Secure Boot is a critical UEFI feature that protects your system against malware and unauthorized bootloaders by allowing only trusted, signed code to run during startup. On ASUS hardware, the exact BIOS option you need to toggle depends on whether you’re using a desktop motherboard or a laptop, AIO PC, or handheld device.

This guide will walk you step-by-step through enabling Secure Boot on ASUS systems, explain how to verify its status in Windows, and show you how to fix common issues such as greyed-out options or missing keys.

Quick Reference: ASUS Secure Boot Options

ASUS labels vary between desktop boards and notebooks, but here’s how they map to Secure Boot behavior:

BIOS OptionEffect at Next Boot
OS Type = Windows UEFI modeSecure Boot turns On if keys are present (state = “User”).
OS Type = Other OSSecure Boot is Off.
Secure Boot State = UserKeys installed; Secure Boot can be active.
Secure Boot State = SetupNo keys installed; Secure Boot not active.
  • Desktop boards → “OS Type” controls Secure Boot.
  • Laptops / AIO / handhelds → “Secure Boot Control” toggle manages it.

How to Enable Secure Boot on ASUS Desktop Motherboards

  1. Enter BIOS
    Power on your PC and press Delete repeatedly until BIOS opens.
  2. Switch to Advanced Mode
    If you’re in EZ Mode, press F7 to enter Advanced Mode.
  3. Go to Boot Menu
    Select the Boot tab.
  4. Open Secure Boot Settings
    Highlight Secure Boot.
  5. Set OS Type
    Change OS Type to Windows UEFI mode. Leave Secure Boot Mode on Standard unless you need custom key management.
  6. Save and Exit
    Press F10, confirm, and reboot.
READ 👉  macOS 26 Beta 2: How to Use the New Recovery Assistant (Step-by-Step Guide)

How to Enable Secure Boot on ASUS Laptops, AIO, and Handhelds

  1. Enter BIOS
    With the device fully powered off, hold F2 and press the power button. Release F2 when BIOS opens.
  2. Enter Advanced Mode (if necessary)
    Press F7 to switch from EZ Mode.
  3. Go to Security Page
    Navigate to Security > Secure Boot.
  4. Enable Secure Boot Control
    Set Secure Boot Control to Enabled.
  5. Save and Exit
    Press F10, confirm, and restart.

How to Verify Secure Boot Status in Windows

  1. Open System Information
    Press Win + R, type msinfo32, and hit Enter.
  2. Check Secure Boot State
    • On” = Secure Boot enabled.
    • Off” = Secure Boot disabled.

Fixing Greyed-Out Secure Boot or Stuck Settings

Sometimes BIOS won’t let you toggle Secure Boot until you restore the Secure Boot key database. Here’s how:

Desktop Motherboards — Restore Default Keys

  1. Go to Boot > Secure Boot.
  2. Set Secure Boot Mode to Custom.
  3. Enter Key Management.
  4. Select Clear Secure Boot Keys → state changes to “Setup.”
  5. Choose Install Default Secure Boot Keys → state changes to “User.”
  6. Save with F10 and reboot.

Notebooks, AIO, and Handhelds — Restore Factory Keys

  1. In Security > Secure Boot, set Secure Boot Control = Enabled.
  2. Enter Key Management.
  3. Select Reset to Setup Mode, then confirm.
  4. Choose Restore Factory Keys to reinstall the defaults.
  5. Save with F10 and restart.

Common Issues and Solutions

  • UEFI Boot Required → Secure Boot won’t work in Legacy/CSM mode. Set BIOS to UEFI only.
  • GPT Disk Required → Secure Boot only works with GPT-partitioned drives, not MBR.
  • Keys Missing → “Setup” = no keys; use restore steps above to fix.
  • BitLocker Prompts → BIOS changes may trigger BitLocker recovery. Suspend BitLocker first or have your recovery key ready.
READ 👉  How to Enable Secure Boot on All Major Motherboards (ASUS, MSI, Gigabyte, Dell, HP)

Conclusion

Secure Boot adds a vital layer of protection to your ASUS system, ensuring only trusted code runs at startup. Whether you’re setting it up on a desktop motherboard or a notebook, the process is straightforward once you know where to look. And if something doesn’t work—like missing keys or greyed-out options—you can restore defaults in just a few clicks.

By enabling Secure Boot, you not only improve system security but also ensure compatibility with certain games and Windows features that require it.

Did you enjoy this article? Feel free to share it on social media and subscribe to our newsletter so you never miss a post!

And if you'd like to go a step further in supporting us, you can treat us to a virtual coffee ☕️. Thank you for your support ❤️!
Buy Me a Coffee

Categorized in: