3.7.2
Key Management
Options Summary
Factory Key
Disabled
Provision
Enabled
Secure Boot feature is Active if Secure Boot is Enabled, Platform Key (PK) is enrolled and
the System is in User mode. The mode change requires platform reset.
Restore Factory Keys
Force System to User Mode. Install factory default Secure Boot key databases.
Reset to Setup Mode
Delete all Secure Boot key databases from NVRAM.
Export Secure Boot variables
Copy NVRAM content of Secure Boot variables to files in a root folder on a file system
device.
Enroll Efi Image
Allow the image to run in Secure Boot mode. Enroll SHA256 Hash certificate of a PE
image into Authorized Signature Database (db).
Chapter 3 – AMI BIOS Setup
Optimal Default, Failsafe Default
59