I try and enable Secure Boot and it tells me to turn off CSM to enable Secure Boot so I do it but then when I boot up my PC, my monitor doesn’t receive a signal and is just a black screen forever. To fix this problem I have to clear the CMOS and the BIOS settings turn back to default.
Maybe not illegal, but better implemented and opt in. I have TPM headers on my board, but I am not required to get the module, or use that. It should be done like that.
Chromebooks have something way stronger, with an official way to disable it if you wish so (it's called Developer Mode). What it does is that it disallows booting on any USB unless the machine has been factory reset. This means that if someone has physical access to your machine for a short time (e.g. airports in some countries) then that person wouldn't be able to make a copy of your encrypted data without physically extracting the disk. It also means that with enough time one could factory reset your machine and set a login prompt that steals your password but right after login in you'd actually know that it's not your genuine machine anymore and you could take actions (e.g. say change your password at least and then factory reset). My only wish is that you could manually enable Developer Mode without wiping after authenticating yourself in non-user space (i.e. not possible in normal boot mode but only if you boot in special mode where you need to authenticate first again).
I disabled secure boot and did all new installation, after I got done with the new installation, I went back to the bios and turned the secure boot back on, then my computer went off, now when I turn the computer on it just shows the surface screen and goes off again
@@nichollsdaniels8964 Could you post your machine model as there are a few known laptop where secure boot is actually bugged and you may brick your machine.
Secure boot must be enabled before an operating system is installed. If an operating system was installed while secure boot was disabled, it will not support secure boot and a new installation is required. Secure boot requires a recent version of UEFI.
Thanks for explaining this. My laptop had secure boot disabled for some reason. Sometimes the screen just blacks out or won't even turn on. Went to the bios setup and turned it on. It worked fine. Thank you
In my hp laptop secure boot was disabled and i cant enable it. In some computers like mine HP there is not supervisor password but there is administrator password. Also if i make an administrator password the secure boot option is still grayed out although i am in UEFI mode. is there a solution for this?
Secure boot is just more BS.. more like a first step to a locked bootloader like in a cell phone to keep you from running a new OS when they stop supporting your device.
this 2021, I disabled secure boot then my laptop can not boot now. hahahh. it display black screen. so i reformat my laptop then it work again. the secure boot is enabled again with the new operating system upon accessing bios. Well the bios only display when I connected my laptop to a external monitor via hdmi, because it only display black screen upon accessing bios with the laptop monitor. im afraid to disabled secure boot again, I dont need to repeat my process of reformating my laptop again.
Windows 11, up to this date, requires Secure Boot to be installed, and apparently there are some ways to bypass this. How well the bypass works will be determined by Microsoft and the kinds of security updates they apply to Windows 11.
@@tqaweekly Microsoft is up to something, huh. Not allowing non tech users to download any other operation system which is not signed by Microsoft. I mean, you can always add your own keys and signatures and get around it but for a non tech user it would be complicated as f.
@tqaweekly you can add registry entries that turn off the Windows 11 TPM check and Secure Boot check and it works like a charm to install Win 11 on older hardware with no GPT compatibility. I am running Win 11 now (albeit with a ton of custom tweaks to remove bloat) on a ten year old MSI laptop with a spinny HDD that can't support GPT at all. It breathed new life into the damn thing surprisingly. And Windows update is still pulling all the necessary security updates. 👌
My laptop HD started to show sign of wear. Cloned the drive to sata adaptor and installed it in laptop. The laptop will not boot or even let me get to bios screen, only flashing cursor on dark screen. Thr' trials I managed to update the new drive with latest windows. It will boot and able to start windows with original HD in laptop and new cloned drive in the USB sata adaptor. If I disable secure boot would this solve my problem and new hd will boot? Laptop is HP upgraded from win7. Plus help many thanks.
Good day im having problem in my laptop sometimes it wont start to windows, what will happen is that it always going to thinkpad setup and there will be a day that i keep on restarting and keep on going to thinkpad set up
You have a mbr not gpt that's why you're screen is blank after enable secure boot and I don't recommend looking in bios settings and enabled other features
Typically, option is available in the UEFI of most main boards, however, this isn’t always an option if the computer is by companies like HP. Review manual for details or provide the make and model of your computer’s main board below.
@@tqaweekly Thank you. I have UEFI but no Secure Boot. Why in HP doesn't allow it and how does it affect end-users? You have said that since the driver was not connected correctly, the bios forgot the information. I am not sure why. If you use TPM 1.2 (not Secure Boot) and the boot order changes, you will end up at the BitLocker recovery windows. but here you are talking about Secure Boot...
@@tqaweekly wrong. Trusted Platform Module ( TPM ) is for booting up windows in CSM mode and does not protect data, TPM helps you installing malware on your pc so you can lose your data with no problem 😁 You’re welcome
Secure boot must be enabled before an operating system is installed. If an operating system was installed while secure boot was disabled, it will not support secure boot and a new installation is required. Secure boot requires a recent version of UEFI.
I am using hp workstation pc when I disable secure boot and save changes after restarting pc when I go back to bios settings it is enabled again. I don't know what is the problem. plz tell if you know something about it,
Secure boot turned off no problem for individuals, but we talk about security of an organization with vulnerabilities of such kind can harm them. You are talking about shit actually. Secondly, this is not the entire cybersecurity scenario it is 5-10 percent of the vulnerable window but for an penetration it is huge opportunity. In addition; you opened that window and waited , no intrusion happened because you are not a potential target. So guys who are listening to him and at the same time thinking secure boit is not important and planning a security role in future, be careful!!!😊
Right, so here's my position. PC has been running fine, but upon having a power cut the other day, when turning my pc back on, the BIOS screen loaded instead of the operating system (windows), I turned the pc off and on again and windows loaded up first time, no issues. Several days later, I use my PC again, works as normal, but the following day, after loading the pc and using it for about an hour or so, it crashes and takes me to that same BIOS screen. But this time, turning my pc off and on again brings me back to my BIOS and not to my usual Window's login screen. My M.2 NVME is not showing up in the UEFI BIOS, which is where my operating system is installed onto, but my 2 SSD's and HDD do show up. I have taken out the NVME as a precaution and re-installed it but to no luck. Might clearing the Secure Boot Keys help with this, or do I need to look elsewhere? Any help would be hugely appreciate as I use my PC for my business daily. And if I were to clear the keys, can they be restored at some point? Thanks
Thanks!, 2:15 I have been trying to install linux in my old hp dv6 laptop It boots up really slow even with a SSD do you think this could be the problem? It takes the same amount of time a hdd would take... Edit: the option wasnt in my bios... Edit2: Im an idiot the heart dissapears when you edit a comment...
Wrong. You can disable theTPM and the Secure Boot checks made by Windows 11 by adding registry keys in your registry through the REGEDIT program. I just installed Windows 11 on an old MSI laptop from over ten years ago (bought in 2013) that doesn't even have an SSD(uses an old spinny HDD) and it runs gorgeously. (Granted, I added many tweaks to cut Windows bloat, but the point stands. The registry entries bypassed the checks and I installed it just fine.)
Thanks for explaining Secure Boot for me. Going to take a comptia a+ cert exam soon so I needed to know.
How’s u do the on the exam? I’m taking it in 2 months
I try and enable Secure Boot and it tells me to turn off CSM to enable Secure Boot so I do it but then when I boot up my PC, my monitor doesn’t receive a signal and is just a black screen forever. To fix this problem I have to clear the CMOS and the BIOS settings turn back to default.
Secureboot should be illegal as its just a way to bind your computer to one specific operating system.
Android/ChromeOS have a similar mechanism...
Maybe not illegal, but better implemented and opt in. I have TPM headers on my board, but I am not required to get the module, or use that. It should be done like that.
Although secboot can be used as DRM, it's not what it was designed for. Don't blame the technology, blame the vendors for restricting usage.
Chromebooks have something way stronger, with an official way to disable it if you wish so (it's called Developer Mode). What it does is that it disallows booting on any USB unless the machine has been factory reset. This means that if someone has physical access to your machine for a short time (e.g. airports in some countries) then that person wouldn't be able to make a copy of your encrypted data without physically extracting the disk. It also means that with enough time one could factory reset your machine and set a login prompt that steals your password but right after login in you'd actually know that it's not your genuine machine anymore and you could take actions (e.g. say change your password at least and then factory reset).
My only wish is that you could manually enable Developer Mode without wiping after authenticating yourself in non-user space (i.e. not possible in normal boot mode but only if you boot in special mode where you need to authenticate first again).
I disabled secure boot and did all new installation, after I got done with the new installation, I went back to the bios and turned the secure boot back on, then my computer went off, now when I turn the computer on it just shows the surface screen and goes off again
You had to reset secure boot then install windows. In your scenario the solution is to disable secure boot, it should allow windows to boot.
@@tqaweekly it doesn't boot, when I hit the power button it flashes with a red padlock at top side of screen
@@nichollsdaniels8964 Could you post your machine model as there are a few known laptop where secure boot is actually bugged and you may brick your machine.
Secure boot must be enabled before an operating system is installed. If an operating system was installed while secure boot was disabled, it will not support secure boot and a new installation is required. Secure boot requires a recent version of UEFI.
Thanks for explaining this. My laptop had secure boot disabled for some reason. Sometimes the screen just blacks out or won't even turn on. Went to the bios setup and turned it on. It worked fine. Thank you
In my hp laptop secure boot was disabled and i cant enable it. In some computers like mine HP there is not supervisor password but there is administrator password. Also if i make an administrator password the secure boot option is still grayed out although i am in UEFI mode. is there a solution for this?
Me too
Secure boot is just more BS.. more like a first step to a locked bootloader like in a cell phone to keep you from running a new OS when they stop supporting your device.
this 2021, I disabled secure boot then my laptop can not boot now. hahahh. it display black screen. so i reformat my laptop then it work again. the secure boot is enabled again with the new operating system upon accessing bios. Well the bios only display when I connected my laptop to a external monitor via hdmi, because it only display black screen upon accessing bios with the laptop monitor. im afraid to disabled secure boot again, I dont need to repeat my process of reformating my laptop again.
I dont understand Secure boot If I disable it will I get hacked
@@stay2Disciplined no you will not get hacked
@@_danu or will a virus enter my computer
@@stay2Disciplined NOTHING
Btw, Can i disable secure boot if i use windows 11?
yes, hold the shift key as you press the restart button and a list of settings pop up after restarting(ish). It’s in the advanced settings
Windows 11, up to this date, requires Secure Boot to be installed, and apparently there are some ways to bypass this. How well the bypass works will be determined by Microsoft and the kinds of security updates they apply to Windows 11.
@@tqaweekly Microsoft is up to something, huh. Not allowing non tech users to download any other operation system which is not signed by Microsoft.
I mean, you can always add your own keys and signatures and get around it but for a non tech user it would be complicated as f.
@tqaweekly you can add registry entries that turn off the Windows 11 TPM check and Secure Boot check and it works like a charm to install Win 11 on older hardware with no GPT compatibility.
I am running Win 11 now (albeit with a ton of custom tweaks to remove bloat) on a ten year old MSI laptop with a spinny HDD that can't support GPT at all. It breathed new life into the damn thing surprisingly. And Windows update is still pulling all the necessary security updates. 👌
will I lose my current operating system if I disable secure boot??
No
If it requires it 😂
My laptop HD started to show sign of wear. Cloned the drive to sata adaptor and installed it in laptop. The laptop will not boot or even let me get to bios screen, only flashing cursor on dark screen. Thr' trials I managed to update the new drive with latest windows. It will boot and able to start windows with original HD in laptop and new cloned drive in the USB sata adaptor. If I disable secure boot would this solve my problem and new hd will boot?
Laptop is HP upgraded from win7. Plus help many thanks.
Good day im having problem in my laptop sometimes it wont start to windows, what will happen is that it always going to thinkpad setup and there will be a day that i keep on restarting and keep on going to thinkpad set up
i enabled secure boot and my pc is not booting at all what should i do
You have a mbr not gpt that's why you're screen is blank after enable secure boot and I don't recommend looking in bios settings and enabled other features
Bro would i able to reset my pc on secure boot disabled?
Yes.
How can you backup the PK key?
Typically, option is available in the UEFI of most main boards, however, this isn’t always an option if the computer is by companies like HP. Review manual for details or provide the make and model of your computer’s main board below.
@@tqaweekly Thank you. I have UEFI but no Secure Boot. Why in HP doesn't allow it and how does it affect end-users? You have said that since the driver was not connected correctly, the bios forgot the information. I am not sure why.
If you use TPM 1.2 (not Secure Boot) and the boot order changes, you will end up at the BitLocker recovery windows. but here you are talking about Secure Boot...
TPM is not secure boot. Secure boot is meant to protect operating systems from tampering. TPM protects data.
@@tqaweekly I know, but Secure Boot requires UEFI.
@@tqaweekly wrong. Trusted Platform Module ( TPM ) is for booting up windows in CSM mode and does not protect data, TPM helps you installing malware on your pc so you can lose your data with no problem 😁 You’re welcome
What happen if i enable back secure boot after clean install of windows
Secure boot must be enabled before an operating system is installed. If an operating system was installed while secure boot was disabled, it will not support secure boot and a new installation is required. Secure boot requires a recent version of UEFI.
Will you brick your pc if the BIOS mode of your OS is Legacy and you turn on secure boot?
Hey,I m in ASUS x55c and to Boot Secute Control I set it to enable,and now i can t enter in BIOS anymore and i forgot my computer password.
Pls help
Rip
get a new hard drive
I can't start it up :(((
I am using hp workstation pc when I disable secure boot and save changes after restarting pc when I go back to bios settings it is enabled again. I don't know what is the problem. plz tell if you know something about it,
Throw away your pc
did you saved them
@@ojasyadohare5845 yes... Disabled and saved... But enabled automatically after restart.
@@techknowledge1266 update ur bios
Secure boot turned off no problem for individuals, but we talk about security of an organization with vulnerabilities of such kind can harm them.
You are talking about shit actually.
Secondly, this is not the entire cybersecurity scenario it is 5-10 percent of the vulnerable window but for an penetration it is huge opportunity.
In addition; you opened that window and waited , no intrusion happened because you are not a potential target.
So guys who are listening to him and at the same time thinking secure boit is not important and planning a security role in future, be careful!!!😊
i think he's directing this to individuals--corporations have their own problems like management thinking it knows more than IT
Dose secured boot need for kali linux
Kali Linux is not signed by Microsoft.
You either disable secure boot or add your own keys and signatures and keep on using secure boot.
Hey Steve question I use Qubes OS, but so have to disable secure boot will my system still be protected and be safe?
No.
You disabled secure boot, which means your UEFI won't check the keys and signatures anymore.
Right, so here's my position. PC has been running fine, but upon having a power cut the other day, when turning my pc back on, the BIOS screen loaded instead of the operating system (windows), I turned the pc off and on again and windows loaded up first time, no issues. Several days later, I use my PC again, works as normal, but the following day, after loading the pc and using it for about an hour or so, it crashes and takes me to that same BIOS screen. But this time, turning my pc off and on again brings me back to my BIOS and not to my usual Window's login screen. My M.2 NVME is not showing up in the UEFI BIOS, which is where my operating system is installed onto, but my 2 SSD's and HDD do show up. I have taken out the NVME as a precaution and re-installed it but to no luck. Might clearing the Secure Boot Keys help with this, or do I need to look elsewhere? Any help would be hugely appreciate as I use my PC for my business daily. And if I were to clear the keys, can they be restored at some point? Thanks
he said in the video to back up your secure boot keys--he didn't mention how to do it though
windows 11 older pcs will not in stall any advice
Bro I appreciate you man with your videos
Thanks!, 2:15 I have been trying to install linux in my old hp dv6 laptop It boots up really slow even with a SSD do you think this could be the problem?
It takes the same amount of time a hdd would take...
Edit: the option wasnt in my bios...
Edit2: Im an idiot the heart dissapears when you edit a comment...
😂 heart reappears if I say so 😂
Please help me on this one
Thank you, kind sir!
Here because Steam OS wont boot, which is weird because i used dual boot Ubuntu for months
Ubuntu is signed in the secure boot by Microsoft while steamOS is not that's why.
Well yeah, but with that feature turned off you can't install Windows 11
Wrong. You can disable theTPM and the Secure Boot checks made by Windows 11 by adding registry keys in your registry through the REGEDIT program. I just installed Windows 11 on an old MSI laptop from over ten years ago (bought in 2013) that doesn't even have an SSD(uses an old spinny HDD) and it runs gorgeously.
(Granted, I added many tweaks to cut Windows bloat, but the point stands. The registry entries bypassed the checks and I installed it just fine.)
Thank you dear
I disabled it now I can't run valorant
You sound like Curtis Armstrong sometimes.