beautypg.com

Using bios, Key management – Elitegroup MS300 (V1.0) User Manual

Page 41

background image

35

Using BIOS

Key Management

Scroll to this item to view the following screen:

Main

Advanced

Chipset Freq/Volt Control Boot

Security

Exit

+/- : Change Opt.

Enter/Dbl Click : Select





: Select Screen

/Click: Select Item

F1: General Help
F2: Previous Values

Force OEM default Secure
Boot Keys if System is in
Setup Mode.

F3: Optimized Defaults
F4: Save & Exit
ESC/Right Click: Exit

Default Key Provisioning

Disabled

Manage All Factory Keys (PK, KEK, DB, DBX)

Install default Secure Boot keys

Platform Key (PK)

NOT INSTALLED

Set PK from File
Get PK to File
Delete the PK

Key Exchange Key Database (KEK)

NOT INSTALLED

Set KEK from File
Get KEK to File
Delete the KEK
Append an entry to KEK

Authorized Signature Database (DB)

NOT INSTALLED

Set DB from File
Get DB to File
Delete the DB
Append an entry to DB

Forbidden Signature Database (DBX)

NOT INSTALLED

Set DBX from File
Get DBX to File
Delete the DBX
Append an entry to DBX

Platform Key (PK)

This item shows the information of the platform key.

Set PK/KEK/DB/DBX from File

This item launches the file browser to set Efi Variable from the file. The file data
must be formatted as Efi Variable with TimeBased Authenticated Header.

Get PK/KEK/DB/DBX to File

This item is used to store secure variable to a file with a matching name in selected
file system’s root.

Delete the PK/KEK/DB/DBX

This item is used to delete the variable.

Key Exchange Key Database (KEK)

This item shows the information of the key exchange key database.

Authorized Signature Database (DB)

This item shows the information of the authorized signature database.

Default Key Provisioning (Disabled)

This item enables or disables you to force OEM default secure boot keys if system is
in setup mode.

Append an entry to KEK/DB/DBX

This item launches the file browser to Append new signature database from the file.
The file data must be formatted as Efi Variable with TimeBased Authenticated Header.

Forbidden Signature Database (DBX)

This item shows the information of the forbidden signature database.