Remove 'UEFI CA' from DB
Device Guard ready system must not list 'Microsoft UEFI CA' Certificate in Autho
Restore DB defaults
Restore DB variable to factory defaults.
Platform Key(PK)
Enroll Factory Defaults or load certificates from a file:
1. Public Key Certificate in:
a) EFI_SIGNATURE_LIST
b) EFI_CERT_X509 (DER)
c) EFI_CERT_RSA2048 (bin)
d) EFI_CERT_SHAXXX
2. Authenticated UEFI Variable
3. EFI PE/COFF Image(SHA256)
Key Source: Factory, External, Mixed
Key Exchange Keys
Enroll Factory Defaults or load certificates from a file:
1. Public Key Certificate in:
a) EFI_SIGNATURE_LIST
b) EFI_CERT_X509 (DER)
c) EFI_CERT_RSA2048 (bin)
d) EFI_CERT_SHAXXX
2. Authenticated UEFI Variable
3. EFI PE/COFF Image(SHA256)
Key Source: Factory, External, Mixed
Authorized Signatures
Enroll Factory Defaults or load certificates from a file:
64