How to Disable and Enable UEFI Secure Boot in Windows 10

Featured Image Windows 10 Uefi Secure Boot Mode Disabled And Enabled

Disabling UEFI secure boot mode in Windows 10 may be necessary to enable your graphics card or to boot the PC with an unrecognizable USB drive or CD. For example, while booting it with a Linux distribution, your PC manufacturer may discourage you from using unsecure mode for booting.

If you perform an advanced restart using a USB device in secure mode, you may encounter a “security boot fail” error. This is perfectly normal, and there is no need to panic. Basically, Windows 10 is designed to boot using only firmware that is trusted by the manufacturer.

In this guide you will learn how to safely disable UEFI secure boot and also reenable it so that you can go back to the secure mode whenever you want. Both procedures are fast, easy and trouble-free. Just follow the steps in this guide.

Disable and Enable UEFI Secure Boot in Windows 10

First, go to “Advanced Startup” from the Start menu.

Advanced Start Up Mode

Once you click “Restart now” in the above menu selection, you will be guided to a blue screen. Use the arrow keys to select “Troubleshoot.”

Troubleshoot Option Advanced Startup Mode Windows 10

In the next step, select “Advanced options,” and use the arrow keys to navigate to “UEFI Firmware Settings.”

Uefi Firmware Settings Windows 10

You will have to restart the PC just once to change the UEFI firmware settings.

Uefi Firmware Settings Windows 10 Restart

As soon as the homescreen appears, navigate to the “Boot” option using the side arrow keys. Here you can see that the secure boot mode is “enabled.” You cannot disable it directly, as the option to edit the secure boot mode will be greyed out. This is the reason you’ll need a supervisor password.

Uefi Manager Secure Boot Mode Greyed Out

Use the arrow keys to navigate to “Security.” Click enter on your keyboard to “set a supervisor password.”

Set Supervisor Password Security Uefi Manager

Setting a supervisor password is easy. Make sure you remember it, otherwise you won’t be able to access your Windows 10 computer’s secure mode ever again. However, you can still use it in normal mode.

It’s always better to save the supervisor password in a handwritten note. Confirm it once and hit Enter.

Enter And Confirm Supervisor Password Uefi Secure Mode

You will now see a success status that suggests that your changes have been saved. Click Enter to continue.

Changes Have Been Saved Supervisor Password Uefi Secure Mode

Go back to the boot menu. At this point you can see that the secure boot mode is no longer greyed out. You can now easily select the option for further editing.

Uefi Secure Boot Mode Editable Mode

Click Enter and select using the arrow keys to disable the secure boot mode. Press F10 to save your settings and restart the PC. Once your PC is in insecure mode, you can easily boot it with a USB drive which is not recognized by Microsoft.

Disable Uefi Secure Mode Success Screen

Disable Supervisor Password in UEFI Settings

Microsoft does recommend you disable the supervisor password once you’re done. To do this, go back to “Security” and select the “Set Supervisor Password” option. You may also “set user and HDD passwords” using the up and down arrow keys.

Reset Supervisor Password Enter Supervisor Password Security Uefi Disabled Mode

Leave the space for “New password” blank, and the supervisor password will be automatically disabled. Confirm and enter the new selection.

It’s recommended to enable secure mode first before disabling your supervisor password.

Reset Supervisor Password Blank Spaces

As shown here, the supervisor password is now disabled once again.

To randomly know the current status of a PC’s UEFI secure mode, simply check if there is a “clear” message instead of “set” next to the option of “Supervisor Password Is.” If it’s “clear,” that would mean the password is disabled.

Success Status Supervisor Password Disabled

Whenever you restart the PC after disabling the secure mode, you can easily boot it again using unconventional startup techniques.

Summary

A prime objective of UEFI secure boot mode is that it protects your system from unauthorized boot loaders, especially the ones that come with malicious code. At the same time, unlocking the Windows 10 UEFI secure boot mode gives you much more control over your own PC.

By being able to disable and enable the PC of your own free will, you no longer have to run to the manufacturer for BIOS level repairs.

Have you tried disabling Windows 10 secure boot mode on your own? How was your experience? Do share in the comments below.

One comment

  1. It’s still far easier to just:

    1) Take the install DVD with Windows 10 on it and put it in its sleeve

    2) Put the DVD/sleeve on concrete in your garage

    3) Light cutting torch and proceed to melt the DVD into a little puddle of slime. Once it’s dried and cooled off, take the remains and drop it where you and all the partyer’s you have over on weekends urinate outside near the shrubs when the bathroom is occupied and you have to go real bad after that third beer.

    4) Alternatively, one can take the DVD in its sleeve, lay it flat on a 3/4 inch plywood and take a hammer of any type and weight to it thoroughly.

    5) Go to Distrowatch.com, take a couple of days or three and look over and try some of the Linux and/or BSD distributions. Many can be tried via a ‘live’ version, all that is needed is a USB flash drive.

    6) Write/call/e-mail the hardware manufacturers of the parts in your computer and demand that they quit caving to Microshaft…er…Microsoft’s strongarm tactics of trying to force everyone to use their product or it won’t work on certain hardware!!

Leave a Comment

Yeah! You've decided to leave a comment. That's fantastic! Check out our comment policy here. Let's have a personal and meaningful conversation.