Reference Guide

Arguments
arg1 = Boot Option name
Detailed
Description
When the Secure Boot feature is enabled, the system BIOS authenticates each boot
option against the Secure Boot policy. If a boot option does not meet the policy
criteria, the system BIOS does not boot to the boot option and displays this
message. The Secure Boot policy consists of authorized and unauthorized X.509
certificates; signed boot images must chain to an authorized certificate. The policy
may also authorize hash values of individual boot images. Users can configure the
Secure Boot feature and the Secure Boot policy in System Setup > System BIOS >
Security Settings page.
Recommended
Response
Action
If the Secure Boot feature is not desired, disable it in System Setup > System BIOS >
Security Settings page. Otherwise, do the following: 1) review the Secure Boot
Policy Summary in F2 System Setup > System BIOS > Security Settings page. The
boot option must be authorized by a public key or hash value in the Authorized
Signature Database. 2) If the boot option is not authorized but it can be trusted,
enter System Setup > System BIOS > Security Settings page, set Secure Boot Policy
to Custom, and add a entry for the boot option in the Authorized Signature
Database (System Setup > System BIOS > Security Settings > Custom Policy
Settings > Authorized Signature Database > Import Database Entry).
Category Configuration
Subcategory UEFI = UEFI Event
Severity Severity 2 (Warning)
LCD Message No LCD message display defined.
Initial Default LC Log
Server
Administrator
Event ID
Not Applicable
Server
Administrator
Trap ID
Not Applicable
UEFI0074
Message The Secure Boot policy has been modified since the last time the system was
started.
Detailed
Description
The system BIOS logs this message after detecting a change in Secure Boot policy
settings. Such a change may result from user configuration or a system BIOS
update. Changes to the following settings trigger this message: 1) Secure Boot
(Enable/Disable) 2) Secure Boot Policy (Standard/Custom) 3) Platform Key 4) Key
Exchange Keys 5) Authorized Signature Database (db) 6) Forbidden Signature
Database (dbx).
2054