Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Windows 11 with Secure Boot doesn't work #597

Open
CBRocker opened this issue Jun 28, 2024 · 2 comments
Open

Windows 11 with Secure Boot doesn't work #597

CBRocker opened this issue Jun 28, 2024 · 2 comments

Comments

@CBRocker
Copy link

Hi,

Facts:
FOG Version 1.5.10
FOG Dev. Version: 1.5.10.30

First please give me Infos, how I can register me at the FOG Forum.
I fill out the fields username and password, confirm the captcha code, after click on "Jetzt registrieren" I see the message
"Captcha not verified, are you a robot?" No matter what I type, the error always comes up.

Well, the primary issue:

We have some Dell Inspiron 5420 All-in-One-PCs with Windows 11. We have problems with the Secure Boot/UEFI.
PXE and WOL are set in the BIOS.

Enabled Secure Boot, the PC boots from the installed Windows 11.
Disabled Secure Boot, the PC boots with PXE, the FOG/iPXE 1.21.1+ starts (looking for new Images and so on).
But at the FOG Project screen (where is the text "Host is registered as ...") (see below)
at the end of the line "Boot form hard disk" the counter counts down from 3 to 0, but there is a endless loop
and it doesn't go any further.

Image

Enabled Secure Boot, the PXE/deploying Image doesn't work.

How can it solved?
FOG works with Windows 11/Secure Boot?

Thx for ur help

@mastacontrola
Copy link
Member

FOG Does not work out of the box with secure boot nor has it ever.

Disable secure boot,
capture your image, (or deploy)
enable secure boot.

If you require secure boot consistently, there are methods available to do it but it's not a foolproof method I doubt.

https://forums.fogproject.org/topic/13832/secureboot-issues/8?_=1721229080146
https://forums.fogproject.org/post/145434

@darksidemilk
Copy link
Member

I just re-read this and realized you're disabling secure boot and not being able to boot to disk, not so much trying to boot to fog with secure boot.
We do have a fix in the 1.6 beta (update from the working-1.6 branch instead of the master branch to try it out)
In the latest versions of ipxe they made it possible to boot to a uefi disk with the sanboot command.
We updated the boot to hard disk behavior to use this new functionality and included the latest version of ipxe in working 1.6. you can see the sanboot changes in fog here:

/** Booting to hard disk via sanboot

You could also follow the instructions here https://docs.fogproject.org/en/latest/compile_ipxe_binaries to compile the latest ipxe for your current version and edit the equivalent sanboot line manually.
You also want to change your efi exit option from refind to sanboot for this to work.

That's a rough guideline on what needs doing, let me know if you need more detailed help, I just don't have the time right this second to dig into deeper detail

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants