User Manual

Chapter 4: AMI BIOS
4-43
Secure Boot
Select Enabled for Secure Boot ow control. This feature is available
when the platform key (PK) is pre-registered, the platform operates in
the user mode, and CSM is disabled in the Setup utility. The options
are Disabled and Enabled.
Secure Boot Mode
This feature allows selection of the Secure Boot Mode between Standard
and Custom. Selecting Custom enables users to change the Image Ex-
ecution Policy and manage Secure Boot Keys. The options are Custom
and Standard.
Key Management
(if Secure Boot Mode is set to 'Custom')
Key Management allows experienced users to modify Secure Boot Vari-
ables.
Default Key Provision
This item will load the default key provision. The options are Enabled
and Disabled.
Enroll All Factory Default Keys
This item will install the factory default secure variables. The options
are Yes and No.
Save All Secure Boot Variables
This item will save all the revised secure boot variables. The options
are Yes and No.
Platform Key
This item displays the current Platform Key status.
Delete PK
This item deletes a previously installed Platform Key.
Set New PK
This item uploads and installs a secure Platform Key. You may insert a
factory default key or load from a le. The le formats accepted are:
1) Public Key Certicate
a. EFI Signature List