Seco SBC-C90 User Manual page 59

3.5" sbc with amd ryzen embedded r1000/v1000 family of socs
Table of Contents

Advertisement

4.5 Security menu
Menu Item
Setup Administrator Password
User Password
Secure Boot
4.5.1 Secure Boot submenu
Menu Item
Attempt Secure Boot
Secure Boot Mode
Key management
4.5.1.1 Key Management submenu
Menu Item
Provision Factory Default keys
Install Factory Default Keys
Enroll Efi Image
Restore DB defaults
Platform key
Key Exchange Keys
Authorized Signatures
Forbidden Signatures
Authorized Timestamps
OS Recovery Signatures
SBC-C90
SBC-C90 User Manual - Rev. First Edition: 1.0 - Last Edition: 1.0 - Author: A.R. - Reviewed by C.M. Copyright © 2021 SECO S.p.A.
Options
Description
Set Setup Administrator Password
Set User Password
See Submenu
Customizable Secure Boot Settings
Options
Secure Boot is activated when the Platform Key (PK) is enrolled, System Mode is User/Deployed and CSM
Enabled / Disabled
function is disabled.
Set UEFI Secure Boot Mode to STANDARD Mode or CUSTOM mode. This change will be effective after
Standard / Customized
save. And after reset, the mode will return to Standard
See submenu
Enable expert users to modify Secure Boot Policy variables without full authentication
Options
Enabled / Disabled
Provision factory default keys on next re-boot only when System in Setup Mode
Force System to User Mode. Configure NVRAM to contain OEM- defined factory default Secure Boot keys
Allow the selected image to run in Secure Boot mode. Enrol SHA256 Hash Certificates of the Image into
File System Image
Authorized Signature Database (db)
Restore DB variable to factory defaults
Enrol factory Defaults or load certificates from a file:
1. Public Key Certificate in:
a) EFI_SIGNATURE_LIST
Set New Var
b) EFI_CERT_X509 (DER encoded)
c) EFI_CERT_RSA2048 (bin)
Append Key
d) EFI_CERT_SHA256,384,512
2. Authenticated UEFI variables
3. EFI PE/COFF Image (SHA256), Key Source: Factory, External, Mixed
59

Advertisement

Table of Contents
loading

Table of Contents