SCH200
User’s Manual
Revision Date: June. 10. 2020
64
Field Name
Reset to Setup Mode
Help
Delete all Secure Boot key databases from NVRAM
Field Name
Export Secure Boot variables
Help
Copy NVRAM content of Secure Boot variables to files in a root folder
on a file
system device
Field Name
Enroll Efi Image
Help
Allow the image to run in Secure Boot mode. Enroll SHA256 Hash
certificate of a PE
image into Authorized Signature Database (db)
Field Name
Remove ‘UEFI CA’ from DB
Help
Device Guard ready system must not list 'Microsoft UEFI CA'
Certificate in
Authorized Signature database (db)
Field Name
Remove DB defaults
Help
Restore DB variable to factory defaults
Field Name
Platform Key (PK)
Default Value
Size:0, Keys, Key source: No Key
Help
Enroll Factory Defaults or load certificates from a file:
1. Public Key Certificate:
a)EFI_SIGNATURE_LIST
b)EFI_CERT_X509 (DER encoded)
c)EFI_CERT_RSA2048 (bin)
d)EFI_CERT_SHA256,384,512
2.Authenticated UEFI Variable
3.EFI PE/COFF Image(SHA256)
Key Source:
Factory,External,Mixed
comment
Press Enter when selected to go into the associated Sub-Menu “Key
Management”.