Microsoft Security Advisory 2962824


hi all,

we installed windows 2012 r2 standard on dell poweredge r430.

we had problem during installation uefi , secure boot enabled.

we found advisory related our issue: https://technet.microsoft.com/library/security/2962824

this advisory says "with advisory, microsoft revoking digital signature 4 private, third-party uefi (unified extensible firmware interface) modules loaded during uefi secure boot."

if understood, in section "what update do? " of document explains that the 4 signature are:

d626157e1d6a718bc124ab8da27cbb65072ca03a7b6b257dbdcbbd60f65ef3d1 d063ec28f67eba53f1642dbf7dff33c6a32add869f6013fe162e2c32f1cbe56d 29c6eb52b43c3aa18b2cd8ed6ea8607cef3cfae1bafe1165755cf2e614844a44 90fbe70e69d633408d3e170c6832dbb2d209e0272527dfb63d49d29572a6f44c


my question first question is: find these signatures? in bios security settings or somewhere?

my second question is: advisory related kb2920189 , kb2961908; possible these updates downloaded secure boot enable?

we tried installation uefi no secure boot enabled , finished well.

thanks all

marco

hi,

1.it in uefi database.check intel sample reference:

append certificates in uefi database

https://software.intel.com/en-us/node/606797

please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information.

2.i don't find official document talking restrict update secure boot.


best regards
cartman
please remember mark replies answers if help. if have feedback technet subscriber support, contact tnmff@microsoft.com



Windows Server  >  Security



Comments

Popular posts from this blog

2008 Windows Deployment Server Properties Error

Can no longer user MS Update - Files required to use Microsoft Update are no longer registered

How do a find data in one file, search for it in another file and if not found, write a custom message to another file