Chapter 3 – AMI BIOS Setup 92Fanless Embedded Box PC BOXER-6641Options SummaryEnroll Efi ImageAllow the image to run in Secure Boot mode.Enroll SHA256 Hash Certificate of a PE Image into Authorized Signature Database(db).Device Guard ReadyRemove ‘UEFI CA’ fromSBNo Press ‘Yes’ to remove ‘UEFI CA’from SBYesDevice Guard ready system must not list ’Microsoft UEFI CA’ Certificate inAuthorized Signature database(db).Restore DB defaults NoYes Press ‘Yes’ to Restore DB defaultsRestore DB variable to factory defaults.Secure Boot variable |Size | Keys#| key SourcePlatform key(PK) |1153 | 1 | No KeyDetails Enroll Factory Defaults or load certificates from afile:1.Public key Certificate:a)EFI_SIGNATURE_LISTb)EFI_CERT_X509 (DER)c)EFI_CERT_RSA2048 (bin)d)EFI_CERT_SHAXXX2.Authenticated UEFI Variable3.EFI PE/COFF Image(SHA256)Key Source:Factory, External, MixedExportUpdateDeleteKey Exchange keys |1153 | 1 | No Key Details Enroll Factory Defaults or load certificates from afile:1.Public key Certificate:a)EFI_SIGNATURE_LISTb)EFI_CERT_X509 (DER)c)EFI_CERT_RSA2048 (bin)d)EFI_CERT_SHAXXX2.Authenticated UEFI Variable3.EFI PE/COFF Image(SHA256)Key Source:Factory, External, MixedExportUpdateAppendDeleteTable Continues on Next Page…