You should keep your Windows secure boot on to protect your system from unauthorized ROMs and malware attacks.
It improves the privacy & security of your Windows by preventing any unauthorized driver or software from loading during startup.
If you have been using Windows 11 recently and want to know How to enable secure Boot on it, follow this article.
What Is Secure Boot?
Secure Boot is a feature of UEFI or Unified Extensible Firmware. When enabled, this feature resists any malicious attack on the system and detects tampering with the bootloaders.
It does so by validating their digital signatures and rejects those having wrong credentials or being harmful to the system.
Enable Secure Boot On Windows 11
Follow this step-by-step guide to enable secure Boot on Windows 11.
Each PC has a different BIOS key. The general BIOS keys are F1, F2, F9, F10, or Del. But they differ as per the motherboard company.
If you don’t know the BIOS key, check the manufacturer’s manual.
Now follow the process given below to enable secure Boot in Windows 11.
- Restart your PC and keep pressing the BIOS key to enter BIOS. You can also enter BIOS from Windows Settings.
- Press Win + I to enter Settings. Then select Recovery.
- Next, click on the Restart Now button beside the Advanced Startup option.
- From the advanced options, select Troubleshoot.
- Next select Advanced Options > UEFI Firmware Settings > Restart. You will now enter BIOS or the UEFI Settings.
- Select Boot, System Configuration, or Security option. This will depend upon your BIOS settings. Then select the BIOS tab.
- Select the Secure Boot option. If you cannot find the Secure Boot option, click on CSM Support and disable the option.
Then go to the extreme bottom, and you will find the Secure Boot option.
- To enable the option, press the Enter key.
- If you find the option greyed out, then set the Administrator or Supervisor password.
- Go to the Security tab and enter the Administrator password. Make sure to keep a note of it so that you do not forget.
- You will need this administrator password whenever you boot into BIOS.
- Now you will be able to enable Secure Boot. Press the F10 button on your keyboard and press Enter. This will save the changes and help to exit the window.
- Boot into Windows 11 and press the Windows key. Enter System and select System Information from the options.
- From the System Summary tab, search for Secure Boot State. If you see it is ‘on,’ you have successfully enabled the Secure Boot.
How To Disable Secure Boot?
To disable secure Boot, enter BIOS and go to the Security tab, Boot tab, or authentication tab.
If the Secure Boot is enabled, set it to Disabled.
Go to the Save and exit tab and save Changes. Select the Yes button. After this, restart your PC.
After you disable the Secure Boot and install any software or hardware, you may revert the PC to its default settings for reactivating Secure Boot.
Frequently Asked Questions [FAQs]
- Is secure Boot needed for Windows 11?
Secure Boot is an essential security feature that protects your system from malware attacks.
This way, you can allow only signed software to run in your system, and it has not been tampered with.
- What happens if Secure Boot is off?
If you keep the Secure Boot off, you leave your system vulnerable to malware threats. These can leave your Windows inaccessible.
- Is Secure Boot the same as TPM?
TPM or Trusted Platform module is a physical component installed on the motherboard, whereas Secure Boot is built into UEFI firmware.
Always be careful while you handle your BIOS. If the settings are not correctly modified, your PC may not start properly. So, follow the above steps with care.
For any further queries, ask us in the comments section provided below.