Secure Boot State not enabled despite BIOS stating otherwise

logan nicholson 0 Reputation points
2025-08-08T23:07:33.7233333+00:00

Hello, I cant enable a secure boot at all despite all attempt in the BIOS and other setting to enable a secure boot.
What is going wrong and how can I fix it
BIOS N SHIT

Windows for home | Windows 10 | Security and privacy
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. Kimberly Olaño 4,795 Reputation points Independent Advisor
    2025-08-09T00:11:50.59+00:00

    Hi logan, this is Kimberly. I'm glad to assist you today.

    First, Confirm What the System Sees

    In Windows:

    Press Windows + R, type msinfo32, and hit Enter.

    Look for:

    BIOS Mode: Should be UEFI.

    Secure Boot State: Should be On (but in your case it says Off).

    If BIOS Mode is Legacy or CSM, Secure Boot cannot work, even if BIOS says it's enabled.

    If you need more from me apart from the solutions I provided, please let me know.

    Best regards,

    Kimberly


  2. Kimberly Olaño 4,795 Reputation points Independent Advisor
    2025-08-09T00:32:01.6433333+00:00

    Hi Duke,

    The screenshot shows Secure Boot is actually OFF despite BIOS settings saying otherwise (like “Secure Boot Mode” set to “Standard” but Secure Boot: Disabled).

    3 reasons along with its fixes why Secure Boot is Off despite the BIOS showing options:

    1.Secure Boot is disabled because of the BIOS mode or CSM settings:

    Even if Secure Boot Mode is set to Standard, Secure Boot can remain off if CSM (Compatibility Support Module) is enabled.

    CSM allows legacy boot, which disables Secure Boot.

    Fix:

    Go into BIOS and disable CSM completely — often under Boot or Advanced settings. After disabling CSM, Secure Boot can be enabled.

    2.Secure Boot keys are missing or cleared:

    If the keys are cleared or not enrolled, Secure Boot stays off.

    Fix:

    In BIOS, look for an option to Load Default Secure Boot keys or Install Factory Keys.

    3.Boot device is not UEFI-compatible:

    Secure Boot requires UEFI boot devices.

    If your boot drive is set up for Legacy boot, Secure Boot cannot be enabled.

    Fix:

    Make sure your OS drive is using GPT partition style and your system boots in UEFI mode.

    Best regards,

    Kimberly

    0 comments No comments

  3. BryceSor 3,890 Reputation points Volunteer Moderator
    2025-08-09T00:57:25.2366667+00:00

    Hi logan Nicholson ,

    I used this guy method,
    https://www.bing.com/videos/riverview/relatedvideo?q=to+use+surcure+boot+in+a+aorus+motherboard&mid=171ED53E56162D423E12171ED53E56162D423E12&FORM=VIRE

    I would also update the bios to F11a as Gigabyte recommend, just make sure I have the right motherboard version.
    https://www.gigabyte.com/Motherboard/Z390-M-GAMING-rev-10/support#dl

    Hope the weather OK where you live as NZ is cold today. 😊

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.