Users Guide

Table Of Contents
secure-boot revoke key
Revokes an installed key.
Syntax
secure-boot revoke key key-id
Parameters key-idkey number of the installed key that is compromised.
Default None
Security and
Access
Sysadmin
Command Mode EXEC
Usage
Information
Use this command to revoke an installed key that is compromised.
Example
OS10# secure-boot revoke key 5
Supported
Releases
10.5.1.0 or later
secure-boot protect startup-config
Protects the startup config file and its hash value.
Syntax
secure-boot protect startup-config
Parameters None
Default None
Security and
Access
Sysadmin, secadmin, netadmin
Command Mode EXEC
Usage
Information
This CLI is available only when you enable secure boot. If the startup configuration file is deleted or
compromised, use the protected version of the startup configuration file to restore the configuration
during a reboot.
Example
OS10# secure-boot protect startup-config
Supported
Releases
10.5.1.0 or later
secure-boot enable
Enables secure boot.
Syntax
secure-boot enable
Parameters None
Default Disabled
Security and
Access
Sysadmin
Command Mode CONFIGURATION
Usage
Information
If you enable secure boot, ensure that you manually protect the startup configuration file before you
reload the switch. The protected version of the startup configuration file is applied during the boot up
process. If a protected version of the startup configuration file is not available, the system applies the
default configuration.
The no version of this command removes the configuration.
1330 Security