Skip to main content

How to enable secure boot in Windows 11

Enabling Secure Boot is an important step in upgrading to Windows 11, as it's part of the system requirements. It ensures that unauthorized software can't run on your PC, and you will have to enable it before you install Windows 11 or it just won't work. Fortunately, enabling Secure Boot is as quick as changing a single BIOS setting.

Here's how to do it.

Difficulty

Easy

Duration

5 minutes

What You Need

  • Desktop PC or laptop

Secure Boot setting in an ASUS BIOS.
DigitalTrends

How to enable Secure Boot in Windows 11

The most straightforward way to enable Secure Boot is to use the BIOS setting. To access your BIOS, you'll need to use either your motherboard's BIOS key command (often Del or F2, but it varies by manufacturer), or use the Windows 11 boot options. For more help, follow our guide on how to use the BIOS to access it.

Step 1: Start your PC up and access your UEFI/BIOS using your system's BIOS key during the post process.

Step 2: If your UEFI/BIOS is in a Basic or Simple mode, switch to Advanced or similar to get the full range of options.

Step 3: The actual location of the Secure Boot setting will vary by motherboard manufacturer and model, but look for a Boot or Security tab at the top of the screen and navigate to that. Look through the options to find Secure Boot. You may have to navigate through a few menus to find it.

If you can't find it, check your manufacturer's website to see if it doesn't support it on that motherboard model. Alternatively, you may just need to update your BIOS.

Step 4: Toggle Secure Boot to On or Enabled if it isn't already. If you ever want to disable Secure Boot, you just come right back here and switch it to Off or Disabled as appropriate.

In my case on an ASUS motherboard, I had to set Secure Boot Mode to Standard.

Step 5: Save your settings and reboot your PC. When you boot back up, Secure Boot should be enabled.

How to check if Secure Boot is enabled in Windows 11

It's possible to doublecheck if Secure Boot is enabled in Windows 11. Here's how.

Step 1: Use Windows search to look for "msinfo32" and select the System Information result.

Step 2: Scroll down the list until you find Secure Boot. It will have either an On or Off next to it, letting you know what state it's in. Pictured here, is when I noticed mine was off and I hadn't realized it.

Windows 11 System Information
DigitalTrends

Now that you've enabled Secure Boot, what about Safe Boot? If you've ever gotten stuck with a blue screen of death, or a boot error, booting into safe mode can be a real lifesaver.

Jon Martindale
Jon Martindale is the Evergreen Coordinator for Computing, overseeing a team of writers addressing all the latest how to…
What is the Antimalware Service Executable, and should you disable it?
Person using Windows 11 laptop on their lap by the window.

The Antimalware Service Executable is a process you might see pop-up in Task Manager's task list now and again, beavering away at ... something. While it's not always obvious what it's up to, and the sign of "malware" in your process list might put the fear in you, you needn't fret. It's an important component in your Windows security, working as part of the iconic Windows Defender suite of tools.

In the past, older PCs may have seen a performance advantage from disabling the antimalware service executable, but unless you really, really have to for some very specific reasons, you shouldn't need to on a modern PC. Indeed, it would be better if you didn't.
What is the antimalware service executable?
The antimalware service executable, or MsMpEng.exe, to use the name you'll probably see crop up in Task Manager, is a component of the Windows Defender antimalware suite of tools. Together they help protect your Windows PC from viruses and other malware that might otherwise try to steal your data or corrupt your system files.

Read more
Best RAM deals: Discounted 16GB and 32GB from Corsair, Crucial
RAM inside the Starforge Navigator.

While RAM isn't as glamorous as getting the best GPU or a super-fancy CPU, it's one of the most important parts of the computer, especially if you want to have a generally smooth experience and not have to manage your open tabs and apps. In fact, RAM is important for performance, so even if you're not aiming for a high-end gaming PC, you still need to grab yourself a fair amount of RAM that runs fast and meets modern standards. Of course, if you're not quite sure what to pick, then you may want to check out our guides on how to choose the best RAM for your PC and how much RAM you need for a laptop, gaming PC, or tablet to get a better sense of what you need.

To that end, we've collected some of our favorite RAM deals below, both for DDR4 and DDR5, so you can pick the RAM that best fits your needs. If this is part of a gaming rig upgrade, check out other gaming PC deals, such as SSD deals and GPU deals.
Corsair VENGEANCE RGB PRO DDR4 16GB (2x8GB) --  $60, was $65

Read more
Google is cracking down on internet security in this big way
Connection is not private warning from Google.

Google is making some serious changes to digital certificate security on the web, the company announced on its Security blog. The big news is that Google will no longer trust certificates from two large security firms -- Entrust or AffirmTrust -- due to repeated security lapses.

According to Google, the companies, which are Certificate Authorities (CA), have demonstrated patterns of unmet improvement commitments, compliance failures, and no measurable progress in how fast the company responds to publicly disclosed incident reports.

Read more