3.7.2 Key Management
Provision Factory Default Keys
Install factory default Secure Boot Keys when System is in Setup Mode.
Enabled / Disabled
Install Factory Default Keys
Force System to User Mode-install all Factory Default keys
Enroll Efi Image
Allow the image to run in Secure Boot mode. Enroll SHA256 hash of the binary into
Autorized Signature Database (db)
Platform Key (PK)
Enroll Factory Defaults or load certificates from a file:
1. Public Key Certificate in:
a) EFI_SIGNATURE_LIST
b) EFI_CERT_X509 (DER encoded)
c) EFI_CERT_RSA2048 (bin)
d) EFI_CERT_SHA256,384,512
2. Authenticated UEFI Variable
116
http://www.tyan.com