Problem with secureboot when enabling
Posted by Due-Artist379@reddit | buildapc | View on Reddit | 21 comments
So, trying to play Faceit which needs TPM 2.0 and Secureboot enabled.
I went into my BIOS to enabled both of them, got TPM 2.0 enabled easily and then the problem with Secureboot. I'm trying to enabled it, doing everything right, I got UEFI enabled and stuff, but when enabling Secureboot and then saving changes and restarting the PC with option ''Save changes & reset computer'' or such, then the PC turns on, monitor technically turns on but doesn't let me enter desktop, and when I enter BIOS (after the change save the Secureboot is on):
After clicking ''Don't save and exit'' it gives me an error: Invalid Signature Detected. Check secure boot policy in setup.
I have all the settings done right and everything seems okay. When disabling secureboot, everything works fine, but I need it enabled.
Already tried removing CMOS battery and doing a full restart, nothing... Could anyone help, please?
Plenty-Secretary6048@reddit
Guys i have the solution... Just follow the instructions.. works on my MSI Katana GF66 11UD : https://www.asus.com/support/faq/1042711/
Asaku786@reddit
Dude idk if you’ll read this but thank you so much was finally able to fix a nightmare of a problem thanks to you
JadeMoon085@reddit
THANK YOU! From the bottom of my heart- I was ready to cry and then I followed the directions in the link you provided. The whole list of directions from start to finish took me 5 minutes! I'm on an older HP Omen Desktop with an AMI motherboard. Those directions are 100% universal even though they came from ASUS.
I hope you have an insanely amazing week, because omg, you just made mine! Thank you again!
JadeMoon085@reddit
Di you ever find a fix for this?
I'm having the exact same issue (not with gaming but in general). If I enable secure boot, i get "Invalid Signature Detected. Check secure boot policy in setup." I have reinstalled the BIOS firmware, reset defaults, deleted keys and restored default keys. No matter what I do, I get the same error if Secure Boot is enabled. Im so frustrated. This was fine until I had to reinstall my BIOS firmware about a month ago. Now everything is scrambled and it wont get sorted.
JadeMoon085@reddit
Never mind- listen to @Plenty-Secretary6048 at the bottom of this thread- saved my life!!!
National_Practice761@reddit
What GPU do you have, many times some variants of GPUs cause this problem
InspectionRealistic5@reddit
did you fix the problem? If not, contact me and i will help you
Infamousslayer@reddit
Does it fail to boot windows with secure boot on?
Hold shift and restart your computer, go into bios right away and enable secure boot. Since you held shift ths next windows boot should go into recovery. In recovery not the PC into safe mode.
If it boots correctly in safe mode then restart again to boot normal.
If for whatever reason it doesn't go into recovery just let it repair it self, after 3 attempts it should go into recovery.
You may need to clear secure boot keys within bios and start over just to be sure.
Due-Artist379@reddit (OP)
It took me to a menu: Choose an option:
Continue (exit and continue to win 10)
Troubleshoot (reset your pc or see advanced options)
Turn off your PC
Infamousslayer@reddit
Yes that is recovery, i believe safe mode is under advanced > startup but google it incase I'm wrong.
When you get the safe mode options just using 4 should be fine which is safe mode with network
Due-Artist379@reddit (OP)
Alright did everything and it doesnt work in safe mode either, still says the Invalid signature detected error...
Infamousslayer@reddit
Delete the secure boot keys in the bios or your may need to clear the TPM keys within windows.
You'll have to google that two opens
Due-Artist379@reddit (OP)
Did both, still the same.. nothing seems to work atp.
Due-Artist379@reddit (OP)
Because when I enable secureboot rn, im left with nothing but a black screen after reboot
Due-Artist379@reddit (OP)
So im in safe mode and now I restart my pc and go into BIOS and try to enable the secure boot?
Infamousslayer@reddit
No, you need to go into safe mode after you enable secure boot in bios.
Enable Secure boot > boot into Safe Mode > if it boots then just reboot too go back to normal mode.
Due-Artist379@reddit (OP)
By hold shift and restart you mean just to hold down shift and press restart from start menu? Or to force turn off from the power button?
Infamousslayer@reddit
Hold the shift key and then restart from start menu.
SimpleEmployer3532@reddit
The invalid signature detected error usually means your OS or some hardware drivers have unsigned code or secure boot keys need resetting. Try updating you BIOS first then check if windows is activated and installed in UEFI mode. You can also reset secure boot keys in BIOS or enable custom mode to add trusted signatures.
Due-Artist379@reddit (OP)
Did it, and still same error and black screen, nothing seems to work.
Due-Artist379@reddit (OP)
I updated about 4 hrs ago, all in UEFI mode and resetting keys now.