ASUS B85M-G PLUS
2-37
Boot from PCI-E/PCI Expansion Devices [Legacy OpROM first]
AllowsyoutoselectthetypeofPCIe/PCIexpansiondevicesthatyouwanttolaunch.
Congurationoptions:[LegacyOpROMrst][UEFIdriverrst]
2.8.9 Secure Boot
AllowsyoutoconguretheWindows
®
SecureBootsettingsandmanageitskeystoprotect
thesystemfromunauthorizedaccessandmalwaresduringPOST.
OS Type [Windows UE...]
Allowsyoutoselectyourinstalledoperatingsystem.
[WindowsUEFImode] ExecutestheMicrosoft
®
SecureBootcheck.Onlyselectthis
optionwhenbootingonWindows
®
UEFImodeorotherMicrosoft
®
SecureBootcompliantOS.
[OtherOS] GettheoptimizedfunctionwhenbootingonWindows
®
non-UEFI
mode,Windows
®
Vista/XP,orotherMicrosoft
®
SecureBoot
non-compliantOS.OnlyonWindows
®
UEFImodethatMicrosoft
®
SecureBootcanfunctionproperly.
ThefollowingitemappearswhenOS Typeissetto[Windows UEFI mode].
Key Management
ThisitemappearsonlywhenyousetOSTypeto[WindowsUEFImode].Itallowsyouto
managetheSecureBootkeys.
Install Default Secure Boot keys
ThisitemallowsyoutoimmediatelyloadthedefaultSecurityBootkeys,Platformkey
(PK),Key-exchangeKey(KEK),Signaturedatabase(db),andRevokedSignatures
(dbx).WhenthedefaultSecurebootkeysareloaded,alltheSecureBootkeysstate
willchangefromUnloadedmodetoloadedmode.
Clear Secure Boot keys
ThisitemappearsonlywhenyouloadthedefaultSecureBootkeys.Thisitemallows
youtoclearalldefaultSecureBootkeys.
Save Secure Boot keys
ThisitemappearsonlywhenyouloadthedefaultSecureBootkeys.Thisitemallows
youtosavealldefaultSecureBootkeys.
PK Management
ThePlatformKey(PK)locksandsecuresthermwarefromanynon-permissible
changes.ThesystemveriesthePKbeforeyoursystementerstheOS.
Delete PK
AllowsyoutodeletethePKfromyoursystem.OncethePKisdeleted,all
thesystemsSecureBootkeyswillnotbeactive.Congurationoptions:
[Yes][No]
Load PK from File
AllowsyoutoloadthedownloadedPKfromaUSBstoragedevice.
ThePKlemustbeformattedasaUEFIvariablestructurewithtime-basedauthenticated
variable.