I can't disable secure boot.

This is actually rediculous and i've seen so many people become infuriated over this same issue that SHOULDN'T be an issue at all. I've been trying for FOUR hours to install ubuntu and get rid of shi**y windows 8.1. That's right FOUR hours. Not only have I had to redo the USB write to make it bootable multiple times i've had to sit through countless slow reboots because 8.1 is just a piece of malware that i've had to deal with for about a year due to the fact that I have no choice in what operating system I use on my laptop. Oh, and before someone says try burning it to a CD heres something funny, My Toshiba Satellite C55T-B5109 came with a fake optical drive so.... I've changed boot order i've switched to CSM boot, I only have two boot options and when I switched it booted a black screen with white text talking about how I need to insert a usb or cd(sorry i cant) and try again which I did, so i just switched back to the original boot option. I've already disabled fast boot and I updated my BIOS to v1.4 (the latest version) but that of course didnt do anything because toshiba is probably getting paid to make it almost (if not) impossible to use anything but the virus that is windows 8.1. Nobody speak a word if you dont know how to directly solve the problem. I don't want to see "Thats happening to me too! plz help" or "that sucks" be constructive or dont bother. The only solution or "you should try" should directly correlate to secure boot. Not the load order. The boot options. This needs to be solved immediately because the fact that the choice of a different OS should be available to everyone its my computer. I bought it.

That would be great but when I try CSM Boot it just says insert a valid USB or something of that nature. To which I keep unplugging and re-plugging the USB but it still doesnt get detected as a bootable drive. So I practically HAVE to use UEFI boot and no matter what I do it kicks windows back into my face. I can try selecting the boot from USB option but that doesn't work. I but USB at the top of my load order and my HDD at the bottom, but that doesn't work. I also opened BIOS at startup and clicked the USB but all it does is kick me into windows once again. I disabled fast boot, I finally forced secure boot off, but I still can't install Ubuntu. I've re-written the USB multiple times and I would try to burn it to a CD but I don't have an optical drive. I opened msconfig and had a look at the boot tab but it only lists the C: drive with windows 8 as the default OS. I've looked up everything and I have tried it. It seriously should not be this hard to install the OS of your choice because Windows decides that you have to use their OS. I must be doing something wrong so please tell me i'm out of ideas.

Similar Messages

  • [SOLVED] Disable Secure Boot on Asus Zenbook UX32A

    Hi all, I hope I have posted in the right section, please move it otherwise.
    I'm trying to install Arch on an Asus Zenbook, but I cannot boot installation media (an USB stick, in this case), as it requires the EFI binary to be signed, and only simple way out is to disable Secure Boot.
    Unfortunately I'm not able to disable it from UEFI interface, as it is grayed out. Solutions I've found searching the Web suggested to set a password to BIOS, but even this way I wasn't able to enable it.
    Notebook came with Windows 8 built in, and I upgraded BIOS to 214 version.
    Thank you.
    Last edited by juma93 (2013-03-30 01:29:05)

    Details of the user interface vary greatly from one computer to another. I've got some notes on disabling Secure Boot on an ASUS P8H77-I motherboard here, but they may not apply to your notebook, or there may be an extra trick. Along the latter lines, look for "fast boot" and "CSM" options and try fiddling with them to see if the Secure Boot option becomes alterable.

  • Can't activate secure boot after upgrading from Win 7 to Win 8 on a Spectre XT

    Hi everybody,
    my first post here, so please forgive me if the topic has already been discussed
    I did search before posting anyway, but I couldn't found anything addressing this specific point.
    My (small, I must admit) problem is as follows:
    I recently purchased a Spectre XT 13-2005tu (i7 processor, 4Gb RAM, 256Gb SSD) with Windows 7 pre-installed.
    After installing my favourite applications and using it for a few weeks without any trouble, I thought to take the opportunity of the $14.99 upgrade to Win 8, so I downloaded Windows 8 Pro and installed it (as an upgrade, rather than a fresh installation, because I didn't want to loose the customizations I already made).
    I also installed all the updates available on HP website (sp59158 for updated BIOS, sp58404 for UEFI support, ecc.)
    The whole upgrade worked nicely, and the PC is now up and running with Win 8.
    Now, I'm trying to use at best all the possibilities Win 8 has to offer, and among them, the UEFI secure boot.
    I found the "legacy support" option in the BIOS settings, which as I understand must be disabled to activate the UEFI secure boot, but if I do that the PC tells that there's no operating system on the disk and doesn't boot anymore.
    Which was a bit scary by the way, but eventually I could re-enable the legacy support in the BIOS and have the PC working again, but of course with no secure boot.
    I suppose there must be some other re-configuration that should be done before changing the BIOS parameter, but I couldn't find any instruction for that anywhere on the web.
    On the other hand, it would be indeed weird if the secure boot could not be configured AFTER the OS upgrade, and a new fresh installation would be necessary.
    I'd rather part with the secure boot than re-install everything, but that would be a shame... :-(
    I hope someone can explain what should be done, many thanks in advance!

    Thanks for your feedback, but I don't think your issue is the same as the one I previously explained.
    The UEFI/secure boot setting is a basic configuration affecting the way the PC boots, regardless of whether it is connected to a network or not.
    By the way, in the meantime I've seen in a shop exactly the same PC model which I'm using, now sold with Win 8 pre-installed, and it was working with the UEFI enabled (= BIOS "legacy support" disabled).
    Therefore, the configuration I'm interested in has to be feasible, one way or another...!

  • Disable secure boot on TAB S8

    Hey!
    How can I disable on my S8-50F?
    In /sys/fimware/efi/vars/SecureBoot[...]/raw_var it says its 0, but i can't boot custom kernel.
    Anyone knows?
    Thx,
    balika011

    This is wifi only.

  • Disabled Secure BOOT option in G580 Bios options

    How do I disable this setting in the Bios?  Do I have to turn in off in Windows 8 first?  
    I have the option but I can not arrow to it and turn it off or on.  Only way to disable it is by brute force and turn off UEFI boot option and set it as Legacy.
    I am obviously missing something.
    Solved!
    Go to Solution.

    You don't have to disable it ........... Just when you are shutting down the device Press (SHIFT + SHUTDOWN from the power menu) .........
    This will do it 

  • Can i disable security warning about not valid cerificate?

    Message looks like this:
    "The certificate is not valid and cannot be used verify identity of this website.
    This application will be blocked in a future Java security update because the JAR file manifest does not contain the Permissions attribute. Please contact the Publisher for more information."

    Did this also happen with older versions of Java or is this the first time you visit the website?
    You should only make changes to the security setting in Java if you really trust this website and only for testing as this makes you vulnerable to security exploits.
    You can try to clear the Java cache.
    *http://www.java.com/en/download/help/5000020300.xml - How do I clear the Java cache?
    *Control Panel > Java > General tab > "Temporary Internet Files" > Settings > Delete Files

  • Can't disable Bigfoot Boot Agent on GT60

    Whenever I hit shift+f10 during POST to alter the BBA settings, they will stay if I restart the system, but will automatically revert to the default 3 second message if I power off the machine. This is really annoying!
    A review of the GT70 on pcworld states the same issue.

    what's your current bios version?

  • T450s downgrade Win 8.1 Pro to Win 7 Pro Secure Boot Process?

    Hi all, New owner of a T450S with 8.1 Pro. I have a Windows 7 Pro OEM disc (no serial number) that I can put on a USB thumb drive. Prior to owning a secure boot machine I would just format the hard and install Win 7. With secure boot and the downgrade I'm not sure how this works. 1. Is the serial number that I have backwards compatable? Can I just format, install and use the 8.1 Pro serial number on my Lenovo? 2. I believe I will have to disable secure boot but I'm not sure. Any help or link to a tutorial would be appreciated. ThanksChrissy  

    @ the OP,
    The article ColonelOneill linked says "You’ll need to activate by phone. Call up the phone number displayed in the activation window and explain that you’re exercising your Windows 8 Pro downgrade rights. Have your Windows 8 Pro key ready; you’ll need it to prove your PC has downgrade rights."
    Here's a link to Microsoft's description of how to activate a downgrade:  Understanding downgrade rights
    Z.

  • Windows 8.1 Ent eval enabled Secure Boot I think

    I want to get my laptop back to its original format.
    Currently dual booting Windows7/8.1
    During the installation of Windows 8.1 Enterprise evaluation it paused to say it was going to enable secure boot.  I did'nt think much of it I thought I could change it back from the bios.  Did it flash my firmware?  I checked the system status
    with msinfo32.exe; was legacy mode and with powershell; secure boot not supported.  I don't have any options to disable secure boot in the bios nor from within Windows -"I know how to disable it in windows 8.1".  I can't boot a foreign
    operating system, but I can boot a Microsoft OS which sounds like secure boot to me.  I want to get it back to running Windows 7 dual booting with Linux.  I use both at work and need both.  I made the mistake by loading the Eval on my primary
    laptop.  I read I need to revert back to Windows 7 completely, formating and re-installing the OS.  Will this clear my secure boot simulation issue?  I have not changed the partitions or removed any O/S's.   What's the best way
    to proceed?

    Hi,
    I want to explain that, Secure Boot is indepent with system, you can disable it in UEFI interface.
    To disable Secure Boot, you can follow the steps below:
    1.Before disabling Secure Boot, consider whether it is necessary. From time to time, your manufacturer may update the list of trusted hardware, drivers, and operating systems for your PC. To check for updates, go to Windows Update, or check your manufacturer's
    website.
    2.Open the PC BIOS menu. You can often access this menu by pressing a key during the bootup sequence, such as F1, F2, F12, or Esc.
    Or, from Windows, hold the Shift key while selecting Restart. Go to Troubleshoot > Advanced Options: UEFI Firmware Settings.
    3.Find the Secure Boot setting, and if possible, set it to Disabled. This option is usually in either the Security tab, the Boot tab, or the Authentication tab.
    4.Save changes and exit. The PC reboots.
    I found an aticle that teach how to install dual-boot Windows 7 and Ubuntu 12.04 on a PC with UEFI hardware:
    http://www.linuxbsdos.com/2012/10/11/dual-boot-windows-7-and-ubuntu-12-04-on-a-pc-with-uefi-hardware/
    Hope this helps.
    Roger Lu
    TechNet Community Support

  • Dual booting S540 and linux with Secure Boot?

    At some point I intend to install archlinux with dual boot on my Thinkpad S540 which currently runs Windows 8.1.
    All the current advice about dual boot on UEFI machines seems to indicate that the way to go is to disable Secure Boot (and Fastboot) for Windows, and then do the linux install choosing a linux bootloader to allow booting either O/S. I believe I know the steps needed to do that.
    Does anyone have any experience with dual booting Windows 8.1 and ArchLinux on the S540?  I would like to retain Secure Boot for Windows, and in the ideal world have Secure Boot running for ArchLinux also. However Secure Boot is fraught with problems for Linux. There are a few distributions such as Ubuntu which will in principle support Secure Boot but I only use ArchLinux and want to install that particular flavour of linux on my machine. It is of course possible to keep switching Secure Boot on and off in the BIOS before booting either of the two installed operating systems but it would be neater and cleaner to have it all with Secure Boot on, or all with it off.
    This is all very new stuff so there may well be a lot of problems, but it is worth exploring. I use rEFInd as my bootloader on another UEFI desktop computer to boot ArchLinux so I am familiar with that bootloader, but dual boot is another thing, and Secure Boot with the fast moving developments in that area is something that until now very few people have tinkered with.
    Any replies and guidance/suggestions appreciated.

    I'm guessing /boot can run from ntfs, however probably not as efficiently as if it were running on ext3/4. Mine runs on Ext4.
    To add confusion, you only create one Extended partition, all partitions you create within the Extended partition are called Logical partitions. You should be able to create enough Logical partitions for your needs.
    Primary/Extended partitions are normally sda1-4 and Logical partitions will usually start from sda5 on modern Sata HDD systems.
    For /boot I would create a small 100mb Ext4 Logical partition. This partition cannot be inside LVM nor encrypted when using Grub1.  I'm not familiar with Grub2.

  • Upcoming issues for secure boot and arch installs

    I came across this rather worrying article indicating that when Microsoft starts approving hardware for Window 10 machines they may not allow secure boot to be turned off, and thereby make it very difficult for users to install arch on such a machine unless it can be booted using secure boot:
    http://arstechnica.com/information-tech … a-reality/
    I suppose at some point there will need to be a method of getting the appropriate certificates for arch to allow booting on machines using secure boot.

    mcloaked wrote:
    mychris wrote:
    I've heard the systemd guys are working on integrating secure boot with systemd and gummiboot. So you might be able to sign everything yourself and secureboot your GNU/Linux/Systemd machine.
    But currently I don't know anything about it and don't care about it. Like trilby said, if I'm not able to use a specific hardware I will not use it.
    Sure I won't buy hardware that I can't install Arch on - but what is a potential problem is if OEMs are forced into only selling locked hardware if they wish to sell it with Windows on it in the future - that would give MS a monopoly position - and for laptops it is not so easy to find hardware that is free of MS apart from a limited range of laptops that have Ubuntu installed when supplied (and of course IOS and chromeos based machines). For desktops it is not too difficult to buy components or barebones systems that you can customise and install whatever you like on - but laptops don't generally fall into that option range.  I do have to keep Windows for some tasks that it is close to impossible to do without Windows (like satnav updates for example) though it principle a VM could be used with Windows on it. It is a shame that for this kind of task there isn't a linux alternative that avoids Windows altogether! It would be nice to find barebones laptops that you can install any OS of choice on with none on the machine at the time of purchase.
    I know this argument was discussed at length before Secure Boot appeared in the machines that are on the market now - and at the time I thought that the basic principle of not having one O/S manufacturer monopolising the market and excluding other O/Ses had been established and expected to continue along this path - but the news item indicates that a significant departure from that policy may now take place over the next year or two. Giving users the option to disable Secure Boot has no impact on the security of the Windows O/S on a particular machine unless the user actively disables it but that should remain the user's choice. The only reason to lock down the BIOS in this way is to attempt to close off competition to Windows. In a true free market there should be hardware that is not so locked - or at least have as much choice of hardware that is not incumbent on control from MS. There are worries that the BIOS is vulnerable to firmware hacking but that could in principle happen even if the Secure Boot option is designed to have no user control to turn it off.  Maybe devices that will re-flash the BIOS with one that does allow Secure Boot will be developed - I seem to remember that some machines are "operated on" during delivery to customers in that kind of way to install firmware components that are not in place at manufacture - so that kind of technology already exists.
    It will no doubt be interesting to see how this plays out over the next couple of years.
    Edit:  I guess if it comes to the crunch that people will start to play with the information such as at https://wiki.archlinux.org/index.php/Un … ecure_Boot
    I've tried using VB as a PXE client for Arch, and VB keeps blowing up.  It's better if you just run it straight.

  • MJG's signed Shim for UEFI Secure Boot now available

    There have been a number of posts about EFI and Secure Boot recently, so I thought some people might be interested in this:
    http://mjg59.dreamwidth.org/20303.html
    That's Matthew Garrett's announcement of a signed binary version of his Shim boot loader. Basically, this program will boot on a computer with Secure Boot active in its default mode (with Microsoft's keys in the firmware) and then launch another boot loader (called grubx64.efi, although it could be something other than GRUB in that filename) that you sign with your keys. The end result is something that's more secure than disabling Secure Boot entirely and easier than installing your own Secure Boot keys. I haven't yet tried this version of the binary, so I can't provide help beyond pointing you to MJG's own blog, but I thought some people might want to know about it.
    FWIW, although you could sign and launch my rEFInd boot manager with this version of Shim, the current version (0.4.7) won't be very useful when signed in this way, since it doesn't yet "talk" to Shim. I'm working on changing that, so that rEFInd will launch binaries signed in a way that Shim supports.

    kristof wrote:A signed bootloader is nice, but unless the Arch developers start distributing a version of the kernel that's also signed with a MOK, secure boot isn't being fully utilized.
    Largely true, but:
    Secure Boot is here, and seems likely to stay. Given this fact, all Linux distributions (including Arch) need a way to cope with it. There are basically two choices: Provide instructions on how to deal with it (difficult because of system-to-system differences) or provide signed binaries (a boot loader at a minimum, or preferably a boot loader and kernel).
    It's possible to "provide" a signed binary by generating the key locally and signing it locally. This could be done by scripts in the installation process, for example. Of course, that still leaves a need to get the installer booted on a Secure Boot system, but that could be handled with the Linux Foundation's pre-bootloader.
    To be truly effective, Secure Boot really requires support all the way up the software chain. Signing a kernel does no good if the kernel can load unsigned modules, for instance. Fedora's taking steps to provide such security, but Ubuntu seems to be going with a more relaxed approach. In truth, Linux isn't as bothered by malware as is Linux, so it's unclear that going with a Fedora-esque approach is really helpful; but OTOH, it's conceivable that malware authors will start using Linux as a vector to install boot-time malware if Windows becomes sufficiently locked down, so maybe some paranoia is in order.
    At the moment and as a practical matter, technical Linux users (including most Arch users) will find it quicker and easier to disable Secure Boot than to use shim. As shim and various support tools (signing utilities, boot managers, etc.) mature, though, this may not be the case. It may also be desirable or even necessary to leave Secure Boot enabled, in which case adopting shim now may make sense. Likewise if you want to learn about it now so that you can use it in the future.

  • Secure boot / win 8 / linux

    Could someone please inform me if it is possible to disable secure boot (to install other OSes) on the HP laptops being sold with win 8.
    Many thanks,
    Graham.

    Yeah, this is a problem:
    http://www.zdnet.com/linux-foundation-uefi-secure-boot-key-for-windows-8-pcs-delays-explained-700000...
    Since I don't have an HP with UEFI and Windows 8 I can't try this out for myself but as I understand it right now the only way to dual boot Windows 8 and Linux on a machine with UEFI is to disable secure boot. I suspect HP laptop BIOS may not have that option. Right now it appears the Linux world is waiting for Microsoft to issue some kind of a key to allow dual booting.
    http://www.zdnet.com/microsoft-explains-windows-8-boot-to-quell-linux-fears-3040094017/

  • MSI Z87 G45 + MSI R9 280X + Windows 8.1 secure boot difficulties

    After updating to Windows 8.1 Pro I had the "Secure Boot isn't configured properly" watermark as many others. I determined my disk is GPT partitioned, I enabled UEFI on the GPU by moving the physical switch from the 2 position to the 1 position, and enabled Windows 8 Feature + Secure Boot with standard settings in the G45 bios (ver 1.5). After doing save and reboot I'm presented with a blank screen with my monitor showing a "DVI no input" message. I reset the CMOS to allow me to boot again, but after a couple more tries with the secure boot settings such as enabling/disabling Fast Boot I have not been able to get it to work.
    System:
    MSI Z87 G45
    8GB DDR3 1600mhz Crucial ram
    I5-4670k
    MSI R9 280X
    Samsung 840 SSD 250gb
    Asus cd/dvd drive

    I want to know the same thing. I bought a MSI Z87-G45 Gaming motherboard this month and I can't activate Secure Boot on it because it's still in Setup Mode. I have no idea how to put the motherboard into User Mode and Google doesn't help me much further either. How to activate a key? I have a I5-5670K and GTX 770 by the way.

  • How to re-enable secure boot ?

    Hi All,
    On my X1 Carbon, I had to move from Win 8.1 pro to 8.1 Ent. I did a fresh install from scratch to only install what I need.
    During my setup, I had to disable Secure boot, to boot on a USB Key, install 8.1 Enterprise. Now that everything is working, I would like to re-enable the secure boot option.
    If I don't it directly in the BIOS, the laptop doesn't book any more.
    ANy idea how to do it ? Do I have to import key from my 8.1 Ent to the Bios or something like this ?
    Thank you
    Christopher
    Solved!
    Go to Solution.

    If you want to install Windows 8.1 in UEFI mode, and thus be able to Secure Boot it, you must set your machine to Secure Boot off, while installing, and in the Startup section of the BIOS, set UEFI/Legacy Boot to UEFI only.
    NB, for a USB device to be able to install a UEFI version, it must be formatted to Fat32. I have no clue why this is required, but it is. I have installed Vista / 7 / 8 in EFI/UEFI mode from a basic Fat32 drive for many years if required.
    I have seen this go wrong on a couple of machines, mainly because the HD is initialized as a MBR drive, and the generic MS Windows 8.1 ISO will not give you an option to initialize it as a GPT or a MBR drive, which the Recovery Media from Lenovo for Windows 8 actually does.
    You can then either use a Windows bootable media to enter Repair/Recovery mode, and formatting your HD through the DISKPART utility or what is simpler, boot up a liveCD image of gParted and clear your drive completely by initializing the drive as GPT, exit the utility and then installing Windows 8.1, which will, due to the UEFI only selection in the Startup procedure, boot up your Windows 8.1 installation in UEFI mode and once finished, you will be able to turn Secure Boot back on.
    Hope this helps!
    Cheers!
    ThinkPad W540 (20BG) - i7-4800MQ/24GB // ThinkPad T440s (20AQ) - i7-4600U/12GB
    ThinkPad T440p (20AW) - i7-4800MQ/16GB // ThinkPad Helix (3698-6EU) - i5-3337U/4GB
    ThinkPad W520 (4282-W4Q) - i7-2720QM/32GB // ThinkPad T400 (2767-W1C) - P9500/8GB
    ThinkPad T61 (7665-CTO) - T7700/4GB // ThinkPad T60p (8741-C2G) - T7400/4GB

Maybe you are looking for