Skip to main content

Secure Boot

Definition

A UEFI trust process that verifies boot components before execution.

Detailed explanation

Secure Boot is a UEFI verification process that permits only trusted boot components according to platform keys and policy. It establishes a chain of trust before Windows kernel protections begin. Secure Boot does not encrypt storage and is separate from driver-package compatibility after startup. The Platform Key and key-exchange databases establish who may authorize boot code, while a revocation database blocks known-untrusted images. Windows can report Secure Boot state to measured-boot and attestation services. This verification occurs before ordinary antivirus or user-mode security software starts.

Where you are likely to see it

This term usually appears in Device Manager, Windows recovery tools, Event Viewer, or the installation details for a device package. The definition above gives the short meaning; the detailed explanation describes the term's role in the operating system and hardware stack.

Device status, hardware IDs, and event text identify which Windows subsystem produced a label. This glossary is informational and does not provide repair, installation, or technical-support services.

Explore connected concepts and nearby entries in the Windows hardware vocabulary.

Browse windows device-software concepts