Windows 11 does not need Secure Boot?


JohnnyGui

Well-known member
Member
VIP
Local time
9:05 AM
Posts
208
OS
Windows Pro 11 23H2 Build 22631.3737
I have Windows 10 and have Secure Boot disabled as stated in the System Information dialog. Also, CSM is enabled in BIOS.

Windows Update is telling me that Windows 11 can be installed on my PC despite reading all over the internet that I need to have Secure Boot enabled.

How is this possible?
 

My Computer

System One

  • OS
    Windows Pro 11 23H2 Build 22631.3737
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    i5-12600K
    Motherboard
    Gigabyte Z690 UD DDR4
    Memory
    Transcend 16GB
    Graphics Card(s)
    Zotac 4070Ti Trinity
    Sound Card
    Internal: Realtek® ALC892 codec
    Monitor(s) Displays
    Asus VZ239-H
    Screen Resolution
    1080p
    Hard Drives
    Kingston 500GB nVME
    Case
    Fractal Focus 2 RGB White
    Cooling
    Xilence LQ240PRO Watercooling
    Browser
    Edge Chromium
Just because you have items disabled does not mean your computer does not meet requirements. Secure Boot is available if you turn it on, so it meets Windows 11 requirements.
 

My Computers

System One System Two

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Homebuilt
    CPU
    AMD Ryzen 7 3800XT
    Motherboard
    ASUS ROG Crosshair VII Hero (WiFi)
    Memory
    32GB
    Graphics Card(s)
    EVGA GeForce GTX 1080 Ti
  • Operating System
    Windows 11 Education
    Computer type
    Laptop
    Manufacturer/Model
    Dell Inspiron 7773
    CPU
    Intel i7-8550U
    Memory
    32GB
    Graphics card(s)
    Nvidia Geforce MX150
    Sound Card
    Realtek
    Monitor(s) Displays
    17"
    Screen Resolution
    1920 x 1080
    Hard Drives
    Toshiba 512GB NVMe SSD
    SK Hynix 512GB SATA SSD
    Internet Speed
    Fast!
Windows 11 merely wants Secure Boot to be available.
It does not need to be enabled.

Windows 11 and Secure Boot - MSSupport
Why does Windows 11 need secure boot - ElevenForum

Denis
Ah that explains it. Thanks

Just because you have items disabled does not mean your computer does not meet requirements. Secure Boot is available if you turn it on, so it meets Windows 11 requirements.

I understand this, but I read that it needs it enabled to install Windows 11. Apparently many sources misunderstood this.
 

My Computer

System One

  • OS
    Windows Pro 11 23H2 Build 22631.3737
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    i5-12600K
    Motherboard
    Gigabyte Z690 UD DDR4
    Memory
    Transcend 16GB
    Graphics Card(s)
    Zotac 4070Ti Trinity
    Sound Card
    Internal: Realtek® ALC892 codec
    Monitor(s) Displays
    Asus VZ239-H
    Screen Resolution
    1080p
    Hard Drives
    Kingston 500GB nVME
    Case
    Fractal Focus 2 RGB White
    Cooling
    Xilence LQ240PRO Watercooling
    Browser
    Edge Chromium
Ah that explains it. Thanks



I understand this, but I read that it needs it enabled to install Windows 11. Apparently many sources misunderstood this.
It will need to be enabled if you want to upgrade to or clean install Windows 11 without using a workaround.
 

My Computers

System One System Two

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Homebuilt
    CPU
    AMD Ryzen 7 3800XT
    Motherboard
    ASUS ROG Crosshair VII Hero (WiFi)
    Memory
    32GB
    Graphics Card(s)
    EVGA GeForce GTX 1080 Ti
  • Operating System
    Windows 11 Education
    Computer type
    Laptop
    Manufacturer/Model
    Dell Inspiron 7773
    CPU
    Intel i7-8550U
    Memory
    32GB
    Graphics card(s)
    Nvidia Geforce MX150
    Sound Card
    Realtek
    Monitor(s) Displays
    17"
    Screen Resolution
    1920 x 1080
    Hard Drives
    Toshiba 512GB NVMe SSD
    SK Hynix 512GB SATA SSD
    Internet Speed
    Fast!
It will need to be enabled if you want to upgrade to or clean install Windows 11 without using a workaround.

But that's the thing. Windows Update is telling me that I can install it now while Secure Boot is disabled.
 

My Computer

System One

  • OS
    Windows Pro 11 23H2 Build 22631.3737
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    i5-12600K
    Motherboard
    Gigabyte Z690 UD DDR4
    Memory
    Transcend 16GB
    Graphics Card(s)
    Zotac 4070Ti Trinity
    Sound Card
    Internal: Realtek® ALC892 codec
    Monitor(s) Displays
    Asus VZ239-H
    Screen Resolution
    1080p
    Hard Drives
    Kingston 500GB nVME
    Case
    Fractal Focus 2 RGB White
    Cooling
    Xilence LQ240PRO Watercooling
    Browser
    Edge Chromium
I installed windows 11, like you, with csm enabled (for ventoy) and secure boot disabled (so I could have csm), Its worked without problems, so go for it :)
 

My Computers

System One System Two

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self build
    CPU
    3900x
    Motherboard
    Asus 570 plus
    Memory
    32
    Graphics Card(s)
    Rtx 2070
    Sound Card
    on board
    Monitor(s) Displays
    samsung 4k 28"
    Screen Resolution
    1900x1080
    Hard Drives
    2 x 1 gb nvme
    PSU
    Corsair 650w
    Case
    midi tower
    Cooling
    Watercooled
    Keyboard
    rgb wireless
    Mouse
    wireless logitech
    Internet Speed
    50m
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11 pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    Beelink
    CPU
    Amd ryzen 5 5600H (Cezanne)
    Motherboard
    beelink
    Memory
    32 gig
    Graphics card(s)
    Vega
    Sound Card
    on board
    Monitor(s) Displays
    samsung 4k
    Screen Resolution
    1920 x 1080
    Hard Drives
    2 x 1tb nvme
    PSU
    12v
    Case
    mini pc
    Cooling
    air
    Mouse
    wireless logitech
    Keyboard
    rgb wireless
    Internet Speed
    50m
    Browser
    edge
    Antivirus
    windows defender
I installed windows 11, like you, with csm enabled (for ventoy) and secure boot disabled (so I could have csm), Its worked without problems, so go for it :)
And also let us know how it goes.
 

My Computers

System One System Two

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Homebuilt
    CPU
    AMD Ryzen 7 3800XT
    Motherboard
    ASUS ROG Crosshair VII Hero (WiFi)
    Memory
    32GB
    Graphics Card(s)
    EVGA GeForce GTX 1080 Ti
  • Operating System
    Windows 11 Education
    Computer type
    Laptop
    Manufacturer/Model
    Dell Inspiron 7773
    CPU
    Intel i7-8550U
    Memory
    32GB
    Graphics card(s)
    Nvidia Geforce MX150
    Sound Card
    Realtek
    Monitor(s) Displays
    17"
    Screen Resolution
    1920 x 1080
    Hard Drives
    Toshiba 512GB NVMe SSD
    SK Hynix 512GB SATA SSD
    Internet Speed
    Fast!
I installed windows 11, like you, with csm enabled (for ventoy) and secure boot disabled (so I could have csm), Its worked without problems, so go for it :)

Thanks for confirming. I'm surprised why sources say otherwise.

I'm now wondering whether a clean install of Windows 11 would also be possible.
 

My Computer

System One

  • OS
    Windows Pro 11 23H2 Build 22631.3737
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    i5-12600K
    Motherboard
    Gigabyte Z690 UD DDR4
    Memory
    Transcend 16GB
    Graphics Card(s)
    Zotac 4070Ti Trinity
    Sound Card
    Internal: Realtek® ALC892 codec
    Monitor(s) Displays
    Asus VZ239-H
    Screen Resolution
    1080p
    Hard Drives
    Kingston 500GB nVME
    Case
    Fractal Focus 2 RGB White
    Cooling
    Xilence LQ240PRO Watercooling
    Browser
    Edge Chromium
I would do an image of your working windows 10 before you try
Macrium free version would do, or maybe the free version of EaseUs offered to members on here
 

My Computers

System One System Two

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self build
    CPU
    3900x
    Motherboard
    Asus 570 plus
    Memory
    32
    Graphics Card(s)
    Rtx 2070
    Sound Card
    on board
    Monitor(s) Displays
    samsung 4k 28"
    Screen Resolution
    1900x1080
    Hard Drives
    2 x 1 gb nvme
    PSU
    Corsair 650w
    Case
    midi tower
    Cooling
    Watercooled
    Keyboard
    rgb wireless
    Mouse
    wireless logitech
    Internet Speed
    50m
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11 pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    Beelink
    CPU
    Amd ryzen 5 5600H (Cezanne)
    Motherboard
    beelink
    Memory
    32 gig
    Graphics card(s)
    Vega
    Sound Card
    on board
    Monitor(s) Displays
    samsung 4k
    Screen Resolution
    1920 x 1080
    Hard Drives
    2 x 1tb nvme
    PSU
    12v
    Case
    mini pc
    Cooling
    air
    Mouse
    wireless logitech
    Keyboard
    rgb wireless
    Internet Speed
    50m
    Browser
    edge
    Antivirus
    windows defender
I upgraded from Windows 10 in November and have had no problems with Secure Boot being off.
 

My Computer

System One

  • OS
    Windows 11 Professional
    Computer type
    PC/Desktop
    Manufacturer/Model
    Microcenter B677
    CPU
    Intel Core i5-9400
    Motherboard
    ASRock H310CM-HDV/M.2
    Memory
    32GB
    Graphics Card(s)
    Integrated Intel UHD Graphics 630
    Sound Card
    Intel Kaby Lake - High Definition Audio / cAVS (Audio, Voice, Speech) [A0]
    Monitor(s) Displays
    LG Model: GSM59F1
    Screen Resolution
    2560x1080
    Case
    Lian Li 205M
    Antivirus
    Kaspersky AV
I guess MS must have dropped it as a requirement then.
 

My Computers

System One System Two

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    Homebuilt
    CPU
    AMD Ryzen 7 3800XT
    Motherboard
    ASUS ROG Crosshair VII Hero (WiFi)
    Memory
    32GB
    Graphics Card(s)
    EVGA GeForce GTX 1080 Ti
  • Operating System
    Windows 11 Education
    Computer type
    Laptop
    Manufacturer/Model
    Dell Inspiron 7773
    CPU
    Intel i7-8550U
    Memory
    32GB
    Graphics card(s)
    Nvidia Geforce MX150
    Sound Card
    Realtek
    Monitor(s) Displays
    17"
    Screen Resolution
    1920 x 1080
    Hard Drives
    Toshiba 512GB NVMe SSD
    SK Hynix 512GB SATA SSD
    Internet Speed
    Fast!
Confirmed: Just tried it and a clean install can be successfully performed with Secure Boot disabled - it just needs to be an available option (for now). I'm sure that Microsoft will likely tighten the reigns on that requirement in the future.

As for CSM, I'm fairly certain that it doesn't matter if that is enabled, so long as UEFI is the primary mode of the firmware. Pretty sure I've tested it that way on my laptop in the past, but I can't 100% swear to it. My current testing was done with VMware and there is no CSM option available there.

If you really need this tested to be sure, please let me know and I'll do a backup on laptop and try it.
 

My Computers

System One System Two

  • OS
    Win11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Kamrui Mini PC, Model CK10
    CPU
    Intel i5-12450H
    Memory
    32GB
    Graphics Card(s)
    No GPU - Built-in Intel Graphics
    Sound Card
    Integrated
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 2TB NVMe SSD
    1 x 4TB NVMe SSD
    1 x 4TB 2.5" SSD
    PSU
    120W "Brick"
    Keyboard
    Corsair K70 Mechanical Keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
My apologies: I forgot that there was no real need to have to backup my laptop. If Win 11 setup is going to fail because setup requirements are not met, it will do so before the point where the HD contents are wiped out during setup. So, I tried it. I enabled CSM and started setup and Win 11 setup is perfectly fine with that.

Hope that helps!
 

My Computers

System One System Two

  • OS
    Win11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Kamrui Mini PC, Model CK10
    CPU
    Intel i5-12450H
    Memory
    32GB
    Graphics Card(s)
    No GPU - Built-in Intel Graphics
    Sound Card
    Integrated
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 2TB NVMe SSD
    1 x 4TB NVMe SSD
    1 x 4TB 2.5" SSD
    PSU
    120W "Brick"
    Keyboard
    Corsair K70 Mechanical Keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
Please run:
ms-settings:windowsupdate


Microsoft Windows 11 requirements:


UEFI
Secure Boot capable




 

My Computer

System One

  • OS
    Windows 10
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz
    Motherboard
    Product : 190A Version : KBC Version 94.56
    Memory
    16 GB Total: Manufacturer : Samsung MemoryType : DDR3 FormFactor : SODIMM Capacity : 8GB Speed : 1600
    Graphics Card(s)
    NVIDIA Quadro K3100M; Intel(R) HD Graphics 4600
    Sound Card
    IDT High Definition Audio CODEC; PNP Device ID HDAUDIO\FUNC_01&VEN_111D&DEV_76E0
    Hard Drives
    Model Hitachi HTS727575A9E364
    Antivirus
    Microsoft Defender
    Other Info
    Mobile Workstation
My apologies: I forgot that there was no real need to have to backup my laptop. If Win 11 setup is going to fail because setup requirements are not met, it will do so before the point where the HD contents are wiped out during setup. So, I tried it. I enabled CSM and started setup and Win 11 setup is perfectly fine with that.

Hope that helps!

Thanks a lot for testing this. Do you mean it will warn you if it's not compatible even before deleting the HD content during this clean install screen?
Schermafbeelding 2022-04-14 030556.png

@zbook

Thanks, I knew it stated that it should be Secure Boot capable but I was hesitating since other sources explicitly mentioned it should be enabled. I think these confirmations have helped me now.
 

My Computer

System One

  • OS
    Windows Pro 11 23H2 Build 22631.3737
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    i5-12600K
    Motherboard
    Gigabyte Z690 UD DDR4
    Memory
    Transcend 16GB
    Graphics Card(s)
    Zotac 4070Ti Trinity
    Sound Card
    Internal: Realtek® ALC892 codec
    Monitor(s) Displays
    Asus VZ239-H
    Screen Resolution
    1080p
    Hard Drives
    Kingston 500GB nVME
    Case
    Fractal Focus 2 RGB White
    Cooling
    Xilence LQ240PRO Watercooling
    Browser
    Edge Chromium
Yes, if your hardware does not meet requirements, Windows setup will inform you of this prior to you reaching the screen you show in your screenshot.
 

My Computers

System One System Two

  • OS
    Win11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Kamrui Mini PC, Model CK10
    CPU
    Intel i5-12450H
    Memory
    32GB
    Graphics Card(s)
    No GPU - Built-in Intel Graphics
    Sound Card
    Integrated
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 2TB NVMe SSD
    1 x 4TB NVMe SSD
    1 x 4TB 2.5" SSD
    PSU
    120W "Brick"
    Keyboard
    Corsair K70 Mechanical Keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
I have 4 pc's all with secure boot enabled, running W11 and it does not seem to have any impact on their use. Except for this one that I have on the insider beta program. Somehow I have added a password in the bios and have to use it immediately before putting the pin in when turning on. This also affects running an offline WD scan as I have to put the password in as the pc restarts and before the scan can begin, If I simply set it to scan and walked away, it would never boot. I am used to this on this pc, if I switch on, the password comes up within 6 seconds.
Secure boot was running on my laptop without my ever knowing about it until the advent of W11 brought it to my attention, and I had changed the hdd to an SSD within a month of buying it.
 

My Computers

System One System Two

  • OS
    W11 pro beta
    Computer type
    PC/Desktop
    Manufacturer/Model
    home built
    CPU
    Athlon 3000G
    Motherboard
    Asrock A320M-HDV r4.0
    Memory
    16Gb Crucial DDR4 2400
    Graphics Card(s)
    onboard cpu
    Sound Card
    onboard
    Monitor(s) Displays
    AOC 27
    Screen Resolution
    2560-1440
    Hard Drives
    WD black SN750 M2 500Gb
    PSU
    500W Seasonic core 80+gold non modular
    Case
    Fractal Design Define R2
    Cooling
    front 2 x 120mm rear 100mm stock psu
    Internet Speed
    135/20
    Browser
    Firefox and edge
    Antivirus
    Windows Security and free Malwarebytes
  • Operating System
    W11 pro 64 beta (from W10 pro system builder pack)
    Computer type
    PC/Desktop
    Manufacturer/Model
    homebuilt
    CPU
    Ryzen 7 5700G
    Motherboard
    MSI B450 tomahawk max II
    Memory
    4 x 8Gb Corsair Vengeance LPX 3000 DDR4
    Graphics card(s)
    onboard cpu
    Sound Card
    motherboard
    Monitor(s) Displays
    LG 21.5" IPS
    Screen Resolution
    1920 x 1080
    Hard Drives
    WD 1Tb Black M2 SN850X on Asus hyper M2 X16 max V2 card
    PSU
    Be Quiet 400 semi modular 80+gold
    Case
    Coolermaster Silencio 650
    Cooling
    140mm front, 120 rear Akasa Vegas Chroma AM
    Internet Speed
    135/20
    Browser
    edge/Firefox
    Antivirus
    WD plus Malwarebytes free

Latest Support Threads

Back
Top Bottom