Invalid Signature Detected. Check Secure Boot Policy in Setup
Posted by Indi60kid@reddit | buildapc | View on Reddit | 152 comments
Hey guys,
I'm getting this error "Invalid signature detected. Check secure boot policy in setup" when BIOS boots up.
This happened after I tried to turn on secure boot on my pc. I tried all these steps: https://www.auslogics.com/en/articles/fix-invalid-signature-detected/
However, I cannot even switch the secure boot to disabled anymore, even if I do, save and restart, the error comes back as soon as the BIOS load up again.
In the secure boot mode, System mode is now showing as Deployed and I cannot go back to User mode, if I try to exit deployed mode it just says "Failed".
The mobo is Z690 UD DDR4.
I have also tried to boot from a USB with a flashed windows on it, I tried to revert one version back of BIOS, I tried to reset CMOS, took out the battery, nothing helped, no luck with anything - I'm always back to the "Invalid Signature Detected. Check Secure Boot Policy in Setup" error.
Perhaps anyone knows what more could I do? I'm totally lost and just feeling defeated by this.
Thanks a bunch!
Icy_Strategy_7575@reddit
Hello everyone, i had the same problem
(SOLVED)
(GIGABYTE B760)
(My case:
SECURE BOOT - Disabled(Custom or Standard doesnt matter) - Windows is loading properly
SECURE BOOT - Enabled(Custom or Standard also doesnt matter) - error "invalid signature detected"
But i need secure boot working properly(FOR FACEIT AND VALORANT)
I tried everything from this thread and nothing was helpful
(SOLUTION)
Bios - Boot - Enroll EFI IMAGE - and then we need to choose right partition(DO NOT CHOOSE PARTITION WHERE U SEE YOUR WINDOWS FILES), in my case it was 3 options
I choose option where was EFI folder, then we choose inside this folder Microsoft , then Boot, and then from this bootmgfw.efi
So the right folder is EFI - Microsoft - Boot - bootmgfw.efi
AND IN THIS CASE my secure boot was worked properly and i could finally play faceit)
G-CaC2H6@reddit
OMG MAN U'RE A GOD, BLESSED, AMAZING THANK U VERY MUCH!!!!!!!!!!
Relevant-Chemistry81@reddit
I actually love you dude i havent been able to play battlefield since its release
SupremoZeldris@reddit
VOCE ME SALVOU CARA, MUITO OBRIGADO
ZestycloseBaby3408@reddit
Thanks, it worked for me.
KitchenOk8609@reddit
This worked for me thanks! Had challenges finding the bootmgfw.efi but i found it eventually. Mine had 10 options. So i looked in each one until i found the EFI folder.
FewPipe816@reddit
Thank you!! On my MSI, I had to click enter after clicking enroll EFI image for some reason, but it’s working now!
overlord2203@reddit
Hi can you help me out? I am a bit lost
Njcoloredi_@reddit
Consegui manooo
dmitriykim160817@reddit
Op man! You’re a fcking gojo satoru, the legend! Thank you so much!
Guys if you can’t find out what to do I can help you. #setsuna7193 is my discord
Soft_Ticket1997@reddit
I sent you a friend request. can you help me?
Embarrassed-Bit-5540@reddit
I sent a request, I can’t figure it out for the life of me
Icy-Bee8955@reddit
Were u able to find it?
Embarrassed-Bit-5540@reddit
I figured it out finally, thank you
Lupserobert@reddit
Me neither help bro pls
Financial_Cut_416@reddit
Pls help
RevolutionaryScar756@reddit
Also added you cannot figure it out
TzunamiF1@reddit
Hello I sent a friend request I can’t seem to find enroll efi image option
IStoleUrToast-@reddit
I added u I have an anime pfp
Strange_Loan8062@reddit
Hello bro I added you blarence6995
Savings-Ad4727@reddit
Heyo can you add me on discord @Kriticalkahaka4413 I really need help trying to understand doing the EFI IMAGE. Mobo;ASRock Id appreciate it Aton I’ve been dealing with the Invalid sig Detected for a week+
joebalooka84@reddit
Thank you. This was a time consuming nightmare. AI have an AMI mb with an hp computer. That particular.efi file did not work, but inspired me to try other ones in those directories. The good thing on the HP bios was that with each selection it gave the error message immediately and defaults back to the bios, so that you can try another efi file. I think it was "securerecovery.efi" that worked. Hope that helps someone.
NobleN0OBGaming@reddit
My God I want to give my thanks aswell, ran into this issue and tried everything under the sun, was about to nuke my entire PC drive and windows and bios to nothing hahahah, thanks so much
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
fox121212@reddit
W fixed this same issue for a friend from this comment he had a gigabyte h270m-ds3 it seems that this issue is from gigabyte motherboards no matter the model lol now he can play faceit again
Junior_Whereas9531@reddit
Could you help me? I'm having the same error on my Gigabyte B550M-K motherboard.
Turbulent_Sun_92@reddit
Hey I just made a new reddit account to ask for your help, it's called Turbulent Sun or something!
markbangs1@reddit
Where can i find enroll efi image?
markbangs1@reddit
I have the biostar motherboard
Xio_ze@reddit
YOU ARE THE F##ING BEST BRO!
zenitsu_15@reddit
hey im having the same issue, I can't seem to find the "enroll efi image" on my bios, i have a fx505gt motherboard can you add me on my discord? my name is Zekrommm
Lupserobert@reddit
I found the fix for my MSI Click Bios 5 that I updated and secure boot was not working anymore. I am not the best at explaining this stuff but after hours of reasearch on reddit and attempts with Gemeni AI instructions, I found the solution. Make sure the Windows 10 is on UEFI first when you go to Advanced OS Configuration Select Secure Boot - Custom Enabled Key Management Authorized Signatures IMPORTANT (USE KEYBOARD WHEN SELECTING OPTIONS, MOUSE CLICKING DID NOT WORK) Select with the keyboard Append Key, Enter Find the drive partition that when selected you should see the first option as EFI, select it Enter Microsoft Enter Boot Enter bootmgfw.efi Choose EFI PE/COFF Image. Enroll it and save it. After that it worked. No matter what else I tried it didn’t. Hope this helps somebody.
Upper_Explanation478@reddit
THANK YOU SO MUCH
JumpyRanger3812@reddit
This worked , up voted, thanks G , May Allah bless u
the_Athereon@reddit
I don't see an Enroll Efi Image option.
ASUS Z170k
Guapoton-i@reddit
THANK YOU SOOOOO MUCH BROTHER!!! was switching monitors and turned my second one off at the same time and it gave me a black screen, literally reset my PC nd that happened, PC’s are weird sometimes lol. Again ty so much
ProstFFA@reddit
Can you explain it more clearly pls? B450M
Icy_Strategy_7575@reddit
ofc, i can
but you should show me your boot options(screenshots)
that option is really called by ENROLL EFI IMAGE
LichKing559@reddit
When i do the enroll efi image it shows 3 options and all look the same to me besides the last number. Would you be able to help me out on discord? My used is .sageee.
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
No_Sheepherder_358@reddit
yo bro do u have discord acc, i have this error and getting bored from this. SO CAN YOU HELP ME PLSS? my discord acc nickname : vhuzi
Big_Mulberry_1388@reddit
Bro you´re the absolutely GOAT. May God bless you always <3 <3 <3 <3
M0deg0d@reddit
Hola, estoy volviendome loco con este tema, he seguido tus indicaciones pero no encuentro el Enroll EFI IMAGE. ¿Puedes ayudarme?, muchas gracias.
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
BetterCallSal@reddit
I was wondering if I could get your help. I'm trying to fix secure boot on my PC. It was on and working fine. I had turned it off, but right back on and it hasn't worked since.
I_live_conspiracy6@reddit
U a legend bruh!!😭😭
Nervous-Programmer38@reddit
THANK YOU
LawB210@reddit
Thank you so much. You saved my Easter Monday.
mincraftaccout@reddit
It keeps telling me failed do you have a fix for this
InochiFarstride@reddit
Fucking THANK YOU! I updated my bios to see if the stupid Bo7 "update your bios" message would go away and ran into this issue. Cannot tell you how many times I reset secure boot and my keys trying to fix it. USE THE UEFI BOOT OPTION!!
No_Priority4001@reddit
非常谢谢你,我是铭瑄h610m主板的,升级bios后遇到相同问题,按照你给的方法已经成功解决了,原本主板生产商的客服叫我重装系统和分区。
Aggressive_Ask_9915@reddit
TY!!!!
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
NoXy666@reddit
Thank you, u saved me i spent the whole day looking for a solution i was on the verge of giving up
Icy-Scientist2346@reddit
ôi tôi cảm ơn ông rất nhiều chính cái này đã cứu tôi trog khoảng thời gian quaaaa
trời ơiiii
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
MarcoAndrade535@reddit
Mano preciso da tua ajuda pra resolver isso. tem como me ajudar?
West-Leadership1120@reddit
It worked for me ! I have a Gigabyte 570 gaming X and worked perfectly. It saved me a Lot of time
Thank You kind sir.
ZippyDan@reddit
This worked for me on an Acer C22 AIO (All-in-one) computer.
Step 1: Enter UEFI Firmware Settings
Hold down Shift while choosing [Start Menu] -> [Power Icon] -> "Restart"
Troubleshoot -> Advanced Options -> UEFI Firmware Settings -> "Restart"
Step 2: Enroll EFI Image
Then Save changes (F10) and exit BIOS. After restarting all should be fine.
Beneficial-Smell-698@reddit
When I'm in key management, my only choices are: delete keys, install default keys (which I did, but it doesn't restart my PC).
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
Crowbar55@reddit
Outstanding work figuring this out and taking the time to share the fix.
Well done and much appreciated.
The EIF was the missing piece for me.
This worked the first time thru your process.
OwnComputer622@reddit
Still having this same issue even after trying what you did not sure what my issue is I have an asrock motherboard
ZealousidealThing308@reddit
thank u verrrrrrrry much!!!
Psychedelic-relic027@reddit
Holy shit batman!!! Yessss, I got it to load without signature errors, and WITH secure boot enabled!!! I'm typing all this as i'm loading call of duty. Just dropped the new nuketown zombie map, and immediately after I had these problems.
Literally saved me from a few weeks of depression, been going through a very rough time , physically and mentally, working way too much etc. And I have been waiting months for the new zombies map.
The literal day, I updated it.I got this message and it fixed it. Currently crying tears of happiness and g fuel
Ecstatic_Being_6770@reddit
This is what did it for me thank god. Now I can play BF6 finally on my pc and other games I was blocked before. I have a NZXT z790 motherboard
EldiabIa@reddit
Ugh I’ve been having problems for 2 months now and all I wanna do is play cod! H5104M-S by STGAUBRON
werty20@reddit
This resloved my issue ! Thank you sir
therandomdud3@reddit
You are the MVP!! Finally, after 1-2 weeks i managed to fixed it
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your {{kind}.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
Individual-Factor-54@reddit
Can you explain it more clearly pls? I cant find enroll efi image
Icy_Strategy_7575@reddit
Ofc, send me screenshot of your bios
and what motherboard you have too
CalculatingMaths@reddit
Thank you great sir! Helped me fix mine after 2 days of hair-pulling and rebooting. Much love big bro.
SmellConnect3682@reddit
I had the same problem, making me crazy. I cannot disable secure boot option, or reset the keys. I cleared CMOS, load BIOS defualts, nothing helped. The only solution worked remove ALL disks (nvMe, SSD, SATA, *ALL*), and after that finally I can change the Secure Boot settings in the BIOS.
This was a Gigabíte Z790 motherboard. Hope this helps!
Lardsonian3770@reddit
The fact that I have to do this to disable secure boot is so fucking stupid.
ForsakenSun6004@reddit
And here I am doing this exact thing so I can ENABLE secure boot for a damn game..
Agitated_Eye_1325@reddit
did it work ?
ForsakenSun6004@reddit
Fuck no, I got a refund for the game.
Lardsonian3770@reddit
In my case I was just trying to install arch lmao.
ForsakenSun6004@reddit
Well don’t buy battlefield 6 then 🤣
Lardsonian3770@reddit
Just ended up dual booting in the end so i could occasionally play fortnite with a few friends.
Werfed@reddit
I am having the same problem with the same mobo. What was the solution?
bod3405@reddit
do you mean you physically take out the disks from the motherboard?
Matt-Viz@reddit
Figure it out?
bod3405@reddit
Yeah I was able to change secure boost settings by removing all of my ssd from the motherboard.
VizmaL0397@reddit
But were you able to turn secure boot on and get it working properly on boot up?
Sensitive-Sound2882@reddit
Ma
Lithor2@reddit
this saved my laptop from getting stuck in this with a custom bios, thanks a lot
Ok_Gold_9626@reddit
Génial merci mec!!!! Tu viens de m'éviter un retour sav qui allait me prendre un temps fou GG ;)
Traditional-Oil1515@reddit
How do you remove the disk I’m not sure we’re to find that and do that
FairApplication6169@reddit
what do you mean by remove all disks? physically? or in the settings
VladiZarth@reddit
just plug it all off
ForsakenSun6004@reddit
I’m intrigued too, do you end up finding an answer?
6Sigils@reddit
Goat
xjremon@reddit
OMG THIS WORKED. I have been beating my head against the wall to get this to work for an hour. Thank you for this post!
Daddydoulbes@reddit
Thanks saved me a lot of time and aggravation was having the same problem on the same motherboard disconnected all drives went back into the BIOS was able to disable secure boot which was great out and wouldn't let me change
New-Acanthocephala26@reddit
Holy crap this actually worked! 🙌 Was ready to return my motherboard until I saw this thread.
Once I got Secure Boot disabled, I used 4DDiG Partition Manager to convert my main drive from MBR to GPT (realized that was why Secure Boot broke initially). The conversion took 2 clicks and kept all my games intact.
Now I can actually enable Secure Boot properly without the signature errors. This thread = lifesaver 💻
-Bonfire62-@reddit
Omfg same motherboard, what a stupid bug. Thank you!!!
ManufacturerFast9421@reddit
Thank you buddy, worked for me
RoxitRox@reddit
Thank you so much, you beautiful human
saidfgn@reddit
I was having this issue on my MSI prestige laptop. Disabling secure boot from bios fixed the issue
Pretty_Term_6390@reddit
thanks! this worked for me on my MSI laptop. Not sure why this suddenly happened
deleted_by_reddit@reddit
[removed]
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
LichKing559@reddit
Im having the same issue and am just trying to play valorant. I go to bios -boot - secure boot- enable, but whenever i do i get the error. I am still able to load into windows with it disabled though. If anyone can help me out id appreciate it, my discord is .sageee.
Soft_Ticket1997@reddit
I sent you a request on Discord, were you able to resolve it?
zenitsu_15@reddit
im having the same issue, and i have an asus motherboard, can somebody help?
Yutheninja@reddit
Guys i tried everything in this forum + a lot more and nothing worked until I found this in the deepest freaking web you can:
If you're able to boot into windwos with the error code or with the secureboot disabled, stadt command prompt as admin and type in these 3 commands:
mountvol S: /s del S:*.* /f /s /q bcdboot C:\Windows /s S: /f UEFI
the second will delete your keys and the third reinstall them so that all are in sync.
after that restart your cpmputer with secureboot on, done.
Worked like a charm.
Seyed4@reddit
Wow
igormarques1991@reddit
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your comment.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
Financial_Cut_416@reddit
My situation is a little different I need secure boot on for the games I play and I have it on but it’s disabled. I figured out why it was disabled it was because I was in setup mode, so I restore factory keys and get in user mode which is the mode u need to be in for secure boot to work then I can see in bios it says my secure boot is enabled so I hit f10 to load into windows and that’s where I get the error but I’m able to load in fine if I go back into setup mode just without secure boot obviously PLEASE HELP ME IM SO LOST.
Aggravating-Sun-8051@reddit
In my case. I just go in Command Prompt and type this bcdboot C:\Windows /s C: /f UEFI
And this help create a new boot drive
And go to bios and enable sucure boot and that's help dm me if anyone need help
Every-Wear-2970@reddit
When I type it in command prompt it says: failure when initializing library system volume.
No-Union2583@reddit
I just had this happen to me.. man i felt like breaking something.. was so frustrated lmao.. and all my secure boots and key management was greyed out and couldnt even do anything so this might help if they are greyed out for you.. so heres what i did and i hope it helps you out.. im running ASUS prime h10a m yours bios setting might be different..
1 enter bios mode.. 2 go to advance mode and find the boot tab.. 3 in the boot tab find the CSM and disable it.. 4 go to the main tab and find security and set an admin password.. 5.. this step was crucial for me but i dont know why.. save and reset but before it loads back up as soon as you see fans spinning or lights turn on off the power button to turn off by holding the power button and repeat turn off power 2 times.. 6.. now let it power on and enter the admin password that you made and enter bios mode again .. 7.. head to the boot tab and and go into secure boot and hopefully the options that are there are not greyed out.. if they still are sorry and if they arent we will go to the next step.. 8 in secure boot go to key management and once your in there you want to clear the keys and the save and reset.. 9.. when windows boots up and you had a pin for your microsoft account it will say something about not finding a pin and will have to set up a new one again just go through that windows BS etc etc then you should be in again.. long process aye lmao.. then reset go to bios mode go to boot tab then CSM and enable again then go to secure boot and install the keys again and you should be good after that.. then get back to that valorant BF6 or what games askes for the secureboot BS..
Powerful-Intention50@reddit
Mensen ik heb jullie hulp nodig
chimera14893@reddit
In case someone needs to hear this, I found the solution for my laptop when it did this problem what I did was disabled the boot selection and I disabled every single bootable drive then I saved and restarted. It booted immediately back to BIOS which finally enabled me to disable secure boot, after which i reloaded all bootable drives and restarted again. Finally got back to windows.
grevytrain27@reddit
This worked you’re amazing and I love you
deleted_by_reddit@reddit
Literally having the same exact issue on a B660 board, did you fix the problem?
Indi60kid@reddit (OP)
I have. I tried everything, from flashing BIOS to the newest version, then to an older one, than to an even older one, clearing CMOS, removing the GPU and plugging display port on iGPU.
However, I couldn't tell you exactly how I fixed it, in the end it was pure luck. Try this though, I think one of these helped me:
BIOS version F5
https://www.youtube.com/watch?v=FcC9d343Hmw just before succeeding in fixing it, I did what this guy did, or something similar.
Try to reset the keys or the secure boot to setup mode. All the time it was giving me errors, but after doing what the guy in the video did, it finally let me reset to Setup, I clicked enter and windows booted up.
Hopefully this helps, man, good luck, hope you succeed as well!
And for anyone reading this - Windows 11, gigabyte mobos and secure boot enabled is a deadly combo, don't do it, at least for now!
Ecstatic_Being_6770@reddit
Holy fuckin shit something that actually worked
Eire_Metal_Frost@reddit
Here's how I fixed a similar issue : I was trying to boot from USB on a ASUS Vivobook and I'd get the issue "Invalid Signature Detected. Check Secure Boot Policy in Setup" showing. Which should be a easy fix by turning off the "Secure Boot" however it was greyed out.
Here's the fix :
1 - Set up a password on your bios - Security - Admin Password - It'll say Installed After
2- Reset and clear all the values in Key Managment - Hot Restore Factory Keys - restart
Next time you go into the Bios you'll be asked for the password you created and you'll that Secure Boot is "Not Active"
You'll be able to boot from USB now.
brandinb@reddit
Why does this work. This makes no sense but this worked perfectly on my gigabyte b550i motherboard which would not boot off a usb with secure boot enabled until doing this. Makes absolutely no sense!
Kigasitobutton@reddit
Thanks, you really help me a lot
Eire_Metal_Frost@reddit
Hey, you're very welcome.
deleted_by_reddit@reddit
[removed]
AutoModerator@reddit
Hi there! Thanks for the comment.
We ask that posts and comments be in English so they can be understood by as many people as possible. Translations on Reddit are client-side, and not all apps or browsers support auto-translate. Currently many users (and moderators) aren’t able to read your {{kind}.
Could you please submit a new comment in English?
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.
ShadowFocus_11@reddit
I am same issues on eluktronics laptop after bios update but I can disable secure boot and it boots up. but when I enable secure boot it does not boot into windows is there solution for that ?
adamsolo@reddit
I solved this by updating the BIOS of my Gigabyte Aorus Z390 Elite. I had F6 and installed the latest F12c, using flash disk via the BIOS. Now when Secure Boot is enabled it works while before it was enabled but I got that error.
yoleska@reddit
Stumbled onto this thread as I just updated my Gigabyte Z790 to the latest FN BIOS and ran into this. I also ran into the issue of the "Secure Boot" not being able to be disabled in the BIOS. I read the replies about having to remove all the drives, and that didn't make me happy. I thought I'd try one last thing before doing that and that was to "Load Optimized Defaults" and before the system booted a hard drive, went into the BIOS and I was able to disable it. I'm sure you're all right that it has something to do with the drives attached, but if you wipe the BIOS BEFORE it has time to access the drives, then I think this might work for you. Good luck. And Fk-U Gigabyte for enabling this as mandatory on the latest BIOS. re: "Improves platform security by making Secure Boot enabled as system default" that's BS.
Affectionate_Bear512@reddit
I am dealing with this issue right now and my motherboard is also Gigabyte Z790 S Wifi. It's a royal PITA. I am trying to get it to boot my UNRAID USB drive, and it's not working at all. It will just instantly shut down right after it reboots past the BIOS screen. Currently, I have secure boot disabled, but I have heard mixed things like I have to enable UEFI and then disable EFI on the boot USB. So frustrating!
I am not thrilled about removing all my hard drives, since between all of the M.2 drives and hard drives there are over 14 drives attached to this system.
Why do they make this so hard!!
vedk107@reddit
I am able to turn off the secure boot easily in my Asus Vivobook. But it doesn't do jackshit. I still get the Incorrect signature error and loads back into bios. I have updated the Bios, tried restoring factory keys and setup mode alternately. Nothing has helped so far.
vqntec@reddit
Hey, i have the exact same problem on the asus k513e. Im tryna turn on secureboot so i can run games on it, ive tried what youve did but still cant. Just asking but have you cracked the problem yet
BaseballNo1911@reddit
I had this issue with Z490M gigabyte for me the solution was to reinstall windows from a new bootable USB key.
Chese_00@reddit
I tried literally everything I could think of but the only thing that worked for me was updating/redownloading the latest bios version. Once the pc restarts it'll ask you press Y or N to reset ftpm settings and I pressed Y. Once all that is done go into secure boot settings and try to enable secure boot and keep it on standard, if it show's "not active ", switch it to custom and click "restore factory keys"(it could be worded differently depending on MB). Afterward put it back to standard and hopefully this fixes your issue.
lyonell04@reddit
I had Bitlocker on and got the same result. Then I turned Bitlocker off and decrypted my disk and then I was able to disable secure boot.
Myljonierius@reddit
All I have done is shorted the CLEAR CMOS pins when i was on UEFI BIOS screen and when prompt show that Default settings loaded I pressed F2. It worked perfectly. My MB is asrock b760 rs/d4. I hope this will help to fix your issue with Invalid Signature Detected error.
CountryNo757@reddit
according to what I have been reading today, Windows 11 checks each disk in turn. I can see it happen. A disk you have used before may have a 'foreign' signature left behind that Windows doesn't recognise. You need to remove it.
CountryNo757@reddit
I am still having problems. A Windows page said to go to the separate CSM dialog and make sure that ONLY Secure boot was enabled. I had 2 lines to configure. the second must be Disabled. That removed the highlight from the summary, but it still wouldn't boot.
Environmental_Milk59@reddit
yesterday got the issues > was trying to upbdate DBX database
The fix for me was having a windows 11/10 thumbdrive in fat32
Booting failed > so i go to custom mode and keymanagement > i save (exported) the PK and KEK keys on the root of the thumbdrive
I tried one more time error as always but SecureBoot let me boot up the windows setup > ok now i can reinstall Windows but don't want that so i go to repair mode and in all the options foolishly i tried > UEFI microprogram reboot and go to bios ...
PC restarted not in LOCKED USER MODE (as it was before) BUT CUSTOM MODE directly, so i tried to go back to Key management and selected the "go to setup mode with clearing NVRAM" > tried it black screen for 1 second and boom all keys cleared !
I go back to the line where usually it says SECURE BOOT MODE : and user changed to setup mode
I disabled Secure boot > he asked to reload factory policy > set to yes > normal mode exit from setup one > disable Secure boot ...
Save changes and reboot > windows was loading ...
Now i can use the laptop but secure boot is bricked, if i switch it on > i got no matter what wrong policy > but i can use the laptop iam not locked anymore like before the operation.
Iam now trying to update the WINDOWS CA 2023 because last was issued in 2011 and add the OEM certificate too that i think is creating the issue because he is missing or the CA is missing not sure ...