Allows you to enable or disable Secure Boot feature
Secure Boot Enable
This option is not selected by default.
Secure Boot Mode
Allows you to modify the behavior of Secure Boot to allow evaluation or enforcement of UEFI driver signatures.
Deployed Mode (default)
Audit Mode
Expert key Management
Allows you to manipulate the security key databases only if the system is in Custom Mode. The Enable Custom Mode option is disabled by default. The options are:
PK (default)
KEK
db
dbx
If you enable the Custom Mode, the relevant options for PK, KEK, db, and dbx appear. The options are:
Save to File- Saves the key to a user-selected file
Replace from File- Replaces the current key with a key from a user-selected file
Append from File- Adds a key to the current database from a user-selected file
redxps630
11 Legend
•
16324 Posts
•
82868 Points
734
0
Posted January 26th, 2022 15:00
can you disable secure boot temporarily to install the image then enable it afterwards if needed?
for secure boot key management read this Windows Secure Boot Key Creation and Management Guidance | Microsoft Docs
This option is not selected by default.
- PK (default)
- KEK
- db
- dbx
If you enable the Custom Mode, the relevant options for PK, KEK, db, and dbx appear. The options are: