<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://ess-wiki.advantech.com.tw/wiki/index.php?action=history&amp;feed=atom&amp;title=IDP%2FSecure_Boot</id>
		<title>IDP/Secure Boot - Revision history</title>
		<link rel="self" type="application/atom+xml" href="https://ess-wiki.advantech.com.tw/wiki/index.php?action=history&amp;feed=atom&amp;title=IDP%2FSecure_Boot"/>
		<link rel="alternate" type="text/html" href="https://ess-wiki.advantech.com.tw/wiki/index.php?title=IDP/Secure_Boot&amp;action=history"/>
		<updated>2026-05-14T17:02:27Z</updated>
		<subtitle>Revision history for this page on the wiki</subtitle>
		<generator>MediaWiki 1.28.3</generator>

	<entry>
		<id>https://ess-wiki.advantech.com.tw/wiki/index.php?title=IDP/Secure_Boot&amp;diff=426&amp;oldid=prev</id>
		<title>Winston: Created page with &quot;=Input keys to BIOS= ==Requirment== *Target Platform:  UTX-3115 or ARK-2151S ... *BIOS (Need support UEFI Shell )  ARK L510XF23 *USB Flash Drive  A signed IDP bootable USB fla...&quot;</title>
		<link rel="alternate" type="text/html" href="https://ess-wiki.advantech.com.tw/wiki/index.php?title=IDP/Secure_Boot&amp;diff=426&amp;oldid=prev"/>
				<updated>2016-02-17T08:28:56Z</updated>
		
		<summary type="html">&lt;p&gt;Created page with &amp;quot;=Input keys to BIOS= ==Requirment== *Target Platform:  UTX-3115 or ARK-2151S ... *BIOS (Need support UEFI Shell )  ARK L510XF23 *USB Flash Drive  A signed IDP bootable USB fla...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;=Input keys to BIOS=&lt;br /&gt;
==Requirment==&lt;br /&gt;
*Target Platform:&lt;br /&gt;
 UTX-3115 or ARK-2151S ...&lt;br /&gt;
*BIOS (Need support UEFI Shell )&lt;br /&gt;
 ARK L510XF23&lt;br /&gt;
*USB Flash Drive&lt;br /&gt;
 A signed IDP bootable USB flash drive&lt;br /&gt;
&lt;br /&gt;
==Enroll key and certificates into UEFI==&lt;br /&gt;
1. Insert the signed IDP3.0 bootable USB flash drive into a USB port on the Target Device&amp;lt;br /&amp;gt;&lt;br /&gt;
2. Apply power, press the power button, and then immediately press the '''Del''' key to enter the '''Boot Device Menu'''&amp;lt;br /&amp;gt;&lt;br /&gt;
3. Select '''Enter Setup'''.&amp;lt;br /&amp;gt;&lt;br /&gt;
4. Navigate to '''Boot''' &amp;gt; '''CSM parameters''' &amp;gt; '''Video'''. Select '''UEFI only'''.&amp;lt;br /&amp;gt;&lt;br /&gt;
5. Press '''F4''', and select Yes to save changes and reboot. Immediately press the '''Del''' key to enter the '''Boot Device Menu'''.&amp;lt;br /&amp;gt;&lt;br /&gt;
6. Navigate to the '''Boot''' &amp;gt; '''CSM parameters''' &amp;gt; '''CSM Support'''. Select '''Disabled'''.&amp;lt;br /&amp;gt;&lt;br /&gt;
7. Press &amp;lt;F4&amp;gt;, and select Yes to save changes and reboot. Immediately press the '''Del''' key to enter the '''Boot Device Menu.'''&amp;lt;br /&amp;gt;&lt;br /&gt;
8. Navigate to Security &amp;gt; Secure Boot Menu &amp;gt; Secure Boot. Select Disabled.&amp;lt;br /&amp;gt;&lt;br /&gt;
9. Delete all secure boot variables. Navigate to '''Security''' &amp;gt; '''Secure Boot Menu''' &amp;gt; '''Secure Boot''' &amp;gt; '''Key Management'''. Select '''Delete All Secure Boot Variable''', and then select '''Yes'''.&amp;lt;br /&amp;gt;  &lt;br /&gt;
10. Press '''F4''', and select Yes to save changes and reboot. Immediately press the '''Del''' key to enter the '''Boot Device Menu'''.&amp;lt;br /&amp;gt;&lt;br /&gt;
11. Select '''UEFI: Built-in EFI Shell'''.&amp;lt;br /&amp;gt;&lt;br /&gt;
12. At the Shell&amp;gt; prompt, type fs0: to enter VFAT partition on the USB flash drive.&amp;lt;br /&amp;gt;&lt;br /&gt;
13. At the fs0:\ prompt, type '''EFI\BOOT\BOOTIA64.efi''' to enroll the keys/certificates into the UEFI and lock down the BIOS. Create the KEK, db, and PK &amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Enable and Test Secure Boot==&lt;br /&gt;
1. Reboot the system and press the '''Del''' key to enter the '''Boot Device Menu'''. &amp;lt;br /&amp;gt;&lt;br /&gt;
2. Navigate to '''Security''' &amp;gt; '''Secure Boot Menu''' &amp;gt; '''Secure Boot'''. Select '''Enable'''.&amp;lt;br /&amp;gt;&lt;br /&gt;
3. Navigate to '''Boot Device Menu''' &amp;gt; '''UEFI: USB flash drive'''&amp;lt;br /&amp;gt;&lt;br /&gt;
4. Press '''F4''', and select '''Yes''' to save changes and reboot.&amp;lt;br /&amp;gt;&lt;br /&gt;
5. Verify the Signed USB flash drive can boot in IDP3.0 OS system successfully.&amp;lt;br /&amp;gt;&lt;/div&gt;</summary>
		<author><name>Winston</name></author>	</entry>

	</feed>