WN11-00-000020 - Secure Boot must be enabled on Windows 11 systems.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Secure Boot is a standard that ensures systems boot only to a trusted operating system. Secure Boot is required to support additional security features in Windows 11, including virtualization-based Security and Credential Guard. If Secure Boot is turned off, these security features will not function.

Solution

Enable Secure Boot in the system firmware.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_11_V1R1_STIG.zip

Item Details

References: CAT|II, CCI|CCI-002391, Rule-ID|SV-253257r828855_rule, STIG-ID|WN11-00-000020, Vuln-ID|V-253257

Plugin: Windows

Control ID: 68dbb321814d9d54491a0f954f58bf461fe736c2b7c83710a13d1c2ff9277fb2