windows 10 iso file with ca 2023


FIREMEDIC2700

Well-known member
Member
VIP
Local time
2:05 PM
Posts
210
Location
BIRMINGHAM, AL USA
OS
WINDOWS 11 WINDOWS 10
hello i have asked in the 10 fourm also .
is there a really simple way to make a windows 10 iso file with the ca 2023. i revoked my 2011 cert and now i cant get win 10 to boot .
i have tried upp dump and change the convert config to 1 also tried the power shell command and no luck
 

My Computer My Computer

At a glance

WINDOWS 11 WINDOWS 10Intel(R) Core(TM) i7 -3770K CPU 3.50 GZ 3501 ...32.0 GB (31.9 GB usable)AMD RADEON TM R5240 INTELL HD GRAPHICS 4600 T...
OS
WINDOWS 11 WINDOWS 10
Computer type
PC/Desktop
Manufacturer/Model
HP H8 1360T
CPU
Intel(R) Core(TM) i7 -3770K CPU 3.50 GZ 3501 4 CORE
Motherboard
PEGATRON 2AD5
Memory
32.0 GB (31.9 GB usable)
Graphics Card(s)
AMD RADEON TM R5240 INTELL HD GRAPHICS 4600 TIGER 1+1 USB
Sound Card
AMD HD . IDT
Monitor(s) Displays
AOC WAL MART SPECIAL . HP 2311 IX IPS LED DELL 1708 FP
Screen Resolution
1920 X 1080 1600X900 1280X940
Hard Drives
1 FAXING S 100 512GB 1 KINGSTON 120 GB SSD 1 X12 SSD 512 GB
PSU
300 WATT HP
Case
FULL
Cooling
ON BOARD FAN
Keyboard
LOGITEC K 520 WIRELESS
Mouse
LOGITEC M 510 WIRELESS
Internet Speed
55 UP 11.2 DOWN
Browser
CHROME EDGE
Antivirus
WINDOWS SECUIRTY
Other Info
NON SUPPORTED HARDWARE FOR WINDOWS 11
Do you have the Windows 10 update for secure Boot 2023 certificate?
 

My Computer My Computer

At a glance

Windows 11AMD Ryzen 7 5700GMicron Technology DDR4-3200 16GBNVIDIA GeForce RTX 3060
OS
Windows 11
Computer type
PC/Desktop
Manufacturer/Model
HP Pavilion
CPU
AMD Ryzen 7 5700G
Motherboard
Erica6
Memory
Micron Technology DDR4-3200 16GB
Graphics Card(s)
NVIDIA GeForce RTX 3060
Sound Card
Realtek ALC671
Monitor(s) Displays
Samsung SyncMaster U28E590
Screen Resolution
3840 x 2160
Hard Drives
SAMSUNG MZVLQ1T0HALB-000H1
Can you disable Secure Boot so you can boot Windows 10?
 

My Computer My Computer

At a glance

Windows 11AMD Ryzen 7 5700GMicron Technology DDR4-3200 16GBNVIDIA GeForce RTX 3060
OS
Windows 11
Computer type
PC/Desktop
Manufacturer/Model
HP Pavilion
CPU
AMD Ryzen 7 5700G
Motherboard
Erica6
Memory
Micron Technology DDR4-3200 16GB
Graphics Card(s)
NVIDIA GeForce RTX 3060
Sound Card
Realtek ALC671
Monitor(s) Displays
Samsung SyncMaster U28E590
Screen Resolution
3840 x 2160
Hard Drives
SAMSUNG MZVLQ1T0HALB-000H1
W10 22H2 and W11 ISO images have both sets of CA 2011 and CA 2023 boot files. Currently, it's the burden of the ISO->USB app to figure out (or ask the user) which of the two boot files to install on the USB media.
  • Rufus has a feature where you can specify if you want the old or new boot files.

  • Media Creation Tool when it directly formats your USB drive doesn't ask, it presumes which one based on the host it's running on.

  • UUP dump has the config option for "UpdtBootFiles=1"
It's entirely possible that you're creating an USB drive on a host that has different Secure Boot keys than the target system. The source files are already part of the ISO, or on your live Windows system. What the different tools are doing is trying to pick which one of them to copy into \EFI\Boot\bootx64.efi.
 

My Computer My Computer

At a glance

Windows 7
OS
Windows 7
GARLIN :
I have tried a 3 of the above.
1. i dont see that option in the latest rufus
2. tried uup dump with the updt boot files =1 and that does not work .
3.mct downloads the 2019 cert.

here is your script for the keys :
Secure Boot: ON
Virtualization Based Security: OFF
BitLocker on (C:) OFF

UEFI KEK Certs
--------------
Microsoft Corporation KEK CA 2011
Microsoft Corporation KEK 2K CA 2023

UEFI DB Certs
-------------
Microsoft Corporation UEFI CA 2011
Microsoft Windows Production PCA 2011
Microsoft Option ROM UEFI CA 2023
Microsoft UEFI CA 2023
Windows UEFI CA 2023

UEFI DBX Certs
--------------
Microsoft Windows Production PCA 2011
Windows BootMgr SVN 9.0

EFI Files
---------
Windows Boot Manager [Windows UEFI CA 2023] is ALLOWED.
Registry: "WindowsUEFICA2023Capable" = 2
[Windows UEFI CA 2023] in UEFI DB, and Windows starting from CA 2023 Boot Manager.


STATUS REPORT
-------------
Registry: "UEFICA2023Status" = Updated

SUCCESS: UPDATES ARE FINISHED.
UEFI CA 2023 certs are present, PCA 2011 cert is revoked.

PS C:\WINDOWS\system32>
 

My Computer My Computer

At a glance

WINDOWS 11 WINDOWS 10Intel(R) Core(TM) i7 -3770K CPU 3.50 GZ 3501 ...32.0 GB (31.9 GB usable)AMD RADEON TM R5240 INTELL HD GRAPHICS 4600 T...
OS
WINDOWS 11 WINDOWS 10
Computer type
PC/Desktop
Manufacturer/Model
HP H8 1360T
CPU
Intel(R) Core(TM) i7 -3770K CPU 3.50 GZ 3501 4 CORE
Motherboard
PEGATRON 2AD5
Memory
32.0 GB (31.9 GB usable)
Graphics Card(s)
AMD RADEON TM R5240 INTELL HD GRAPHICS 4600 TIGER 1+1 USB
Sound Card
AMD HD . IDT
Monitor(s) Displays
AOC WAL MART SPECIAL . HP 2311 IX IPS LED DELL 1708 FP
Screen Resolution
1920 X 1080 1600X900 1280X940
Hard Drives
1 FAXING S 100 512GB 1 KINGSTON 120 GB SSD 1 X12 SSD 512 GB
PSU
300 WATT HP
Case
FULL
Cooling
ON BOARD FAN
Keyboard
LOGITEC K 520 WIRELESS
Mouse
LOGITEC M 510 WIRELESS
Internet Speed
55 UP 11.2 DOWN
Browser
CHROME EDGE
Antivirus
WINDOWS SECUIRTY
Other Info
NON SUPPORTED HARDWARE FOR WINDOWS 11
So the problem is you're looking the system's copy of the boot file, and not the USB media.

Run the check script, but add "-BootMedia" to the same command line you used before. This will check any bootable USB drives plugged in.
 

My Computer My Computer

At a glance

Windows 7
OS
Windows 7
Back
Top Bottom