@garlin
I am humbled by the Level 3 support Garlin dispenses. I've been in the support relm since I was 18... I'm now 70. I started with Teletypes... I've been level 3 for most of my career in the AIDC industry. I just want to shout out praise for Garlin. I look forward to my morning...
Ok, Now I get:
Bootable Media
--------------
USB Drive I: "8 GB"
Windows Boot Manager [Windows UEFI CA 2023] is ALLOWED.
I:\EFI\Microsoft\Boot\bootmgfw.efi
File Version: 28000.322, SVN 8.0
I build my Macrium X USB boot disk and performed Check_UEFI-CA2023.ps1 -bootmedia -verbose and get:
Bootable Media
--------------
USB Drive I: "8 GB"
Boot File [Production PCA 2011] is BANNED
I:\EFI\Microsoft\Boot\bootmgfw.efi
File Version: 28000.322, SVN 7.0...
It worked! This PC is happy once again! Thank you Garlin! So here's the full history if anyone wants to see.
DISKPART> list disk
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 1863 GB 0 B *...
The last part fails?????
DISKPART> list disk
Disk ### Status Size Free Dyn Gpt
-------- ------------- ------- ------- --- ---
Disk 0 Online 1863 GB 0 B *
Disk 1 Online 3726 GB 0 B *
Disk 2 Online 3726 GB...
So I'm a little nervouse about doing this so bear with me... So I shold select partition 2 since it's the System?
DISKPART> select disk 0
Disk 0 is now the selected disk.
DISKPART> list part
Partition ### Type Size Offset
------------- ---------------- ------- -------...
Garlin,
I ran the 5-14 version of Check_UEFI-CA2023.ps1 and saw this:
Secure Boot: ON
Virtualization Based Security: OFF
BitLocker on (C:) OFF
UEFI KEK Certs
--------------
Microsoft Corporation KEK CA 2011
Microsoft Corporation KEK 2K CA 2023
UEFI DB Certs
-------------
Microsoft...
This happened to my Dell M4800 that had previoulsy reported successfull. Ran the new scripts and all is ok. I'm sure my M6800 will show the same. I have a Lenovo Laptop which I will check also.
PS C:\SecureBoot 4-18-26> .\Check_UEFI-CA2023.ps1 -verbose -audit
Windows 11 25H2 (26200.8246)...
This is strange.
On March 26, Check_UEFI-CA2023.ps1 indicated success. I have the text file to prove it. Also Windows Device Security/Secure Boot indicates no further certificate changes needed. However I ran Check_UEFI-CA2023.ps1 today and it indicated (similar to below since it it won't...