ASRock B650M PG Riptide Software/BIOS Setup Guide - Page 80

Remove 'UEFI CA' from DB, Install Default Secure Boot Keys

Page 80 highlights

Install Default Secure Boot Keys Please install default secure boot keys if it's the first time you use secure boot. Clear Secure Boot Keys This item appears only when you load the default Secure Boot keys. Use this item to clear all default Secure Boot keys. Key Management This item enables expert users to modify Secure Boot Policy variables without full authentication. This appears only when you set Secure Boot Mode to [Custom]. Factory Key Provision Allows you to install factory default Secure Boot keys after the platform reset and while the System is in Setup mode. Install Default Secure Boot Keys Please install default secure boot keys if it's the first time you use secure boot. Clear Secure Boot Keys This item appears only when you load the default Secure Boot keys. Use this item to clear all default Secure Boot keys. Export Secure Boot variables Allows you to copy NVRAM content of Secure Boot variables to files in a root folder on a file_system device. Enroll Efi Image Allows the image to run in Secure Boot mode. Enroll SHA256 hash of the binary into Authorized Signature Database (db). Device Guard Ready Remove 'UEFI CA' from DB Device Guard ready system must not list 'Microsoft UEFI CA' Certificate in Authorized Signature database (db). Restore DB defaults Allows you to restore DB variable to factory defaults. Platform Key(PK) Enroll Factory Defaults or load certificates from a file: 76

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85

76
Install Default Secure Boot Keys
Please install default secure boot keys if it’s the first time you use secure boot.
Clear Secure Boot Keys
°is item appears only when you load the default Secure Boot keys. Use this item to
clear all default Secure Boot keys.
Key Management
°is item enables expert users to modify Secure Boot Policy variables without full authenti-
cation. °is appears only when you set Secure Boot Mode to [Custom].
Factory Key Provision
Allows you to install factory default Secure Boot keys aſter the platform reset and
while the System is in Setup mode.
Install Default Secure Boot Keys
Please install default secure boot keys if it’s the first time you use secure boot.
Clear Secure Boot Keys
°is item appears only when you load the default Secure Boot keys. Use this item to
clear all default Secure Boot keys.
Export Secure Boot variables
Allows you to
copy NVRAM content of Secure Boot variables to files in a root folder
on a file_system device.
Enroll Efi Image
Allows the image to run in Secure Boot mode. Enroll SHA256 hash of the binary
into Authorized Signature Database (db).
Device Guard Ready
Remove 'UEFI CA' from DB
Device Guard ready system must not list ‘Microsoſt UEFI CA’ Certificate in Authorized
Signature database (db).
Restore DB defaults
Allows you to restore DB variable to factory defaults.
Platform Key(PK)
Enroll Factory Defaults or load certificates from a file: