Recent content by Ngu_2038


  1. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    Technical enough to be able to make assumptions but experienced enough to ask in case I’m making a big mistake! I’ve also seen the BitLocker information from Microsoft and I think a lot must be down to the vendors implementation. Different motherboards, different TPM, different firmware. You...
  2. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    In the Update_UEFI-CA2023.ps1 script, the script checks whether Bitlocker is running and if it is using Device Guard. If both are enabled then it suspends BitLocker for two reboots (reboot count set to 3). Device guard is running on our workstations so that might be where our workflows differ...
  3. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    Hi. Apologies if this has already been asked. Does BitLocker need to be disabled for 3 reboots? I've found that our workstations appear usable after 1 reboot after running the update script. Is that baked in protection in case of the update taking place at the same time as other windows updates?
  4. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    Hi. I’ve used the update 2023 certs script to apply the 2023 certificates to HP models that do not have official 2023 certificate support (G4 models). The 2011 certificate is revoked. The bootloader says it’s using the 2023 certificates and the kek etc is installed. I know there’s no crystal...
Back
Top Bottom