That's exactly what I did! Installed windows 10 with UEFI and secure boot enabled, installation media on a USB drive with UEFI GPT with Secure Boot Support. But still no 2023 certificates on this computer. Any clues? Thanks
Use this tools scripts https://github.com/cjee21/Check-UEFISecureBootVariables Or this https://mega.nz/file/9MVjGLRK#NxCNK-QP4V1aJuDT6Td3u0cfj4AioVogl6CK2F2UF8Q
Anyway, I managed to find a workaround to get the UEFI CA 2023 in the db and activated. I found a video on YouTube explaining how to do it (in fact, it was from a Microsoft page) but I couldn't complete all the steps, after running some commands I got: a) ([System.Text.Encoding]::ASCII.GetString((Get-SecureBootUEFI db).bytes) -match 'Windows UEFI CA 2023') returned TRUE b) ([System.Text.Encoding]::ASCII.GetString((Get-SecureBootUEFI dbdefault).bytes) -match 'Windows UEFI CA 2023') returned FALSE c) Get-ItemProperty -Path "HKLM:\SYSTEM\CurrentControlSet\Control\SecureBoot\Servicing" -ErrorAction SilentlyContinue WindowsUEFICA2023Capable 1 UEFICA2023Status NotStarted By chance, today I found another tutorial from Microsoft and after editing a value in the registry and restarting Windows, this is what I've got now: a) ([System.Text.Encoding]::ASCII.GetString((Get-SecureBootUEFI db).bytes) -match 'Windows UEFI CA 2023') returned TRUE b) ([System.Text.Encoding]::ASCII.GetString((Get-SecureBootUEFI dbdefault).bytes) -match 'Windows UEFI CA 2023') returned FALSE c) Get-ItemProperty -Path "HKLM:\SYSTEM\CurrentControlSet\Control\SecureBoot\Servicing" -ErrorAction SilentlyContinue WindowsUEFICA2023Capable 2 UEFICA2023Status Updated Even if I managed to find a workaround, any idea why I didn't get the CA 2023 in the first place? PS: I'm sorry I didn't see you sent me some links while I was typing this. Anyway, I'll reinstall Windows on this PC and will try the links you sent, especially Secure_Boot_Windows_UEFI_CA_2023_Updater to check it will work from scratch
@nicolast True, False, 2 and Updated is most likely the best you can hope for until (if) the manufacturer updates the bios to accommodate the new certificates (am in the same boat) be assured (according to Microsoft) that if if these keys: WindowsUEFICA2023Capable 2 UEFICA2023Status Updated returns those exact values (the most important part), your OS is booting with the 2023 CA and is secure.
I have a question @abbodi1406 when you create the iso with the option marked to insert the new certificate, this iso without modification by third-party programs, will it update the certificate of the Windows efi partition?
I mentioned @abbodi1406 to find out if upp dump by checking the update boot files option, created the iso with a new certificate, which applied the new certificate in addition to the bios, on the boot partition (efi) at boot, as I tested with your tool and it is not applying a new certificate on the efi partition, I know that this is done via Windows update, but there are third-party tools that already do this process, but I tested yours and it does not apply to the Windows efi partition.
Code: Name: fr_windows_10_enterprise_ltsc_2019_x64_dvd_5fe6b360.iso Size: 3894056960 bytes : 3713 MiB CRC32: EB413021 CRC64: 20556399FC7F107E SHA256: ac9b268c8a2c4165f17b5757e113328778abd4ca98fe0c52219ebceac626b4bf SHA1: 3253d69f61b97482737e23c2d41acf387cd5a03a BLAKE2sp: c419db8b5f1e23db16d0596deff3058fbb04d3d400ea2d74ce43ea948110a046 MD5: 7372b01ed738570d2809464b03b6eeb4 XXH64: FEF7A6C877D8DEEA SHA384: 4ff461a448fe2188d3837435538fa7c94209f5aff0ee174d425aa9d9ae92680f09442ad8783d0f303f77dc37940c3b64 SHA512: 27bcf1bd6fafe82433af17f990686b9bdfcdcc9c9a056261077449f9508490264832b9755278b617c785dd5b27f215179e6a77df228330327512f4d31188bbff SHA3-256: 7db48291f9499c1b6b08e8ff5e2297bb8cf865da6ee678d4ea1f166532f71e00 Name: fr_windows_10_enterprise_ltsc_2019_x86_dvd_eb73ef44.iso Size: 2799689728 bytes : 2669 MiB CRC32: A9ED2E0A CRC64: 65488526FA52C1E4 SHA256: d592b198e417d03870dca7d5d89bd824a9a0a912c11907b3c36a615e4e441840 SHA1: c7302ebd7778956242f979f823c6eb2c8fbd8d4c BLAKE2sp: 91590dd4c4ca765d8cc0b64ee807d074a4ba891d64b057b17a16f4be77cd6447 MD5: 29d935039834f1630b9bc243ce315f94 XXH64: C6C664C4E13874B6 SHA384: 8564d560f1b24e5d21a2af20674a63ed18633c70167dbbaf33fda16a39182d9fda45818cafb4e93fd4a55baaa6c7947b SHA512: 9238219ce55904c9ac5c419c77563acd44a93a35c7c4189d3816ee3e1bcb73ea2a8f1ca2dd8e9f50c1da655e8c60e3b4a0bd26d5cf6025f68913a68eca15af9c SHA3-256: 64965ef0175e3da80f24c8b914af44fcd842088e4400433f8a4e9b7673b5b675 Name: fr-ca_windows_10_enterprise_ltsc_2019_x64_dvd_80e7bb5a.iso Size: 3778373632 bytes : 3603 MiB CRC32: B1D31A5E CRC64: AE046CA6CA9C5CB3 SHA256: befa08c7967f5283e1f42173cbb11528277d60e461ec99058adcd6197c1f2f67 SHA1: 8995b4fab8afc4b8a21c92e3301804d73203f1ae BLAKE2sp: 6637b000c09204d12cc751d17c4044d69183a54c151a4bd900a829a2465b81b7 MD5: 8e23bde69f5e8e23b9e89e6623bbe890 XXH64: 0E2E1E404DA5537F SHA384: 598744a38b87cc129d6532df2bccdc4729c405a8c368c4fe8b2d8b94eaaf918d88e36f685a58223f80416ae0b0a61dce SHA512: f4aa990582703fdcf2f063c89b6b40c0d1d1dbfecca9f77bb5013e678b2ae51877e1d8a7d1e77833d7644b90f45f7eb7c669504ce0fa5da2b566d23711e5dd60 SHA3-256: 73cf30814bc6006f79f3828428b0810f56ff8069aac8b05ebf082fe3e89216a9 Name: fr-ca_windows_10_enterprise_ltsc_2019_x86_dvd_47e5f795.iso Size: 2725285888 bytes : 2599 MiB CRC32: 849A1175 CRC64: 9D63BB1629812D62 SHA256: 9e47d480ef708bdd15693a83c6dc4958c9c5d5c558879c75a232d743332eeae7 SHA1: 5ef037dcf38a6c42393d61d6e6926447e4d9047c BLAKE2sp: f336e2936d3337186be0da719a474ffccb86299353fd6afd03abf72c0d60331d MD5: 8a9f951460729b4bdfdc5da0fd625f22 XXH64: 0DC70F2984E32F74 SHA384: 83d742a0ec18b338d40c9deb0dfde52fb08d455b7a98874b778563b34647c6b9df360c61558d7281aa255f469201c0f6 SHA512: 42499f06ce62b4c8b7493e46f1af69837be8b96f591263e2357adfc85a26175f5b7cf1e500d61395cbaf7a844d977e0b6f4fb27456e77a84965c2818cdc9a06a SHA3-256: 7ef2257293c9500f4f4b3531dc75698880aa71b5fb4151a9c4a1ab63a34ccded This post will be updated to contain all ISOs again: https://forums.mydigitallife.net/th...b-17763-xxx-pc-rs5.77945/page-51#post-1467631
fr_windows_10_enterprise_ltsc_2019_x64_dvd_5fe6b360.iso Il semble y avoir un problème sur ce site Le serveur à l’adresse myvs.download.prss.microsoft.com a renvoyé une erreur : 403 Forbidden Que pouvez-vous faire ? Assurez-vous d’avoir saisi correctement l’adresse du site web. Le site est peut-être temporairement indisponible ou surchargé. Réessayez plus tard ;
Please use massgrave link... https://zerofs.link/f/dCh57vSg3xssnrWdKBcTdP/ And https://zerofs.link/f/gw2CD6ponn7Sy29DjwgZCL/ https://massgrave.dev/dumbversion_patches Or better use this iso https://lecrabeinfo.net/telecharger/windows-10-entreprise-2019-ltsc-x64/
What's better about that ISO? if it is genune then it is the same and probably taken from massgrave anyway.
I just used this as an example & worked. https://support.microsoft.com/en-us...-updates-a7be69c9-4634-42e1-9ca1-df06f43f360d