• This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn more.

Secure Boot - Enable or Disable in UEFI


azasadny

Moved to ten*****s.com
VIP Member
Guru
#21
My Intel DZ77GA-70K motherboard supports SecureBoot and even though I'm booting to UEFI, I'm still not ready to try the SecureBoot option in the BIOS and I've left it unselected. Maybe one day when I'm feeling lucky?
 

My Computer

System One

  • OS
    Win 10 Pro 64bit
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Home built Intel i7-3770k-based system
    CPU
    Intel i7-3770k, Overclocked to 4.6GHz (46x100) with Corsair H110i GT cooler
    Motherboard
    ASRock Z77 OC Formula 2.30 BIOS
    Memory
    32GB DDR3 2133 Corsair Vengeance Pro
    Graphics Card(s)
    GeForce GTX 980ti SC ACS 6GB DDR5 by EVGA
    Sound Card
    Creative Sound Blaster X-Fi Titanium HD, Corsair SP2500 speakers and subwoofer
    Monitor(s) Displays
    LG 27EA33 [Monitor] (27.2"vis) HDMI
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung SSD 850 EVO 250GB (system drive)
    WD 6TB Red NAS hard drives x 2 in Storage Spaces (redundancy)
    PSU
    Corsair 750ax fully modular power supply with sleeved cables
    Case
    Corsair Air 540 with 7 x 140mm fans on front, rear and top panels
    Cooling
    Corsair H110i GT liquid cooled CPU with 4 x 140" Corsair SP "push-pull" and 3 x 140mm fans
    Keyboard
    Thermaltake Poseidon Z illuminated keyboard
    Mouse
    Corsair M65 wired
    Internet Speed
    85MBps DSL
    Browser
    Chrome and Edge
    Antivirus
    Windows Defender, MalwareBytes Pro and CCleaner Pro
    Other Info
    Client of Windows Server 2012 R2 10 PC's, laptops and smartphones on the WLAN.

    1GBps Ethernet ports

Brink

Administrator
Administrator
mvp
Posts
23,691
#22
Hello Art,

Secure Boot is an extra layer of protection to help protect your system from anything malicious during boot before Windows and most AV programs kick in their protection.

It'll be worth having enabled when you like. :)
 

My Computer

System One

  • OS
    64-bit Windows 10
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Custom self built
    CPU
    Intel i7-8700K OC'd to 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    16 GB (8GBx2) G.SKILL TridentZ DDR4 3200 MHz
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    3 x 27" Asus VE278Q
    Screen Resolution
    1920x1080
    Hard Drives
    250GB Samsung 960 EVO M.2,
    256GB OCZ Vector,
    6TB WD Black WD6001FZWX
    8TB WD MyCloudEX2Ultra NAS
    PSU
    OCZ Series Gold OCZZ1000M 1000W
    Case
    Thermaltake Core P3
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master
    Internet Speed
    1 Gb/s Download and 35 Mb/s Upload
    Browser
    Internet Explorer 11
    Antivirus
    Malwarebyte Anti-Malware Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    Linksys EA9500 router,
    Arris SB8200 cable modem,
    APC SMART-UPS RT 1000 XL - SURT1000XLI,
    Lumia 1520 phone

gregrocker

Windows 7 shines on!
VIP Member
Posts
154
#23
New Asus K55 laptop has under BIOS Security tab>I/O Interface Security>Secure Boot state>Enabled

but the cursor will not go to it.

Just below that there's Secure Boot Control>Enabled which description is Secure Boot flow control and allows changing to Disabled.

How exactly do I disable Secure Boot in this case? Do I need to give it an Admin Password first?
 

My Computer

System One

  • OS
    Win7

Brink

Administrator
Administrator
mvp
Posts
23,691
#24
Hello Greg,

You might see if disabling "Secure Boot Control" will then let you disable "Secure Boot state".

If not, will it let you use the arrow keys on the keyboard to navigate to the Secure Boot option, then press Enter to select it to toggle enable/disable?
 

My Computer

System One

  • OS
    64-bit Windows 10
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Custom self built
    CPU
    Intel i7-8700K OC'd to 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    16 GB (8GBx2) G.SKILL TridentZ DDR4 3200 MHz
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    3 x 27" Asus VE278Q
    Screen Resolution
    1920x1080
    Hard Drives
    250GB Samsung 960 EVO M.2,
    256GB OCZ Vector,
    6TB WD Black WD6001FZWX
    8TB WD MyCloudEX2Ultra NAS
    PSU
    OCZ Series Gold OCZZ1000M 1000W
    Case
    Thermaltake Core P3
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master
    Internet Speed
    1 Gb/s Download and 35 Mb/s Upload
    Browser
    Internet Explorer 11
    Antivirus
    Malwarebyte Anti-Malware Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    Linksys EA9500 router,
    Arris SB8200 cable modem,
    APC SMART-UPS RT 1000 XL - SURT1000XLI,
    Lumia 1520 phone

theog

VIP Member
VIP Member
Gold Member
Posts
5,591
#25
Greg

Have ENABLED CSM?

How to ENABLE CSM.

ASUSTeK Computer Inc. -Support- Windows 8 Support Information

ASUS said:
How do I boot to DOS with USB Flash drive or USB CD-ROM?
Solution

Enter the BIOS setup menu by pressing and holding F2 key when powering on.
Switch to "Boot" and set “Lunch CSM” to Enabled.
Switch to "Security" and set "Secure Boot Control" to Disabled.
Press F10 to save and exit.
Press and hold ESC key to lunch boot menu when the notebook restarts.
 

My Computer

System One

  • OS
    ME, XP,Vista,Win7,Win8,Win8.1
    Computer type
    PC/Desktop
    Other Info
    Notebooks x 3

    Desktops x 5

    Towers x 4

theog

VIP Member
VIP Member
Gold Member
Posts
5,591
#27
Greg

Is it formatted in FAT32, If YES, just do Step 11.
 

My Computer

System One

  • OS
    ME, XP,Vista,Win7,Win8,Win8.1
    Computer type
    PC/Desktop
    Other Info
    Notebooks x 3

    Desktops x 5

    Towers x 4

Brink

Administrator
Administrator
mvp
Posts
23,691
#28

My Computer

System One

  • OS
    64-bit Windows 10
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Custom self built
    CPU
    Intel i7-8700K OC'd to 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    16 GB (8GBx2) G.SKILL TridentZ DDR4 3200 MHz
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    3 x 27" Asus VE278Q
    Screen Resolution
    1920x1080
    Hard Drives
    250GB Samsung 960 EVO M.2,
    256GB OCZ Vector,
    6TB WD Black WD6001FZWX
    8TB WD MyCloudEX2Ultra NAS
    PSU
    OCZ Series Gold OCZZ1000M 1000W
    Case
    Thermaltake Core P3
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master
    Internet Speed
    1 Gb/s Download and 35 Mb/s Upload
    Browser
    Internet Explorer 11
    Antivirus
    Malwarebyte Anti-Malware Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    Linksys EA9500 router,
    Arris SB8200 cable modem,
    APC SMART-UPS RT 1000 XL - SURT1000XLI,
    Lumia 1520 phone

gregrocker

Windows 7 shines on!
VIP Member
Posts
154
#29
Do I need CSM for Win7 dual boot even if I am using UEFI install method? I thought it was for Legacy BIOS only. Is this because of using a flash stick for install? It looks like it.

Man I never thought I'd need to go back to FAT32 fomatting. Are you sure this is progress? :think:

Oh well it should work on Legacy too. I can just copy all my files off and back on anyway.

I am wanting to keep the factory preinstalled 8 for the 15-day trial period on this laptop because of assurances the optimization done for 8 will compensate for the bloatware, but you know me so I'm already scheming to multi-boot an 8 Clean Install as soon as I do 7.

But I just can't handle Metro even after promising an open mind, so I've already got Win7StartforWIn8 installed.
 

My Computer

System One

  • OS
    Win7

theog

VIP Member
VIP Member
Gold Member
Posts
5,591
#30
Greg

What options do you have in CSM, UEFI or UEFI & Legacy is needed.


Found some Asus K55N screenshots, but not options in CSM.




ENABLE CSM

ENABLE PXE OpROM

ENABLE Secure Boot

Asus001-1.png
Asus002-2.png
Asus003-3.png
Asus004-4.png
Asus005-5.png
 

My Computer

System One

  • OS
    ME, XP,Vista,Win7,Win8,Win8.1
    Computer type
    PC/Desktop
    Other Info
    Notebooks x 3

    Desktops x 5

    Towers x 4

gregrocker

Windows 7 shines on!
VIP Member
Posts
154
#31
Thanks Ray. What's buggin me now is that nothing in the Manuals refers to the 16gb Recovery Drive it offers to make under Recovery. I went ahead and sacrificed my installer stick for this since i have others, and it confirms it is copying the Recovery partition, but I can't find anything on the web about how this is run to recover to Factory condition.

I assume its bootable since it formats the stick wiping everything out. Anyone familar with it? I wonder why Asus keeps it such a big secret.
 

My Computer

System One

  • OS
    Win7

theog

VIP Member
VIP Member
Gold Member
Posts
5,591
#32
Greg

Reinstall is based on RESET.

This is a tutorial by Lenovo using the Windows 8 USB Drive Recovery app.

Methodology to create Recovery Media and reload a Lenovo Think system with Microsoft Windows 8 preload


Lenovo said:
NOTE: From this point forward in the recovery process, the choices for actual operating system recovery depend on the existing state of the computer hard drive.

Below are the instructions if there is an existing Microsoft Windows 8 install on the hard drive.
1.Select the target operating system of Microsoft Windows 8 to reload over existing Lenovo preload.
2.Select "Yes" to repartition the drives or "No" to keep existing partitions. For a clean install, the drives should be repartitioned.
3.Select "Fully Clean the drive".
4.Click Reset to begin the process.
5.The reset/recovery process takes approximately 90 minutes.
6.Once the reset/recovery is complete, the system will reboot into Microsoft Windows 8.

Below are the instructions if the hard drive is blank.
1.Select "Yes" to repartition the HDD or "No" to keep the existing partitions.
2.Click either choice, but these instructions follow the repartition scenario.
3.Select "Fully Clean the drive" as this will take several minutes to complete.
4.Click Reset to begin the process.
5.The reset/recovery process takes approximately 90 minutes.
6.Once the reset/recovery is complete, the system will reboot into Microsoft Windows 8.
 

My Computer

System One

  • OS
    ME, XP,Vista,Win7,Win8,Win8.1
    Computer type
    PC/Desktop
    Other Info
    Notebooks x 3

    Desktops x 5

    Towers x 4

gregrocker

Windows 7 shines on!
VIP Member
Posts
154
#33
I ran Reset to test it and it did a full Factory Recovery. What I still don't understand is how the Recovery USB drive fits in since it won't boot even under CSM or UEFI.

Also above it gives steps for if the HD is blank. But where does it get the Factory Image then if the Recov partiiton is gone from the HD? If it's still using Reset how does it tap the image on the stick?

I am rewriting the stick again to see if I can get it to boot. Will also check if Reset will pick it up.
 

My Computer

System One

  • OS
    Win7

Brink

Administrator
Administrator
mvp
Posts
23,691
#34
Basically the factory recovery is a reset like in the tutorial below. A Reset can be done from within Windows or Winre at boot.

http://www.eightforums.com/tutorials/2302-reset-windows-8-a.html


When you start to do a Reset, Windows will automatically look for connected installation media. If you don't have the recovery USB connected, then Windows will prompt for you to connect it or installation media to be able to start the Reset.
 

My Computer

System One

  • OS
    64-bit Windows 10
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Custom self built
    CPU
    Intel i7-8700K OC'd to 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    16 GB (8GBx2) G.SKILL TridentZ DDR4 3200 MHz
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    3 x 27" Asus VE278Q
    Screen Resolution
    1920x1080
    Hard Drives
    250GB Samsung 960 EVO M.2,
    256GB OCZ Vector,
    6TB WD Black WD6001FZWX
    8TB WD MyCloudEX2Ultra NAS
    PSU
    OCZ Series Gold OCZZ1000M 1000W
    Case
    Thermaltake Core P3
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master
    Internet Speed
    1 Gb/s Download and 35 Mb/s Upload
    Browser
    Internet Explorer 11
    Antivirus
    Malwarebyte Anti-Malware Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    Linksys EA9500 router,
    Arris SB8200 cable modem,
    APC SMART-UPS RT 1000 XL - SURT1000XLI,
    Lumia 1520 phone

Brink

Administrator
Administrator
mvp
Posts
23,691
#36
Hello Gregor, and welcome to Eight Forums.

No worries. If your motherboard doesn't have UEFI firmware, then you won't have Secure Boot either. :)
 

My Computer

System One

  • OS
    64-bit Windows 10
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Custom self built
    CPU
    Intel i7-8700K OC'd to 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    16 GB (8GBx2) G.SKILL TridentZ DDR4 3200 MHz
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    3 x 27" Asus VE278Q
    Screen Resolution
    1920x1080
    Hard Drives
    250GB Samsung 960 EVO M.2,
    256GB OCZ Vector,
    6TB WD Black WD6001FZWX
    8TB WD MyCloudEX2Ultra NAS
    PSU
    OCZ Series Gold OCZZ1000M 1000W
    Case
    Thermaltake Core P3
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master
    Internet Speed
    1 Gb/s Download and 35 Mb/s Upload
    Browser
    Internet Explorer 11
    Antivirus
    Malwarebyte Anti-Malware Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    Linksys EA9500 router,
    Arris SB8200 cable modem,
    APC SMART-UPS RT 1000 XL - SURT1000XLI,
    Lumia 1520 phone

Brink

Administrator
Administrator
mvp
Posts
23,691
#38
What issue are you having?

Does it say you have secure boot enabled (true) in step 1 and 2 in that tutorial?

If true, the you would want to disable secure boot by using step 3 in that tutorial.
 

My Computer

System One

  • OS
    64-bit Windows 10
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Custom self built
    CPU
    Intel i7-8700K OC'd to 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    16 GB (8GBx2) G.SKILL TridentZ DDR4 3200 MHz
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    3 x 27" Asus VE278Q
    Screen Resolution
    1920x1080
    Hard Drives
    250GB Samsung 960 EVO M.2,
    256GB OCZ Vector,
    6TB WD Black WD6001FZWX
    8TB WD MyCloudEX2Ultra NAS
    PSU
    OCZ Series Gold OCZZ1000M 1000W
    Case
    Thermaltake Core P3
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master
    Internet Speed
    1 Gb/s Download and 35 Mb/s Upload
    Browser
    Internet Explorer 11
    Antivirus
    Malwarebyte Anti-Malware Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    Linksys EA9500 router,
    Arris SB8200 cable modem,
    APC SMART-UPS RT 1000 XL - SURT1000XLI,
    Lumia 1520 phone

theog

VIP Member
VIP Member
Gold Member
Posts
5,591
#39
So if we don't have UEFI, how does one enable Secure Boot?
Hello Gregor, and welcome to Eight Forums.

No worries. If your motherboard doesn't have UEFI firmware, then you won't have Secure Boot either. :)
Hi Brink, thanks for the quick reply,

So I am trying to downgrade Windows 8 to 7 and I'm following this guide: http://www.eightforums.com/tutorials/13326-downgrade-windows-8-windows-7-a.html
Do you have a new PC with Windows 8 Pre-installed?
 

My Computer

System One

  • OS
    ME, XP,Vista,Win7,Win8,Win8.1
    Computer type
    PC/Desktop
    Other Info
    Notebooks x 3

    Desktops x 5

    Towers x 4

Users Who Are Viewing This Thread (Users: 0, Guests: 2)