Supermicro SuperStorage SSG-6029P-E1CR24H User Manual page 125

Table of Contents

Advertisement

Platform Key (PK)
The Platform Key (PK), which is pre-installed in firmware during manufacturing, provides
full control of the secure boot key hierarchy. The options are Save to File, Set New, and
Erase.
Key Exchange Keys (KEK)
The Key Exchange Key (KEK), which is held by the operating system vendor, can be
updated by the holder of the PK and be used by secure boot to protect access to signa-
tures databases. The options are Save to File, Set New, Append, and Erase.
Authorized Signatures
Authorized Signature Database (DB) contains authorized signing certificates and digital
signatures. The options are Save to File, Set New, Append, and Erase.
Forbidden Signatures
Forbidden Signature Database (DBX), which is the inverse of DB, contains forbidden
certificates and digital signatures. The options are Save to File, Set New, Append, and
Erase
Authorized TimeStamps
Authorized Timestamp Database (DBT) is used to issue and check signed time stamp
certificates. The options are Save to File, Set New, Append, and Erase
OsRecovery Signatures
OsRecovery Signatures Database (DBR) contains secure boot authorized recovery vari-
ables. The options are Save to File, Set New, Append, and Erase
125
Chapter 6: UEFI BIOS

Advertisement

Table of Contents
loading

This manual is also suitable for:

Superstorage ssg-6029p-e1cr24l

Table of Contents