MOSBY includes all of the Microsoft 2023 keys (including KEK) with it's distribution and loads them into firmware. You only have to dl MOSBY v2.8 from GitHUB and install it on a bootable UEFI shell USB, then run it after putting your system's Secure Boot into SETUP MODE. Read the instructions on GitHUB and the README's in the distribution.Do I have to use the PK, KEK, DB, DBX from Microsoft ?
But to Secure Boot Windows 11 you have to use Microsoft's secure boot chain of trust, therefore use Microsoft's keys. You can install your own chain of trust for other OS's, even creating/signing your own custom keys that work with your own custom boot loader; I am pretty sure there are more than a few Linux users who do just that.
But also, I'm not sure the registry entry you did is "final" for the Windows scheduled task to push ALL the keys into firmware. It may have more to come... or might not due to being problematic. But if your firmware can be updated, MOSBY will update all the keys and get latest SVN and revocations.
Last edited:
My Computers
-
At a glance
Windows 11 ProRyzen 7 5800XGSkill 3200, 2x8GBMSI RX 6800 XT Gaming Z- OS
- Windows 11 Pro
- Computer type
- PC/Desktop
- Manufacturer/Model
- DIY
- CPU
- Ryzen 7 5800X
- Motherboard
- Gigabyte B550M Aorus Pro
- Memory
- GSkill 3200, 2x8GB
- Graphics Card(s)
- MSI RX 6800 XT Gaming Z
- Sound Card
- on-board Realtek
- Monitor(s) Displays
- MSI 180hz
- Screen Resolution
- 1440p
- Hard Drives
- Samsung 980 Pro, Samsung 870 Evo, generic PCIe NVME, WD 1TB 2.5" laptop spinner
- PSU
- Corsair RM 650
- Case
- mATX
- Cooling
- BeQuiet 240mm AIO and a bunch of case fans
- Keyboard
- one that clacks softly
- Mouse
- logitech
- Internet Speed
- bunches of bps
- Browser
- Firefox
- Antivirus
- Windows' own
-
At a glance
Win11 ProRyzen 7 170016GB DDR4RX-480- Operating System
- Win11 Pro
- Computer type
- PC/Desktop
- Manufacturer/Model
- DIY
- CPU
- Ryzen 7 1700
- Motherboard
- GA-AB350M G-3
- Memory
- 16GB DDR4
- Graphics card(s)
- RX-480
- Sound Card
- In-Built Realtek
- Monitor(s) Displays
- Samsung
- Screen Resolution
- 1440p
- Hard Drives
- NVME/SSD's
- PSU
- Thermaltake BX1 550W
- Case
- Some junky thing
- Cooling
- ThermalTake Assassin(?)
- Browser
- FF/Edge
- Antivirus
- Whatever Windows does
- Other Info
- Secure Boot enabled updated to 2023 CA keys, TPM2.0 enabled with system drive Bitlocker'd.









