ADLER
ADLER User Manual - Rev. First Edition: 1.0 - Last Edition: 1.2 - Author: A.R./S.B. - Reviewed by M.B. Copyright © 2022 SECO S.p.A.
61
4.5
Security menu
4.5.1
Secure Boot submenu
4.5.1.1
Key Management submenu
Menu Item
Options
Description
Setup Administrator Password
Set Setup Administrator Password
User Password
Set User Password
Secure Boot
See Submenu
Customizable Secure Boot Settings
Menu Item
Options
Description
Secure Boot
Enabled / Disabled
Secure Boot is activated when the Platform Key (PK) is enrolled, System Mode is User/Deployed and CSM function is disabled.
Secure Boot Customization
Standard / Custom
Set UEFI Secure Boot Mode to STANDARD Mode or CUSTOM mode. This change will be effective after save. And after reset,
the mode will return to Standard
Restore Factory Keys
Active only when
“
Secure Boot Customization
”
is set to Custom. Force System to User Mode. Configure NVRAM to contain
OEM-defined factory default Secure Boot keys
Key management
See submenu
Enable expert users to modify Secure Boot Policy variables without full authentication
Menu Item
Options
Description
Factory Keys Provision
Enabled / Disabled
Provision factory default keys on next re-boot only when System in Setup Mode
Restore Factory Keys
Force System to User Mode. Configure NVRAM to contain OEM- defined factory default Secure Boot keys
Enroll Efi Image
File System Image
Run selected image in Secure Boot mode. Enrol SHA256 Hash Certificates of image into Authorized Signature Database
Restore DB defaults
Restore DB variable to factory defaults
Platform key (PK)
Key Exchange Keys
Authorized Signatures
Forbidden Signatures
Authorized Timestamps
OS Recovery Signatures
Set New Var
Append Key
Enrol factory Defaults or load certificates from a file:
1. Public Key Certificate in:
a) EFI_SIGNATURE_LIST
b) EFI_CERT_X509 (DER encoded)
c) EFI_CERT_RSA2048 (bin)
d) EFI_CERT_SHA256,384,512
2. Authenticated UEFI variables
3. EFI PE/COFF Image (SHA256), Key Source: Factory, External, Mixed