to update the platform key. The options are
Details
, Export, Update, and Delete.
Key Exchange Keys
Use this feature to enter and configure a set of values to be used as Key-Exchange-Keys
for the system. These values also indicate the sizes, keys numbers, and the sources of
the authorized signatures. Select Update to update your "Key Exchange Keys". Select
Append to append your "Key Exchange Keys". The options are
Details
, Export, Update,
Append, and Delete.
Authorized Signatures
Use this feature to enter and configure a set of values to be used as Authorized Signatures
for the system. These values also indicate the sizes, keys numbers, and the sources of
the authorized signatures. Select Update to update your "Authorized Signatures". Select
Append to append your "Authorized Signatures". The options are
Details
, Export, Update,
Append, and Delete.