Windows 11: Secure Boot Update Failed - Troubleshooting Guide
Secure Boot is a critical security feature in Windows 11 that helps prevent unauthorized firmware, bootloaders, or malicious software from running at startup. However, sometimes, Secure Boot update may fail, leading to the error "Secure Boot update failed, update Secure Boot variable error, Secure Boot not enabled" in the Windows Event Viewer. This article will provide a comprehensive troubleshooting guide to help you resolve this issue.
What is Secure Boot?
Secure Boot is a security feature in Windows 11 that prevents unauthorized firmware, bootloaders, or malicious software from running at startup. It is designed to prevent malware from taking control of the system before the operating system starts. Secure Boot uses a digital signature to verify that the firmware, bootloader, and operating system are trusted and authorized.
Why Does Secure Boot Update Fail?
Secure Boot update may fail due to several reasons, including:
- Corrupted system files
- Outdated BIOS firmware
- Incorrect Secure Boot settings
- Hardware compatibility issues
How to Troubleshoot Secure Boot Update Failure?
Step 1: Check System Files
Corrupted system files can cause Secure Boot update failure. To check and repair system files, follow these steps:
- Press the Windows key + X and select "Command Prompt (Admin)" or "PowerShell (Admin)"
- Type
sfc /scannowand press Enter - Wait for the scan to complete. If any issues are found, follow the on-screen instructions to repair them.
Step 2: Update BIOS Firmware
Outdated BIOS firmware can also cause Secure Boot update failure. To update BIOS firmware, follow these steps:
- Visit the manufacturer's website and download the latest BIOS firmware for your system
- Extract the downloaded file and copy it to a USB drive
- Restart your system and press the key to enter BIOS setup (usually F2, F10, or DEL)
- Navigate to the "Update" or "Firmware" section and select the USB drive as the update source
- Follow the on-screen instructions to complete the update
Step 3: Check Secure Boot Settings
Incorrect Secure Boot settings can also cause Secure Boot update failure. To check Secure Boot settings, follow these steps:
- Restart your system and press the key to enter BIOS setup (usually F2, F10, or DEL)
- Navigate to the "Security" or "Boot" section and ensure that Secure Boot is enabled
- If Secure Boot is disabled, enable it and follow the on-screen instructions to complete the setup
Step 4: Check Hardware Compatibility
Hardware compatibility issues can also cause Secure Boot update failure. To check hardware compatibility, follow these steps:
- Visit the manufacturer's website and check if your hardware is compatible with Secure Boot
- If your hardware is not compatible, consider upgrading or replacing it
References
- Microsoft. (2021). Secure Boot. https://docs.microsoft.com/en-us/windows/security/information-protection/secure-boot-policy
- Microsoft. (2021). Troubleshoot Secure Boot issues in Windows. https://support.microsoft.com/en-us/topic/troubleshoot-secure-boot-issues-in-windows-2a8a4e12-a76c-225d-26b7-4a958d8a58c9
- How-To Geek. (2021). How to Fix a Failed Secure Boot Update on Windows 10. https://www.howtogeek.com/428380/how-to-fix-a-failed-secure-boot-update-on-windows-10/