User`s guide

Copyright © 2014 congatec AG IGX1m02 92/134
18.8.4 Secure Boot Mode
Species whether the Key Management submenu is available.
Default The Key Management submenu is not available.
Custom
The Key Management submenu is available.
18.8.5 Key Management
Submenu for deleting, changing and adding the key and signature databases required for Secure Boot.
Without the installed Platform Key (PK), the system is in setup mode (Secure
Boot is disabled). As soon as the PK is installed, the system
switches to user mode (Secure Boot can be enabled).
Factory Default Key Provisioning
If the system is in setup mode (no Public Key is installed), it is possible to install
the default Secure Boot key and signature databases.
Disabled
The available Secure Boot key and signature databases remain unchanged.
Enabled
If the PK, KEK, DB, DBX signature databases are not available, the default
Secure Boot key and signature databases will
be installed after rebooting
the system.
Delete All Secure Boot Variables
Puts the system in setup mode (Secure Boot is disabled). All keys and signature
databases (PK, KEK, DB, DBX) in the system are deleted.
Install All Factory Default Keys
All keys and signature databases (PK, KEK, DB, DBX) in the system are reset to the default
values. This menu option is only available when
the PK is deleted.
Save Secure Boot Keys
Saves the Secure Boot Key and Key Databases to the selected drive.