Force System to User Mode - install all Factory Default
keys(PK,KEK,db,dbx,dbt). Change takes effect after reboot.
Delete All Factory Default Key
Force System to User Mode - clear all Factory Default
keys(PK,KEK,db,dbx). Change takes effect after reboot
Save All Secure Boot Variables
Store content of each Secure Boot Variable(data formatted as
EFI_SIGNATURE_LIST) to a file with matching name on
selected file system
Delete the Variable from NVRAM. Removing PK will reset
System to Setup Mode
Insert Factory Default Keys or load from a file formatted as:
1.Public Key Certificate in:
a)
EFI_SIGNATURE_LIST,
b)
EFI_CERT_X509 (DER encoded),
c)EFI_CERT_RSA2048 (bin),
d)EFI_CERT_SHA256 (bin)
2.Efi Time-Based Authenticated Variable
Delete the Variable from NVRAM. Removing KEK will reset
System to Setup Mode
Insert Factory Default Keys or load from a file formatted as: