Why does Windows 11 need secure boot


And it's such a complicated procedure to enable secure boot

Is it really worth it?
Many motherboard manufactures are putting out a BIOS that will automatically enable everything needed to upgrade to Windows 11. Plus, as the article says, secure boot is to prevent malicious software from loading at boot. That's a feature I like.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro Beta
    Computer type
    PC/Desktop
    Manufacturer/Model
    Home built
    CPU
    Ryzen 9 5900X
    Motherboard
    MSI MPG X570S Edge Max WiFi
    Memory
    Patriot Viper Gaming DDR4 Extreme Performance (2 x32MB)
    Graphics Card(s)
    ZOTAC RTX 3060 Twin Edge OC 12GB GDDR6/ ZOTAC Gaming GeForce GTX 1660 Super 6GB GDDR6 192-bit Gaming Graphics Card
    Sound Card
    Proprietary
    Monitor(s) Displays
    ViewSonic XG2530 25"/Benq XL2411P 24"/ ASUS VA24DQSB) 23.8"
    Screen Resolution
    1920x1080 240Hz/144Hz/60Hz (based on monitor setup above)
    Hard Drives
    SK hynix Gold P31 1TB PCIe NVMe Gen3 M.2 2280 Internal SSD
    ADATA XPG SX8200 Pro 1TB
    Samsung SSD 860 EVO 1TB 2.5 Inch SATA III Internal SSD
    PSU
    Thermaltake Smart 700W 80+ White Certified PSU
    Case
    Rosewill ATX Mid Tower Gaming Computer Case, Gaming Case with Blue LED for Desktop
    Cooling
    Corsair iCUE H60i RGB PRO XT Liquid CPU Cooler
    Keyboard
    Corsair K70
    Mouse
    Logitech MX Master 3
    Internet Speed
    ~950Mb/s upload/ ~700Mb/s download
    Browser
    Edge (Chromium)
    Antivirus
    Norton 360
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    Home Built
    CPU
    Ryzen 7 3700X
    Motherboard
    MSI B550 Gaming GEN3 Gaming Motherboard
    Memory
    32MB DDR4
    Graphics card(s)
    I forget, but it's old. I can't see the need to upgrade it.
    Sound Card
    Propietary
    Monitor(s) Displays
    ACER LED 24"
    Screen Resolution
    1920X1080
    Hard Drives
    1TB Samsung SSD 3.5"
    Case
    Corsair
    Cooling
    Stock
    Mouse
    Logitech
    Keyboard
    Logitech
    Internet Speed
    ~750Mb/s download / ~750Mb/s upload
    Browser
    Edge
    Antivirus
    Defender and Malware Bytes
And where does it say in all that that Secure Boot is required? Oh right, it doesn't,

While the requirement to upgrade a Windows 10 device to Windows 11 is only that the PC be Secure Boot capable by having UEFI/BIOS enabled, you may also consider enabling or turning Secure Boot on for better security.

The only things required as of right now are TPM enabled, and UEFI and not CFM bios enabled.
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
    CPU
    Ryzen 5 3600
    Motherboard
    MSI B550 Tomahawk
    Memory
    Patriot Viper 4 Blackout Series 3600 2x8GB
    Graphics Card(s)
    Sapphire RX 5600 XT
    Monitor(s) Displays
    Philips 278E1A
    Screen Resolution
    3840x2160
    Hard Drives
    XPG SX8200 240GB M.2 PCIe Gen3x4 NVMe
    Samsung 850 EVO 250 GB
    Seagate 500 GB
    WD Black SN750 500GB
    PSU
    EVGA SuperNOVA 650 G3
    Case
    Deepcool CK500
    Cooling
    Deepcool Castle 280EX, plus 3 140 MM case fans (2 in front, 1 in rear)
    Keyboard
    Logitech G213 Prodigy
    Mouse
    Logitech 305
Why does Windows 11 need secure boot
Because MS are trying to make it possible to run Windows 11 as a very well-protected operating system.

And it's such a complicated procedure to enable secure boot
Go to the Bios,
find the entry for enabling Secure boot,
enable Secure boot,
save the change,
exit.

Is it really worth it?
If you think it's worth thwarting somebody who has planted malware that is designed to hijack your bootup process then it's worth it.
Otherwise it's not.
The same consideration applies to Windows 10.

All the best,
Denis
 

My Computer

System One

  • OS
    Windows 11 Home x64 Version 22H2 Build 22631.2715
And where does it say in all that that Secure Boot is required? Oh right, it doesn't,



The only things required as of right now are TPM enabled, and UEFI and not CFM bios enabled.
THe PC health check tool says Secure boot is required and gives this article as a reference
 

My Computer

System One

  • OS
    windows 10
Because MS are trying to make it possible to run Windows 11 as a very well-protected operating system.


Go to the Bios,
find the entry for enabling Secure boot,
enable Secure boot,
save the change,
exit.


If you think it's worth thwarting somebody who has planted malware that is designed to hijack your bootup process then it's worth it.
Otherwise it's not.
The same consideration applies to Windows 10.

All the best,
Denis
So why wasn't secure boot required for windows 10? Windows 10 was a smooth upgrade. Didn't have to fiddle with bios settings
 

My Computer

System One

  • OS
    windows 10
Many motherboard manufactures are putting out a BIOS that will automatically enable everything needed to upgrade to Windows 11. Plus, as the article says, secure boot is to prevent malicious software from loading at boot. That's a feature I like.
will hp have such a bios? And when?
 

My Computer

System One

  • OS
    windows 10
Unless I'm missing something, the documentation from Microsoft says that your PC must be "Secure Boot capable", not that you have to have it enabled. It's a confusing distinction.


Windows 11 and Secure Boot​


Published August 2021


This article is intended for users who are not able to upgrade to Windows 11 because their PC is not currently Secure Boot capable. If you are unfamiliar with this level of technical detail, we recommend that you consult your PC manufacturer’s support information for more instructions specific to your device.

Rob
 

My Computer

System One

  • OS
    Windows 10 Professional
    Computer type
    PC/Desktop
    Manufacturer/Model
    Digital Storm VELOX
    CPU
    Intel Core i9 11900K
    Motherboard
    ASUS PRIME Z590-P
    Memory
    64GB
    Graphics Card(s)
    NVIDIA GeForce GTX 1650
    Sound Card
    Realtek onboard
    Monitor(s) Displays
    Acer R221Q 21.5"
    Screen Resolution
    1920 x 1080
    Hard Drives
    2 x Samsung SSD 990 EVO Plus (1 TB)
    2 x Seagate ST4000NE001 (4 TB)
    PSU
    None
    Case
    VELOX
    Cooling
    Cooler Master
    Keyboard
    Logitech
    Mouse
    Kensington trackball
    Browser
    Firefox, Chrome
    Antivirus
    Windows Defender, Malwarebytes
THe PC health check tool says Secure boot is required and gives this article as a reference

Not it doesn't,

1637676371534.png

Unless you are trying to tell me that I have it enabled when I know that it isn't and never has been.
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
    CPU
    Ryzen 5 3600
    Motherboard
    MSI B550 Tomahawk
    Memory
    Patriot Viper 4 Blackout Series 3600 2x8GB
    Graphics Card(s)
    Sapphire RX 5600 XT
    Monitor(s) Displays
    Philips 278E1A
    Screen Resolution
    3840x2160
    Hard Drives
    XPG SX8200 240GB M.2 PCIe Gen3x4 NVMe
    Samsung 850 EVO 250 GB
    Seagate 500 GB
    WD Black SN750 500GB
    PSU
    EVGA SuperNOVA 650 G3
    Case
    Deepcool CK500
    Cooling
    Deepcool Castle 280EX, plus 3 140 MM case fans (2 in front, 1 in rear)
    Keyboard
    Logitech G213 Prodigy
    Mouse
    Logitech 305
So why wasn't secure boot required for windows 10? Windows 10 was a smooth upgrade. Didn't have to fiddle with bios settings

For what ever reason MS has decided to implement these changes/addition in 11 and not 10. That's why.



will hp have such a bios? And when?
What model HP PC/device do you have? It might make it easier to tell if they will if you fill out the my computer section.
 

My Computer

System One

  • OS
    Windows 11 Home(Beta) - 23H2 - 22635.2850
    Computer type
    PC/Desktop
    Manufacturer/Model
    Banana Junior 5600- G Series
    CPU
    Ryzen 5 5600G
    Motherboard
    Asus ROG Strix B550-F
    Memory
    G.SKILL Ripjaws V Series 64GB 4x16
    Graphics Card(s)
    NVIDIA GeForce GTX TITAN X
    Sound Card
    ASUS XONAR SE
    Monitor(s) Displays
    Viotek 32", 28" ASUS VP28U
    Screen Resolution
    1080p
    Hard Drives
    Primary SAMSUNG 970 EVO Plus
    PSU
    EVGA BQ 700w 80+ Bronze
    Case
    Zalman i3 NEO
    Cooling
    ARCTIC Freezer 7 X
    Keyboard
    Corsair
    Mouse
    Amazon Generic with Cord
    Internet Speed
    Download: 295.11 mbps Upload: 65.35 mbps T-Mobile Internet
    Browser
    Firefox and Edge
    Antivirus
    MS - Defender
    Other Info
    Speakers: Klipsch ProMedia 2.1
And it's such a complicated procedure to enable secure boot

Is it really worth it?
Literally couldn't be simpler to do tbf, Enter bios, Find it, Turn on, Tada.
But as its been said, It only has to be capable, Not actually turned on.
 

My Computer

System One

  • OS
    11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom
    CPU
    10700k@5.2
    Motherboard
    Gigabyte Gaming X Z490
    Memory
    Viper Steelseries 32gb@ 3600mhz
    Graphics Card(s)
    Gigabyte 2070 Super 8GB, +200 core + 600 memory
    Monitor(s) Displays
    ASUS 4k HDR, Two 1080p Benq and Samsung
    Screen Resolution
    3840x2160/2560x1440/1920x1080
    Hard Drives
    Adata XPG SX8200 PRO 1tb
    Samsung EVO 870 500GB
    PSU
    Corsair RX 650
    Case
    NZXT h510
    Cooling
    CM HYPER 212 RGB
    Keyboard
    Razer Ornata Chroma
    Mouse
    Steelseries Rival 710
Hi,
All 11 required security features are superficial at best if one doesn't use the features they are targeted for

11 opens a bunch of holes
Hyper-v virtualization
Remote access
Widgets which is gadgets on steroids mostly just bloats up a system with auto feeds

I disable and remove all this nonsense anyway so most of the security nonsense is just more bloat.

Hell I started disabling defender to it's just nagware now alerting me of my own personal settings I changed in it so alerts just got old lol

UEFI only boot is the nasty one not secure boot uefi kills legacy.
 

My Computer

System One

  • OS
    Linux-Mint-Cinnamon-20.2 Win-7-10-11Pro's
    Computer type
    PC/Desktop
    Manufacturer/Model
    asus x3
    CPU
    10900k & 9940x & 5930k
    Motherboard
    z490-Apex & x299-Apex & x99-Sabertooth
    Memory
    Trident-Z Royal 4000c16 2x16gb & Trident-Z 3600c16 4x8gb & 3200c14 4x8gb
    Graphics Card(s)
    Titan Xp & 1080ti FTW3 & evga 980ti gaming
    Sound Card
    Onboard Realtek x3
    Monitor(s) Displays
    1-AOC G2460PG 24"G-Sync 144Hz/ 2nd 1-ASUS VG248QE 24"/ 3rd LG 43" series
    Screen Resolution
    1920-1080 not sure what the t.v is besides 43" class scales from 1920-1080 perfectly
    Hard Drives
    To many to list
    PSU
    1000p2 & 1200p2 & 850p2
    Case
    D450 x2 & 1 Test bench in cherry Entertainment center
    Cooling
    Custom water loops x3 with 2x mora 360mm rads only 980ti gaming air cooled
    Keyboard
    G710+x3
    Mouse
    Redragon x3
    Internet Speed
    xfinity gigabyte
    Browser
    Firefox
    Antivirus
    mbam pro
Your results are different
IT told me my PC doesn't meet Windows 11 requirements because secure boot is not enabled
All you have to do is to go into the BIOS and activate Secure Boot.
 

My Computer

System One

  • OS
    Windows 11 Home(Beta) - 23H2 - 22635.2850
    Computer type
    PC/Desktop
    Manufacturer/Model
    Banana Junior 5600- G Series
    CPU
    Ryzen 5 5600G
    Motherboard
    Asus ROG Strix B550-F
    Memory
    G.SKILL Ripjaws V Series 64GB 4x16
    Graphics Card(s)
    NVIDIA GeForce GTX TITAN X
    Sound Card
    ASUS XONAR SE
    Monitor(s) Displays
    Viotek 32", 28" ASUS VP28U
    Screen Resolution
    1080p
    Hard Drives
    Primary SAMSUNG 970 EVO Plus
    PSU
    EVGA BQ 700w 80+ Bronze
    Case
    Zalman i3 NEO
    Cooling
    ARCTIC Freezer 7 X
    Keyboard
    Corsair
    Mouse
    Amazon Generic with Cord
    Internet Speed
    Download: 295.11 mbps Upload: 65.35 mbps T-Mobile Internet
    Browser
    Firefox and Edge
    Antivirus
    MS - Defender
    Other Info
    Speakers: Klipsch ProMedia 2.1
Hi,
I've hopped over all new system requirements I wouldn't worry about secure boot.
 

My Computer

System One

  • OS
    Linux-Mint-Cinnamon-20.2 Win-7-10-11Pro's
    Computer type
    PC/Desktop
    Manufacturer/Model
    asus x3
    CPU
    10900k & 9940x & 5930k
    Motherboard
    z490-Apex & x299-Apex & x99-Sabertooth
    Memory
    Trident-Z Royal 4000c16 2x16gb & Trident-Z 3600c16 4x8gb & 3200c14 4x8gb
    Graphics Card(s)
    Titan Xp & 1080ti FTW3 & evga 980ti gaming
    Sound Card
    Onboard Realtek x3
    Monitor(s) Displays
    1-AOC G2460PG 24"G-Sync 144Hz/ 2nd 1-ASUS VG248QE 24"/ 3rd LG 43" series
    Screen Resolution
    1920-1080 not sure what the t.v is besides 43" class scales from 1920-1080 perfectly
    Hard Drives
    To many to list
    PSU
    1000p2 & 1200p2 & 850p2
    Case
    D450 x2 & 1 Test bench in cherry Entertainment center
    Cooling
    Custom water loops x3 with 2x mora 360mm rads only 980ti gaming air cooled
    Keyboard
    G710+x3
    Mouse
    Redragon x3
    Internet Speed
    xfinity gigabyte
    Browser
    Firefox
    Antivirus
    mbam pro
And what are the specs of your computer, which you have already been asked and ignored?
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
    CPU
    Ryzen 5 3600
    Motherboard
    MSI B550 Tomahawk
    Memory
    Patriot Viper 4 Blackout Series 3600 2x8GB
    Graphics Card(s)
    Sapphire RX 5600 XT
    Monitor(s) Displays
    Philips 278E1A
    Screen Resolution
    3840x2160
    Hard Drives
    XPG SX8200 240GB M.2 PCIe Gen3x4 NVMe
    Samsung 850 EVO 250 GB
    Seagate 500 GB
    WD Black SN750 500GB
    PSU
    EVGA SuperNOVA 650 G3
    Case
    Deepcool CK500
    Cooling
    Deepcool Castle 280EX, plus 3 140 MM case fans (2 in front, 1 in rear)
    Keyboard
    Logitech G213 Prodigy
    Mouse
    Logitech 305
But the PC health check tool expects it to be turned on otherwise it fails
Then turn it on via the BIOS.
EDIT: You can also check this out to see what the results come out to be
 
Last edited:

My Computer

System One

  • OS
    Windows 11 Home(Beta) - 23H2 - 22635.2850
    Computer type
    PC/Desktop
    Manufacturer/Model
    Banana Junior 5600- G Series
    CPU
    Ryzen 5 5600G
    Motherboard
    Asus ROG Strix B550-F
    Memory
    G.SKILL Ripjaws V Series 64GB 4x16
    Graphics Card(s)
    NVIDIA GeForce GTX TITAN X
    Sound Card
    ASUS XONAR SE
    Monitor(s) Displays
    Viotek 32", 28" ASUS VP28U
    Screen Resolution
    1080p
    Hard Drives
    Primary SAMSUNG 970 EVO Plus
    PSU
    EVGA BQ 700w 80+ Bronze
    Case
    Zalman i3 NEO
    Cooling
    ARCTIC Freezer 7 X
    Keyboard
    Corsair
    Mouse
    Amazon Generic with Cord
    Internet Speed
    Download: 295.11 mbps Upload: 65.35 mbps T-Mobile Internet
    Browser
    Firefox and Edge
    Antivirus
    MS - Defender
    Other Info
    Speakers: Klipsch ProMedia 2.1
But the PC health check tool expects it to be turned on otherwise it fails
Hi,
MS fixed the first compatibility tool but as always ms can't fix anything lol
 

My Computer

System One

  • OS
    Linux-Mint-Cinnamon-20.2 Win-7-10-11Pro's
    Computer type
    PC/Desktop
    Manufacturer/Model
    asus x3
    CPU
    10900k & 9940x & 5930k
    Motherboard
    z490-Apex & x299-Apex & x99-Sabertooth
    Memory
    Trident-Z Royal 4000c16 2x16gb & Trident-Z 3600c16 4x8gb & 3200c14 4x8gb
    Graphics Card(s)
    Titan Xp & 1080ti FTW3 & evga 980ti gaming
    Sound Card
    Onboard Realtek x3
    Monitor(s) Displays
    1-AOC G2460PG 24"G-Sync 144Hz/ 2nd 1-ASUS VG248QE 24"/ 3rd LG 43" series
    Screen Resolution
    1920-1080 not sure what the t.v is besides 43" class scales from 1920-1080 perfectly
    Hard Drives
    To many to list
    PSU
    1000p2 & 1200p2 & 850p2
    Case
    D450 x2 & 1 Test bench in cherry Entertainment center
    Cooling
    Custom water loops x3 with 2x mora 360mm rads only 980ti gaming air cooled
    Keyboard
    G710+x3
    Mouse
    Redragon x3
    Internet Speed
    xfinity gigabyte
    Browser
    Firefox
    Antivirus
    mbam pro

Latest Support Threads

Back
Top Bottom