MSI MPG Z790 CARBON MAX WIFI User Manual - Page 31

Enroll Efi Image, Platform KeyPK: ??, Set New Key, Delete Key, Key Exchange Keys: ??, Append Key

Page 31 highlights

▶ Enroll Efi Image Allows the image to run in Secure Boot mode. Enroll the SHA256 Hash certificate of a PE image into the authorized signature database (db). ▶ Platform Key(PK): ? ? ? The Platform Key (PK) can protect the firmware from any un-authenticated changes. The system will verify the PK before your system enters the OS. Platform Key (PK) is used for updating KEK. ▶ Set New Key Sets a new PK to your system. ▶ Delete Key Deletes the PK from your system. ▶ Key Exchange Keys: ? ? ? Key Exchange Key (KEK) is used for updating DB or DBX. ▶ Set New Key Sets a new KEK to your system. ▶ Append Key Loads an additional KEK from storage devices to your system. ▶ Delete Key Deletes the KEK from your system. ▶ Authorized Signatures: ? ? ? Authorized Signatures(DB) lists the signatures that can be loaded. ▶ Set New Key Sets a new DB to your system. ▶ Append Key Loads an additional DB from storage devices to your system. ▶ Delete Key Deletes the DB from your system. ▶ Forbidden Signatures : ? ? ? Forbidden Signatures (DBX) lists the forbidden signatures that are not trusted and cannot be loaded. ▶ Set New Key Sets a new DBX to your system. ▶ Append Key Loads an additional DBX from storage devices to your system. ▶ Delete Key Deletes the DBX from your system. BIOS Setup 31

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71

31
BIOS Setup
Enroll Efi Image
Allows the image to run in Secure Boot mode. Enroll the SHA256 Hash certificate
of a PE image into the authorized signature database (db).
Platform Key(PK): ? ? ?
The Platform Key (PK) can protect the firmware from any un-authenticated
changes. The system will verify the PK before your system enters the OS.
Platform Key (PK) is used for updating KEK.
Set New Key
Sets a new PK to your system.
Delete Key
Deletes the PK from your system.
Key Exchange Keys: ? ? ?
Key Exchange Key (KEK) is used for updating DB or DBX.
Set New Key
Sets a new KEK to your system.
Append Key
Loads an additional KEK from storage devices to your system.
Delete Key
Deletes the KEK from your system.
Authorized Signatures: ? ? ?
Authorized Signatures(DB) lists the signatures that can be loaded.
Set New Key
Sets a new DB to your system.
Append Key
Loads an additional DB from storage devices to your system.
Delete Key
Deletes the DB from your system.
Forbidden Signatures : ? ? ?
Forbidden Signatures (DBX) lists the forbidden signatures that are not trusted
and cannot be loaded.
Set New Key
Sets a new DBX to your system.
Append Key
Loads an additional DBX from storage devices to your system.
Delete Key
Deletes the DBX from your system.