Wenn du von #USB bootest und die Fehlermeldung

"Dieser #PC kann #Windows11 nicht ausführen" siehst:

1.
Shift + F10 drücken (öffnet CMD)

2.
regedit eingeben

3.
Navigiere zu: HKEY_LOCAL_MACHINE\SYSTEM\Setup

4.
Rechtsklick,Neu,Schlüssel, nenne ihn LabConfig

5.
In LabConfig drei neue DWORD-Werte (32-Bit) erstellen:

BypassTPMCheck = 1
BypassSecureBootCheck = 1
BypassRAMCheck = 1 (optional, falls wenig RAM)

6.
Registry schließen, #Setup neu starten
Danach läuft die #Installation durch.

#regedit #win11 #tpm #hack #tipp #secureboot #computer #linux #windoof11

Today on the joys of my new laptop: it seems the CMOS battery is death on arrival.

Which means when I keep the computer in a sleep state that drains battery to the point of it shutting down, I get the very strange experience of the BIOS going back to default settings, with Secure Boot being re-enabled and me being unable to boot because I got rid of Windows.

Strangely, all of the secure boot fields in the AMI (🤮) bios are greyed out, and randomly turning it off and back on, adding and removing admin (so BIOS access) and user (so PC booting permission) passwords and then removing them....

#Weird #BIOS #SecureBoot #Nixos

セキュアブート証明書(とVBIOSの署名等)は一体いつになったら更新されるのだろうか。現状のままだと6月に入る前にセキュアブートを無効にする以外の回避策が無い。因みにPowerShellのコマンドでPK、KEK、DB、DBXのどれもデコードして確認出来る。

#Windows11 #SecureBoot

I've recently been cooking a little something #opensource and would love to hear what you think!

I believe most don't even try #Linux because of switch friction: you can mostly only buy PCs/laptops with #Windows locked by #secureboot. How about making OS switching a single click? Would people pay for this?

https://blog.arusekk.pl/posts/1-click-linux/
#1clicklinux #Windows10EOL #TPM #TPM20

1-Click Linux Installer

Wouldn't you love to just download a single self-contained 1clinux.exe and run it?

Arusekk blog

Ich hoffe ihr könnt mir helfen.
Ich will gerade ein Linux Mint parallel zu Windows installieren. Ich möchte das mit Hardware Treibern für Drittanbieter installieren.
Dabei werde ich aufgefordert ein UEFI Secure Boot Passwort zu vergeben, damit diese Treiber installiert werden können. Dieses muss ich dann beim Reboot neu eingeben.

Frage:
Muss ich dieses Passwort dann jedesmal beim Booten eingeben? Oder nur einmal beim Reboot nach der Installation und danach nie wieder?
Ersteres wäre inakzeptabel. Letzteres beträfe ja nur mich einmalig bei der Installation. Das wäre OK.

#Linux #Linuxmint #Secureboot #UEFI #UEFIboot #followerpower #fedihelp

How to update Secure Boot certificates #updates #2404 #grubefi #secureboot

https://askubuntu.com/q/1564968/612

How to update Secure Boot certificates

Currently I am using Ubuntu 24.04, but I am also wondering if the same could be applied to 22.04. On my machine I have a Secure Boot certificate that is invalid after Oct. 19, 2026. From my researc...

Ask Ubuntu

VBIOSの署名問題ですっかり忘れていたが、BIOS専用のネットワークドライバー(Notファームウェア)もセキュアブート証明書が更新されたら使用不能になる。使い道はBIOS更新時にBIOSから直接インターネットに接続してBIOSファイルをダウンロードする位。そんなリスクの高いBIOS更新はまず行わないので実際にこのドライバーを使う事はないだろう。RealtekのUNDIドライバーは2026年6月までMicrosoft Corporation UEFI CA 2011署名とMicrosoft Option ROM UEFI CA 2023署名の2つのドライバーファイルが配布される。

#Windows11 #SecureBoot #Realtek

I have upgraded Windows 10 to Windows 11 and Secure Boot of Ubuntu 24.04 kernel 6.17 stopped working (bad shim signature) #secureboot #windows11

https://askubuntu.com/q/1564736/612

I have upgraded Windows 10 to Windows 11 and Secure Boot of Ubuntu 24.04 kernel 6.17 stopped working (bad shim signature)

I have a dual boot machine with 2 HDDs: HDD1 nvme -> normal Windows 10 boot HDD2 sda-> Grub boot which boots Ubuntu (kernels 6.17 and 6.14) and Windows After MSFT kept asking me to upgrade to

Ask Ubuntu

Hmm if I run some kind of Linux distro (Debian actually) or some other *nix like FreeBSD do I need to worry about the coming "secure boot certificate rollover" apocalypse?

https://support.microsoft.com/en-gb/topic/windows-secure-boot-certificate-expiration-and-ca-updates-7ff40d33-95dc-4c3c-8725-a9b95457578e

#linux #debian #secureboot

Windows Secure Boot certificate expiration and CA updates - Microsoft Support

@Jeanluc2267 it was installed for a client so yes, #privacy is enabled as default. #secureboot is enabled and #luks password protected at startup