Skip to content

Secure Boot must be enabled on Windows 11 systems.

An XCCDF Rule

Description

Secure Boot is a standard that ensures systems boot only to a trusted operating system. Secure Boot is required to support additional security features in Windows 11, including virtualization-based Security and Credential Guard. If Secure Boot is turned off, these security features will not function.

ID
SV-253257r971547_rule
Version
WN11-00-000020
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Enable Secure Boot in the system firmware.