User Manual

PRIME / TUF GAMING Intel
®
500 Series BIOS Manual
53
Secure Boot Mode
Allows you to select the Secure Boot mode. In Cutom mode, Secure Boot Policy variables
can be congured by a physically present user without full authentication.
Conguration options: [Standard] [Custom]
The following item is accessible only when you set [Secure Boot Mode] to [Custom].
Key Management
Allows you to manage the secure boot keys.
The following item appears only when all secure boot keys have been delected.
Install Default Secure Boot Keys
Allows you to load default secure variables. After you press <Enter>, a conrmation
message appears. Use the left or right arrow key to select between [Yes] or [No], then
press <Enter> to conrm your choice.
The following items is accessible when secure variables have been loaded.
Clear Secure Boot keys
Allows you to clear all default Secure Boot keys. After you press <Enter>, a
conrmation message appears. Use the left or right arrow key to select between [Yes]
or [No], then press <Enter> to conrm your choice.
Save all Secure Boot variables
Allows you to save the NVRAM content of Secure Boot policy variables to the les
(EFI_SIGNATURE_LIST data format) in root folder on a target le system device. After
you press <Enter>, a popup window appears displaying the available le system(s).
Select a le system and use the left or right arrow key to select between [Yes] or [No],
then press <Enter> to conrm your choice.
PK Management
The Platform Key (PK) locks and secures the rmware from any permissible changes.
The system veries the PK before your system enters the operating system.
Save To File
Allows you to save the PK to a target le system device.
Set New Key
A popup window will appear if you press <Enter>. Select [Yes] if you wish to load
factory default PK, or [No] to load PK from a target le system device.
Delete key
Allows you to delete the PK from NVRAM.
Removing PK will reset the system to Setup/Audit mode.
The PK le must be formatted as a UEFI variable structure with time-based authenticated
variable.