48
4
Restore Factory Keys
Use this item to force system into User Mode.
4
Reset to Setup Mode
Use this item to delete all Secure Boot key databases from NVRAM.
4
Export Secure Boot variables
Use this item to copy NVRAM content of Secure Boot variables to files in a root
folder on a file system device.
4
Enroll Efi Image
This item allows the image to run in Secure Boot Mode.
Enroll SHA256 Hash certificate of a PE image into Authorized Signature
Database (db).
Device Guard Ready
4
Remove
‘
UEFI CA
’
from DB
Device Guard ready system must not list
‘
Microsoft EFI CA
’
Certificate in
Authorized Signature database (db).
4
Restore DB defaults
Use this item to restore DB variable to factory defaults.
Secure Boot Variable/Size/Keys/Key Source
4
Platform Key (PK)/Key Exchange Keys/Authorized Signature/Forbidden
Signature/ Authorized TimeStamps/OS Recovery Signatures
Use this item to enroll Factory Defaults or load the keys from a file with:
1. Public Key Certificate in:
a) EFI_SIGNATURE_LIST
b) EFI_ CERT_X509 (DER encoded)
c) EFI_ CERT_RSA2048 (bin)
d) EFI_ CERT_SHAXXX (bin)
2. Authenticated UEFI Variable
3. EFI PE/COFF Image (SHA256)
Key Source: Factory, External, Mixed.