Asus RS700-E10-RS12U User Manual - Page 199

KEK Management / DB Management / DBX Management, Remove 'UEFI CA' from DB

Page 199 highlights

Clear Secure Boot Keys This option will delete all previously applied secure boot keys, including the PK (Platform key), KEK (key-exchange key), db (signature database), and dbx (revoked signature database). All the secure boot keys states will change from unloaded to loaded. Save changes and reset the system for the changes to take effect. Save all Secure Boot Variables This option will save NVRAM content of Secure Boot policy variables to the file (EFI_ SIGNATURE_LIST data format) in root foler on a target file system device. Enroll Efi Image This item will allow the image to run in Secure Boot mode. Enroll SHA256 Hash certificate of a PE image into Authorized Signature Database (db). Device Guard Ready Remove 'UEFI CA' from DB Remove Microsoft UEFI CA from Secure Boot DB. Restore DB defaults Restore DB variable to factory defaults. PK Management Configuration options: [Details] [Save To File] [Set New Key] [Delete key] KEK Management / DB Management / DBX Management Configuration options: [Details] [Save To File] [Set New Key] [Append Key] [Delete key] Authorized TimeStamps / OsRecovery Signatures Configuration options: [Set New Key] [Append Key] ASUS RS700-E10 Series 5-67

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212

5-67
ASUS RS700-E10 Series
Clear Secure Boot Keys
This option will delete all previously applied secure boot keys, including the PK
(Platform key), KEK (key-exchange key), db (signature database), and dbx (revoked
signature database). All the secure boot keys states will change from unloaded to
loaded. Save changes and reset the system for the changes to take effect.
Save all Secure Boot Variables
This option will save NVRAM content of Secure Boot policy variables to the file (EFI_
SIGNATURE_LIST data format) in root foler on a target file system device.
Enroll Efi Image
This item will allow the image to run in Secure Boot mode. Enroll SHA256 Hash
certificate of a PE image into Authorized Signature Database (db).
Device Guard Ready
Remove ‘UEFI CA’ from DB
Remove Microsoft UEFI CA from Secure Boot DB.
Restore DB defaults
Restore DB variable to factory defaults.
PK Management
Configuration options: [Details] [Save To File] [Set New Key] [Delete key]
KEK Management / DB Management / DBX Management
Configuration options: [Details] [Save To File] [Set New Key] [Append Key] [Delete key]
Authorized TimeStamps / OsRecovery Signatures
Configuration options: [Set New Key] [Append Key]