• ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
  • ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
Guidelines
Join the HP Community Solve‑a‑thon | Help Others & Share Your Solutions | Live on Zoom | 2:30 PM to 2:30 AM IST | Every Wednesday Click here to know more
HP Recommended
HP All-in-One PC 24-df1000i (1W761AV)
Microsoft Windows 11

I am having a persistent Secure Boot firmware issue on my HP All-in-One 24-df1224 PC.

BIOS is currently F.45 and Windows 11 25H2 is installed. Secure Boot is currently disabled because enabling it immediately produces:

“Secure Boot Violation — Invalid signature detected. Check Secure Boot Policy in Setup.”

Microsoft Secure Boot servicing shows UEFICA2023Status = InProgress. Event Viewer repeatedly reports Event ID 1796 from Microsoft-Windows-TPM-WMI:

“The Secure Boot update failed to update SBAT” with error 0x800700c1.

I have already installed the latest HP BIOS update (F.45) and attempted Microsoft's Secure Boot Recovery procedure. The Secure-Boot-Update scheduled task runs successfully, but the Secure Boot certificate update remains InProgress.

Secure Boot keys were restored using HP Factory Default Keys, and the Platform Key is currently enrolled.

Please determine whether there is an HP BIOS/UEFI firmware update or OEM-specific fix for the Secure Boot/SBAT issue on this system board.

 

UPDATE: I found another HP Community user with a very similar issue who resolved it by using SecureBootRecovery.efi from Windows and booting it from a FAT32 USB. I followed those same steps on my system. The recovery utility ran and the computer rebooted, but Secure Boot still produces the “Invalid signature detected” violation when enabled. I also verified that Secure-Boot-Update runs successfully, but UEFICA2023Status remains “InProgress.” Because the problem persists after BIOS F.45 and the Microsoft recovery procedure, I suspect there may be a firmware compatibility issue specific to this HP/87F3 platform.

1 REPLY 1
HP Recommended

Greetings @mp1238 

 

Check this HP Forum Thread solution for a possible workaround.

 

Regards

† The opinions expressed above are the personal opinions of the authors, not of HP. By using this site, you accept the <a href="https://www8.hp.com/us/en/terms-of-use.html" class="udrlinesmall">Terms of Use</a> and <a href="/t5/custom/page/page-id/hp.rulespage" class="udrlinesmall"> Rules of Participation</a>.
-->