IMPORTANT: After you delete all keys, the system is forced to immediately disable Secure Boot.
Secure Boot remains disabled upon system reboot until valid secure boot keys are restored.
Procedure
1. From the System Utilities screen, select System Configuration > BIOS/Platform Configuration
(RBSU) > Server Security > Secure Boot Settings > Advanced Secure Boot Options > Delete all
keys.
2. Press Enter to delete all keys.
3. Confirm the deletion.
Exporting a Secure Boot certificate key or database signature
Procedure
1. From the System Utilities screen, select System Configuration > BIOS/Platform Configuration
(RBSU) > Server Security > Secure Boot Settings > Advanced Secure Boot Options.
2. Select an exchange key or a signatures database option.
3. Select Export <option name>.
4. Select the entry you want to export.
A File Explorer screen shows attached media devices.
5. Do one of the following:
• Select an attached media device where you want to export the file, and then continue selecting the
menu path for the certificate file. Press Enter after each selection.
• To export to a new file, press +, and enter a file name.
Example: Exporting an Allowed Signatures Database signature
1. From the System Utilities screen, select System Configuration > BIOS/Platform Configuration
(RBSU) > Server Security > Secure Boot Settings > Advanced Secure Boot Options > DB -
Allowed Signatures Database > Export Signature > HPE UEFI Secure Boot 2016 DB Key.
2. Select the entry you want to export.
A File Explorer screen shows attached media devices.
3. Do one of the following:
• Select an attached media device where you want to export the file, and then continue selecting the
menu path for the certificate file. Press Enter after each selection.
• To export to a new file, press +, and then enter a file name.
Exporting a Secure Boot certificate key or database signature 111