User Manual

Table Of Contents
5-77
RS720Q-E10-RS8U
Clear Secure Boot Keys
This option will delete all previously applied secure boot keys, including the PK (Platform
key), KEK (key-exchange key), db (signature database), and dbx (revoked signature
database). All the secure boot keys states will change from unloaded to loaded. Save
changes and reset the system for the changes to take effect.
Save all Secure Boot Variables
This option will save NVRAM content of Secure Boot policy variables to the le (EFI_
SIGNATURE_LIST data format) in root foler on a target le system device.
Enroll Efi Image
This item will allow the image to run in Secure Boot mode. Enroll SHA256 Hash
certicate of a PE image into Authorized Signature Database (db).
Device Guard Ready
Remove ‘UEFI CA’ from DB
Remove Microsoft UEFI CA from Secure Boot DB.
Restore DB defaults
Restore DB variable to factory defaults.
PK Management
Conguration options: [Details] [Save To File] [Set New Key] [Delete key]
KEK Management / DB Management / DBX Management
Conguration options: [Details] [Save To File] [Set New Key] [Append Key] [Delete key]
Authorized TimeStamps / OsRecovery Signatures
Conguration options: [Set New Key] [Append Key]