See KB 529658 to enable or disable UEFI Secure Boot.
Broadcom documentation provides instructions to enable or disable UEFI Secure Boot for VMs.
Once UEFI Secure Boot is enabled on the VxRail nodes, configure the workloads to ensure a root of trust. See to ensure that your cluster is fully UEFI Secure Boot enabled.
To ensure that your cluster is fully UEFI Secure Boot enabled, see:
For Secure Boot options of VxRail Manager, see the Booting a Linux System.
