Recommended Posts

Thought Microsoft Security Essentials when released would cut down on Family infecting there PC's with junk, but I find that i'm still helping family remove Trojans and junk off there PC's pretty regularly, gotten to the point only help Mom these days, rest I recommend to local small PC shop, as too much time cleaning there PCs

Most of Family though removed MSE when they saw it failed certification tests...So I guess up to them now what they use.

Maybe it's time that you educate your family instead of blaming MS for your woes....not that this has ANYTHING to do with the topic..of course.

If you turn off secure boot in the EFI Bios then no you have zero issues dual booting into any other OS. Now, if the OEM locks down the EFI bios that is booty. I build my own rigs so I never have these issues. My latest rig the EFI Bios shipped with secure boot turned on and I scratched my head for a few minutes until I hunted down why I was getting a BCD loader non signed certificate error and then turned off secure boot.

I will have to probe some of my clients white boxes and see if they have the ability to turn off secure boot.

UEFI secure boot is fine as long:

- Its allow Hardware Owner (not the hardware vendor) to change the UEFI keys

- hardware owner are allowed to disable the secure boot.

if the UEFI was set to disallow hardware owner to change the key, yes its became a locked system with planned obsolescene in mind.

its interesting that before announcing to build Surface RT themself,

Microsoft insist that users must be disallowed to disable secure boot, when secure boot is used in ARM system.

but user should be allowed to disable it on x86-64 system.

"On non-ARM systems, it is required to implement the ability to disable Secure Boot ..."

...

"On an ARM system, it is forbidden to enable Custom Mode. ... Disabling Secure MUST NOT be possible on ARM systems," Microsoft states.

why the differences?

UEFI secure boot is fine as long:

- Its allow Hardware Owner (not the hardware vendor) to change the UEFI keys

- hardware owner are allowed to disable the secure boot.

if the UEFI was set to disallow hardware owner to change the key, yes its became a locked system with planned obsolescene in mind.

its interesting that before announcing to build Surface RT themself,

Microsoft insist that users must be disallowed to disable secure boot, when secure boot is used in ARM system.

but user should be allowed to disable it on x86-64 system.

why the differences?

Because on ARM, the OS is tailored to the hardware. It's pointless. Tablets are not tinker toys. Don't want Windows 8? Buy another tablet.

  • Like 2

Because on ARM, the OS is tailored to the hardware. It's pointless. Tablets are not tinker toys. Don't want Windows 8? Buy another tablet.

Sure they are. You just need to look at sites like XDA-Developers for proof of that.

  • Like 1

If it weren't for the fact that 90% of PC users are uneducated and unwilling to learn about what they bought/use (but also cannot live without it these days) we wouldn't need "Secure Boot".

I got fed up of helping people with viruses and trojans taking up hours of my time (mostly for free) that I just prefer they go to someone else or even pay for a professional to help them now.

There is also huge numbers of user who uses "FREE" version and refuse to download update.

I wonder how many manufactures allow you to turn off secure boot and how many don't? I have never seen a list of companies that say.

I bought an ASUS laptop back in December (A45A-MX2-H). It had the ability to disable or turn off UEFI Secure Boot. It has seen three or so UEFI/BIOS updates and since then, the option has been hidden or removed.

Because on ARM, the OS is tailored to the hardware. It's pointless. Tablets are not tinker toys. Don't want Windows 8? Buy another tablet.

by your logic, Surface RT (Tegra3 - ARM based) was not a toy,

but

Surface Pro (x86-64 based) is a toy ?

surely that the opposite of what Microsoft have to say in their marketing campaign ...

Okay, you won't be able to disable it on an ARM system. You can disable it on a x86-64 systems. UEFI secure boot can be viewed as both a good and bad thing. For the majority of people using WIN8 on tablets (end user customers) how many really want to use dual boot anyways?

Most of the people in my family and my friends, simply want to turn on their computers go online, play games or do things without the hassle of viruses and their PC's giving them a hard time. People just want easy to use, reliable computers to do what they want to do.

Most tablet PC owners, or those that own portable devices are not tinkering around with things to these levels. I'm pretty certain there will be open alternatives for those which do. If you don't want to deal with UEFI Win8 lockdowns on a ARM tablet. Don't buy one, Buy another tablet. The Market will be responding to this.

An alternative to dual booting, is running Linux in a Virtual system (VMware and etc), does UEFI prevent this from happening on an ARM system? It would seem that if Linux applications were so important to somebody they would explore alternatives besides dual boot.

Hackers/Virus programmers exploit how open a system really is. If lock downs like this mean, I get less phone calls for help from family and friends. GREAT! They ain't so tech savvy to begin with. They buy a new PC, love it for awhile, and then within a couple of months are calling it piece of junk that they'd love to throw out the damn window. If WIN8 ARM tablets prove to be more stable and reliable because of a lock down like this. This should be a great thing. Less headaches for Tablet makers, Microsoft and those of us with family and friends constantly bugging us to help fix their computer issues.

I don't have people bugging me to come over and fix their xBox, their Sony Play Stations, or their iPADs or iPhones (insert list of devices more stable compared to an X86/64 PC running Windows whatever).

I wonder how many manufactures allow you to turn off secure boot and how many don't? I have never seen a list of companies that say.

It is required for Windows 8 certification. If the PC has a Windows 8 sticker, users should be able to disable it.

This topic is now closed to further replies.
  • Posts

    • Price Drop: Save 86% on Microsoft Office 2021 Professional Plus lifetime digital license by Steven Parker Today's highlighted deal comes via our Apps + Software section of the Neowin Deals store, where you can save 86% on a lifetime license to Microsoft Office 2021 for Windows. This bundle is for families and small businesses who want classic Office apps and email. It includes Word, Excel, PowerPoint, Outlook, Teams, and OneNote. A one-time purchase installed on 1 Windows PC for use at home or work. Lifetime license for MS Word, Excel, PowerPoint, Outlook, Teams, & OneNote One-time purchase installed on 1 Windows PC for use at home or work Instant Delivery & Download – access your software license keys and download links instantly Free customer service – only the best support! Microsoft Office Professional 2021 (for Windows) includes: Microsoft Office Word Microsoft Office Excel Microsoft Office PowerPoint Microsoft Office Outlook Microsoft Office Teams Microsoft Office OneNote Microsoft Office Publisher Microsoft Office Access No faffing about with subscriptions, just classic apps that don't expire. Good to Know ONE-TIME PURCHASE INSTALLED ON 1 DEVICE Redemption deadline: redeem your code within 30 days of purchase Access options: desktop Full versions No subscriptions – no monthly/annual fees Version: 2021 Updates included* *Support for this version of Office ends on Oct 13, 2026 A lifetime subscription to Microsoft Office 2021 Professional normally costs $219.99, but this deal can be yours for just $29.97, that's a saving of $190. For full terms, specifications, and license info, click the link below. Get Microsoft Office Professional 2021 for just $29.97, or learn more Although priced in U.S. dollars, this deal is available for digital purchase worldwide. Support queries If you have queries or need support for any of the Neowin Deals, please use the contact form here. Neowin Deals are managed and sold by StackCommerce who represent Neowin on an affiliate basis. Why we post these deals We post these because we earn commission on each sale so as not to rely solely on advertising, which many of our readers block. It all helps toward paying staff reporters, servers and hosting costs. So for those that keep moaning and complaining, be thankful we're still online for you to even do that. Other ways to support Neowin Whitelist Neowin by not blocking our ads Create a free member account to see fewer ads Make a donation to support our day to day running costs Subscribe to Neowin - for $14 a year, or $28 a year for an ad-free experience Disclosure: Neowin benefits from revenue of each sale made through our branded deals site powered by StackCommerce.
    • The only reason I want to know where you from is because if you are not from the U.K, then why should you care what we in the U.K do or don't do? Racist I am not, I am fed up with the amount coming over here and feel they can come over here and think we need to support them. Do you know how much it costs this country to support these people coming over here? Even when we give them a place to live it is not good enough. We had a barge that was being used to house immigrants, oh but that was not good enough. A mate said to me at the time, when he was homeless, he would have been happy to live on the barge, instead of ending up sleeping on a bench on the beach. I am not scared to say what my family heritage is, unlike you who is scared to say where they are from or where they live. Father side U.S, mother side Wales, still have family living in the U.S. A mate who sadly died a few years ago, had a load of people from different races recording in his studio, I got on with all of them. Skin colour don't bother me, where they are from don't bother me. Religion don't bother me as long as they don't push it onto me and it is not crazy stuff. I am not religious. But if you are not living in the U.K, then why should you care if we are in the E.U or not? This the problem, too many people poking their noses into where it don't belong. But you believe what you believe, if you think I am racist, then be it, I really do not care. Just grow a pair
    • If he hasn't been able to figure that out, then why is he obsessed with tariffs? Because that's one of the most prominent tools to level the playing field when you have high cost of labor.
    • Microsoft released Windows 11 KB5102558, KB5095615 Setup and Recovery updates by Sayan Sen This past week Microsoft released the newest preview update (C-release) under KB5095093. Alongside those, Microsoft also released new dynamic updates. For those who may not know, dynamic updates bring improvements to the Windows Recovery process in the form of Windows Recovery Environment (WinRE) updates, which are also called Safe OS updates. The dynamic updates also affect the Setup file binaries in the form of Setup updates. These Dynamic Update packages are meant to be applied to existing Windows images prior to their deployment. Dynamic Updates also help preserve Language Pack (LP) and Features on Demand (FODs) content during the upgrade process. VBScript, for example, is currently an FOD on Windows 11 24H2. This time both recovery and setup updates were released for Windows 11. The company writes: "KB5095186: Safe OS Dynamic Update for Windows 11, version 26H1: June 23, 2026 This update makes improvements to the Windows recovery environment (WinRE). After installing this update, the WinRE version installed on the device should be 10.0.28000.2335. KB5102558: Setup Dynamic Update for Windows 11, versions 24H2 and 25H2: June 23, 2026 This update makes improvements to Windows setup binaries or any files that setup uses for feature updates in Windows 11, version 24H2 and Windows 11, version 25H2. KB5095615: Safe OS Dynamic Update for Windows 11, versions 24H2 and 25H2: June 23, 2026 This update makes improvements to the Windows recovery environment (WinRE). After installing this update, the WinRE version installed on the device should be 10.0.26100.8737." Microsoft notes that both the Recovery and Setup updates will be downloaded and installed automatically via the Windows Update channel.
  • Recent Achievements

    • Conversation Starter
      jessse3334 earned a badge
      Conversation Starter
    • Reacting Well
      JuvenileDelinquent earned a badge
      Reacting Well
    • One Month Later
      Excellence2025 earned a badge
      One Month Later
    • Week One Done
      Excellence2025 earned a badge
      Week One Done
    • Week One Done
      flexorcist earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      507
    2. 2
      +Edouard
      201
    3. 3
      PsYcHoKiLLa
      151
    4. 4
      Steven P.
      73
    5. 5
      macoman
      62
  • Tell a friend

    Love Neowin? Tell a friend!