Secure Boot must be enabled on Windows 11 systems.
An XCCDF Rule
Description
Secure Boot is a standard that ensures systems boot only to a trusted operating system. Secure Boot is required to support additional security features in Windows 11, including virtualization-based Security and Credential Guard. If Secure Boot is turned off, these security features will not function.
- ID
- SV-253257r971547_rule
- Version
- WN11-00-000020
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Enable Secure Boot in the system firmware.