Recent content by suatcini54


  1. On Manually updating UEFI CA2023 security keys

    Hi. I will try to explain why placing Windows UEFI CA 2023 certificate in Windows certificate store is useless. Security measure of Secure Boot is an intermediary process that takes place in UEFI firmware between "the time after BIOS nears completion of post" and "the time just after Windows...
  2. On Manually updating UEFI CA2023 security keys

    Thanks for the video. I updated my Secure Boot certificates about a year ago. Then I watched the video and looked for Windows UEFI CA 2023 certificate in certlm.msc console. I couldn't find Windows UEFI CA 2023 certificate in there. Then just out of sheer curiosity, I asked AI why I could...
  3. Solved Windows 11 update failed. Boot up loop

    "... My BIOS/UEFI is by American Megatrends, but it won't allow me to boot from a USB flash drive." In BIOS there is an option to disable "boot to USB drive". The following screenshot shows my American Megatrends BIOS setting. If yours is the same, then check if it is Partial Initialization or...
  4. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    O.K. Understood. It was a response to @FIREMEDIC2700 talking about Device Security in Windows Security.
  5. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    @KevTech I revoked PCA 2011 about a year ago and @garlin 's check script is reading that PCA 2011 is revoked.
  6. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    @FIREMEDIC2700 Update was through Windows Update. Normal update. Nothing special. Secure Boot in Windows Security is O.K. Nothing to worry about. PCA 2011 is already banned into DBX database as can be seen in the screenshot in my previous post.
  7. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    After installing the latest Preview Build 26200.8524 yesterday, I have this: Windows Boot manager [Windows UEFI CA 2023] is BANNED. But Windows still boots off of CA 2023 certificate.
  8. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    For Asus M/Bs, at least for my Asus motherboard, choosing "Windows UEFI mode" and loading the Secure Boot keys will set Secure Boot on. Setting CSM disabled at the same time gives full Secure Boot coverage. But this necessitates all hardware components in the PC to be Secure Boot compatible...
  9. Solved garlin's PowerShell scripts for updating Secure Boot CA 2023

    @hottroc My Asus M/B BIOS (from late 2014) has the APPEND function to add certificates manually. Did you try it if you have it ? Prepare a USB flash disk formatted in FAT32 file system. Place Microsoft KEK 2K CA 2023 certificate with .crt extension on it and insert it to a USB 2.0 port. You...
  10. Problems encountered when installing Microsoft CA 2023 certificates on HP products with HP Sure Start

    After reading here in this forum or elsewhere that HP PC owners ran into some devastating trouble booting, I wanted to write this post.Please note I installed MS CA 2023 certs on my HP EliteBook 840 G5 notebook PC with flying colors.Some HP PCs did not receive BIOS updates to install Microsoft...
  11. W11 Keeps crashing/freezing on startup.

    Your upgraded PC spec is missing some vital information. Please also include the disk drive model and manufacturer data because there may be controller firmware update available and you missed it. Did you also install 1) the latest UEFI firmware (BIOS) update for your Motherboard ? 2)...
  12. Solved Windows 11’s April update is now causing PC crashes and visual glitches

    If you have secure boot and the new CA 2023 certificates installed, then you may temporarily disable secure boot and test your PC if you still have the issue. Alternatively, you may use iGPU, if your PC has it, see if crashes and visual gliches continue. But as I understand from your post, you...
  13. Why different PowerShell commands get different versions for the exact same file ??

    Thanks. Good information. Here FileVersionRaw/ProductVersionRaw is the correct version info matching the installed version of Windows 11. It seems I am using a RAW version of Windows 11.
Back
Top Bottom