0

How To Disable Secure Boot on an ASUS Motherboard

Posted by Jessie Richardson on July 7, 2019
How to Disable Secure Boot ASUS

By default, many ASUS motherboards that sport UEFI BIOS have the Secure Boot mode enabled. However, disabling this mode can help you install Windows more easily or set up dual boot on your computer.

On many models, there is no way to directly disable the Secure Boot mode. Because of that, we’ll need to clear the keys that enable it from BIOS. Don’t worry, you can always reverse this process and enable Secure Boot without any problems. You also won’t void the warranty by disabling or enabling Secure Boot.

Before You Start

Before you disable Secure Boot mode on your computer with an ASUS motherboard, you should enable GPT partitions. For example, if you want to install a copy of Windows on your computer, you won’t be able to do it if the system is not in UEFI mode. The hard drive partition style needs to support this mode or be compatible with it.

When you enable UEFI mode, you’ll also enable GPT partitioning on your hard drive. This will allow you to create partitions bigger than 4GB and you’ll be able to have as many of them as you want. There are two ways to go about it – Command Prompt or a third-party app.

Command Prompt

If you opt to do this via Command Prompt, follow these steps.

  1. Insert the Windows installation disk or plug in a USB stick and boot the computer in UEFI mode.
  2. When the setup opens, press the Shift and F10 keys simultaneously. This will bring up the Command Prompt console.
  3. Use the diskpart command to access the disk partition tool. Allow it to make changes to your computer.
  4. Use the listdisk command to identify and list the disk format.
  5. Pick the drive you’d like to format and to turn into GPT. Do it with following commands: Select disk <type the disk number here>, clean (this command wipes the disk), convert gpt (this one converts it to GPT).

Third-Party App

Jf you’re not willing to mess around with Command Prompt, you could use Partition Master by EaseUS to turn your hard drive into GPT. The app can also help delete, remove, wipe, merge, and create hard disk partitions.

EaseUS Partition Master

The app’s available in three versions – Partition Master Pro (for a single computer), Partition Master Server (for servers), and Partition Master Unlimited (for multiple computers and servers). All three options are available with free trials. You can find them at EaseUS official site.

Disabling Secure Boot

With all the preparations out of the way, it is time to disable the Secure Boot on your ASUS. Just follow these steps.

  1. Plug a USB drive into your computer.
  2. Open the Start menu and opt to reboot your computer.
  3. Once the computer starts booting, press the DEL button on your keyboard to enter the BIOS. Depending on the model, you might need to press a different button.
  4. Open the Advanced Mode. Most commonly, pressing the F7 key will do it. However, there are models with different keyboard shortcuts.
  5. Open the Boot section.
  6. Next, open the Secure Boot sub-menu.
  7. In the OS Type section, select the Windows UEFI mode option from the drop-down menu.
    Disable Secure Boot Choose OS
  8. Open the Key Management sub-menu.
  9. Pick the Save Secure Boot Keys option.
  10. Hit Enter.
  11. When BIOS prompts you to pick a file system, you should opt for the recently plugged USB drive.
  12. BIOS will then store DBX, DB, KEK, and PK key files onto the USB drive.
  13. Next, you should delete the Platform Key. This will disable Secure Boot. Be careful not to delete any other keys.
  14. To save your settings and exit BIOS, press the F10 key on your keyboard. This will restart your computer. Wait for it to boot outside of the Secure Boot mode.

Enabling Secure Boot

If you change your mind and wish to enable Secure Boot once more, here’s how to do it.

  1. Plug a USB drive into the PC.
  2. Launch the Start menu and select Restart from the Power menu.
  3. When your computer starts booting, press DEL on the Keyboard (or another assigned key) to enter BIOS.
  4. Press F7 (or another designated key) to enter the Advanced Mode section of the BIOS menu.
  5. Open the Boot section.
  6. After that, open the Secure Boot section.
  7. Navigate to the OS Type option and pick Windows UEFI mode from the drop-down menu.
  8. Next, head over to Key Management.
  9. Scroll down to the Load Default PK option and hit Enter.
  10. If you opt for Yes, you will load the default set of keys. When you’re done, save your settings and exit. Wait for the computer to reboot. If you choose No, you’ll be able to load the keys you backed up.
  11. Assuming that you’ve picked No, you should now pick the USB drive with the keys from the list named Select a File System.
  12. Next, select the PK key and click OK.
  13. In the Select Key file type, opt for UEFI Secure Variable and hit OK.
  14. When prompted Update ‘PK’ from selected file ‘PK’, select Yes.
  15. Save your settings and exit. Wait for the computer to boot in the Secure Boot mode.

Take Control of Your Computer

Disabling the Secure Boot mode allows you to do so much more with your computer. The best thing about it is that it’s completely reversible and doesn’t void the warranty.

Have you tried disabling Secure Boot? Did you have any problems along the way? Let us know in the comments below.

Leave a Reply

Your email address will not be published. Required fields are marked *


Disclaimer: Some pages on this site may include an affiliate link. This does not effect our editorial in any way.