Enabling UEFI Secure Boot in UD2-LX 40

Prerequisites:

  • IGEL Linux 10.04.100 or newer
The version of IGEL Linux can be found in the About window.
  • BIOS BayTrail.5.04.32.0022 or newer
To check the BIOS version, open the InsydeH20 Setup Utility as described below (step 3). Press [F9] to open the System Information window. In the System Information window, check that BIOS Version corresponds to BayTrail.5.04.32.0022 or newer.

BIOS Update Information

If you do not have the required BIOS version and need to update your BIOS, please contact IGEL Service at service@igel.com. IGEL Service will provide you with all necessary information and assist you in updating your BIOS.

It is crucial to set a BIOS password to prevent users from disabling Secure Boot.

Changing the device's boot type to UEFI Boot

  1. Turn on (or restart) the IGEL device.
  2. During boot, hold the [F2] key until you see the menu shown below.
  3. Using the arrow keys, move to the option SCU and press [ENTER]. This will open the InsydeH20 Setup Utility.
  4. Using the arrow keys, move to the Boot tab. ├Łou will find Boot Type set to <Dual Boot Type>.
  5. Change Boot Type to <UEFI Boot Type>.

    Boot Type is now set to <UEFI Boot Type>.
  6. Save the changes. To do this, press [F10] and confirm "Exit Saving Changes?" with [Yes].

    The settings are now saved and the device is rebooted.

Activating the Secure Boot feature

  1. Turn on (or restart) the IGEL device.
  2. During boot, hold the [F2] key until you see the menu shown below.
  3. Using the arrow keys, navigate to the option Secure Boot Option and press [ENTER].
    The screen Administer Secure Boot will open.
  4. In the screen Administer Secure Boot, you will find "Erase all Secure Boot Settings" and "Restore Secure Boot to Factory Settings" set to <Disabled>.
  5. Change "Erase all Secure Boot Settings" and "Restore Secure Boot to Factory Settings" to <Enabled>.
    If "Enforce Secure Boot" is not grayed out as in the picture below, change that option to as well.
  6. Save the changes. To do this, press [F10] and confirm Exit Saving Changes? with [Yes].

    The changes are now saved and the device is rebooted.
  7. As a last step, verify that Secure Boot is working, see Veryfing that UEFI Secure Boot is enabled.


Last update: August 20, 2018