Updating Microsoft Secure Boot keys

Microsoft, in collaboration with our ecosystem partners, is preparing to roll out replacement certificates that’ll set new Unified Extensible Firmware Interface (UEFI) Certificate Authorities (CAs) trust anchors in Secure Boot for the future. Look out for Secure Boot database updates rolling out in phases to add trust for the new database (DB) and Key Exchange Key (KEK) certificates. This new DB update is available as an optional servicing update for all Secure Boot enabled devices from February 13, 2024.

↫ SochiOgbuanya

This update will replace the Windows 8-era certificates, set to expire in 2026, with new ones.

9 Comments

  1. 2024-02-15 8:26 am
    • 2024-02-15 6:13 pm
      • 2024-02-15 7:27 pm
        • 2024-02-15 7:35 pm
      • 2024-02-15 7:44 pm
    • 2024-02-15 7:28 pm
      • 2024-02-15 7:40 pm
        • 2024-02-15 7:50 pm
          • 2024-02-15 7:52 pm