55
folder on a file system device.
Enroll Efi Image
This item allows the image to run in Secure Boot Mode.
Enroll SHA256 Hash certificate of a PE image into Authorized Signature
Database (db).
Device Guard Ready
Remove ‘UEFI CA’ from DB
Device Guard ready system must not list ‘Microsoft EFI CA’ Certificate in
Authorized Signature database (db).
Restore DB defaults
Use this item to restore DB variable to factory defaults.
Secure Boot Variable/Size/Keys/Key Source
Platform Key (PK)/Key Exchange Keys/Authorized Signature/Forbidden
Signature/ Authorized TimeStamps/OsRecovery Signatures
Use this item to enroll Factory Defaults or load the keys from a file with:
1. Public Key Certificate in:
a) EFI_SIGNATURE_LIST
b) EFI_ CERT_X509 (DER encoded)
c) EFI_ CERT_RSA2048 (bin)
d) EFI_ CERT_SHAXXX (bin)
2. Authenticated UEFI Variable
3. EFI PE/COFF Image (SHA256)
Key Source: Factory, External, Mixed.
Summary of Contents for LI22 Series
Page 63: ...58 ...