Software and configuration utilities 168
Forbidden Signatures|
0 | 0| No Key
Enroll Factory Defaults or load
the keys from a file with:
1. Public Key Certificate in:
o EFI_SIGNATURE_LI
ST
o EFI_CERT_X509
(DER encoded)
o EFI_CERT_RSA2048
(bin)
o EFI_CERT_SHA256
(bin)
2. Authenticated UEFI Variable
3. EFI PE/COFF Image
(SHA256)
Key Source:
Default, External, Mixed, Test
If “Provision Factory Defaults”
set to “Enabled” or “Install
Factory Default keys” is
selected, factory default Secure
Boot keys will be loaded and the
options of this item will be “Save
to File” “Set New” “Append”
“Erase”.
Authorized
Timestamps| 0 | 0| No
Key
Enroll Factory Defaults or load
the keys from a file with:
1. Public Key Certificate in:
o EFI_SIGNATURE_LI
ST
o EFI_CERT_X509
(DER encoded)
o EFI_CERT_RSA2048
(bin)
o EFI_CERT_SHA256
(bin)
2. Authenticated UEFI Variable
3. EFI PE/COFF Image
(SHA256)
Key Source:
Default, External, Mixed, Test
OsRecovery
Signatures| 0 | 0| No
Key
Enroll Factory Defaults or load
the keys from a file with:
1. Public Key Certificate in:
o EFI_SIGNATURE_LI
ST
o EFI_CERT_X509
(DER encoded)
o EFI_CERT_RSA2048
(bin)
o EFI_CERT_SHA256
(bin)
2. Authenticated UEFI Variable
3. EFI PE/COFF Image
(SHA256)
Key Source:
Default, External, Mixed, Test