• ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
  • ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
Guidelines
Join the HP Community Solve‑a‑thon | Help Others & Share Your Solutions | Live on Zoom | 2:30 PM to 2:30 AM IST | Every Wednesday Click here to know more
HP Recommended
OMEN by HP 25L Gaming Desktop PC GT15-0000a (4Q9S4AV)

Hello so recently I disabled secure boot but when I tried turning it back on it said secure boot violation, even though it worked with it on before I’ve tried almost everything, resetting keys making sure resetting factory settings, windows+b and power thing. I honestly don’t know what else to do. I updated my bios as well. Any help please.

7 REPLIES 7
HP Recommended

Hi @Brando00,

Welcome to the HP Support Community.


If Windows boots normally with Secure Boot disabled, it is likely that the Secure Boot keys or bootloader signatures are no longer being validated correctly after the setting was changed.


Please try the following:
 

  1. Enter BIOS (F10).
  2. Go to Secure Boot Configuration.
  3. Select Clear Secure Boot Keys.
  4. Select Restore Factory Keys (or Load HP Factory Default Keys).
  5. Confirm that UEFI Boot Mode is enabled and Legacy Support is disabled.
  6. Save changes and restart.
  7. Run Windows Update and install all available updates.
  8. Return to the BIOS and enable Secure Boot again.

If the issue persists, please let us know:
 

  • the exact Secure Boot error message,
  • whether Windows loads normally when Secure Boot is disabled,
  • the current BIOS version,
  • and whether any operating system changes were made before the issue occurred.

We will be happy to help further.

I'm an HP Employee.


If this reply helped resolve your issue, please select the Accept as Solution as it helps others in the community quickly find the answer they’re looking for.


And if you found this reply helpful, clicking Yes below is a great way to let us know we’re providing the support you need, as it encourages us to keep improving and sharing helpful guidance.

HP Recommended

This does look like it could work I’ll try it but one thing is I can’t seem to find legacy mode or UEFI mode, I’ve checked throughout all the tabs and I don’t see them at all the only thing I see close to UEFI mode is the boot options where it asks for the boot order 

HP Recommended

Secure boot violation. Invalid signature please check boot policy. At the bottom it has a submit button once I click that it sends me to another tab where I can run diagnostics and nothings wrong they all pass. Windows runs normally with secure boot off, bios version- AMI F.39, 4/72026 and no all I did was turn secure boot off and when I tried turning it back on it just gave me the secure boot error.

HP Recommended

That method unfortunately did not work anything else? I also reinstalled windows to see if that would work nothing, factory reseted the pc, updated to the most recent bios. Made sure the booting order is correct tried repairing with usb. Pretty much everything but please if you have more options help me. One thing tho this pc’s bios settings are much more different than mine when you hit esc your very limited to the options you get for bios unlike other mother boards or unless I’m not opening it correctly or there’s something else you can press to option more options to see UEFI, Legacy options

HP Recommended

Thank you for your response.

To fix the Secure Boot Violation error on your OMEN desktop, use the following sequence in your BIOS:

 

1. Reset Secure Boot Keys in BIOS:

Turn off your PC completely.
 

  • Turn it on and immediately tap the F10 key repeatedly until the BIOS setup menu opens.
  • Use the arrow keys to navigate to the Security tab at the top.
  • Scroll down and select Secure Boot Configuration, then press Enter.
  • Look for an option named Restore Factory Keys or Reset to Factory Default Keys. Select it and choose Yes. (This replaces corrupted digital signatures with clean, standard Windows keys).
  • Ensure Secure Boot is now set to Enabled.
  • Press F10 to save your changes and exit.

 

2. If the Error Persists (Temporary Bypass)

 

If resetting the keys does not work immediately, you can temporarily disable the block to boot into Windows and update your system:

Go back into the F10 BIOS menu.

  • Navigate to Security > Secure Boot Configuration.
  • Change Secure Boot to Disabled.
  • Go to Clear Secure Boot Keys and select it.
  • Press F10 to save and exit.
  • Note: Upon reboot, HP will display a blue screen asking you to type a 4-digit code displayed on the screen to confirm this security change. Type the code and press Enter.
     

3. Permanent Fix inside Windows

 

Once you successfully boot into your Windows desktop using the steps above, do the following to prevent it from happening again:

Update the BIOS: Go to the HP Support Assistant | HP® Support preinstalled on your OMEN, or Official HP® Support. Outdated motherboard firmware is the primary cause of sudden certificate violations.
 

  • Re-enable Secure Boot: Once your BIOS and Windows are fully updated, restart your PC, go back into the F10 menu, and select Restore Factory Keys to safely turn Secure Boot back on.

I hope this will help.

 

Take care and have a good day.

I'm an HP Employee.


If this reply helped resolve your issue, please select the Accept as Solution as it helps others in the community quickly find the answer they’re looking for.


And if you found this reply helpful, clicking Yes below is a great way to let us know we’re providing the support you need, as it encourages us to keep improving and sharing helpful guidance.

HP Recommended

I stated above that I checked and everything is already up to date, windows updates and bios? So what’s next? Seems like I’m getting sent the same steps 

HP Recommended

Thank you for the update. We recommend waiting for the new BIOS release. Kindly keep an eye on HP Support Assistant for notifications.

I'm an HP Employee.


If this reply helped resolve your issue, please select the Accept as Solution as it helps others in the community quickly find the answer they’re looking for.


And if you found this reply helpful, clicking Yes below is a great way to let us know we’re providing the support you need, as it encourages us to keep improving and sharing helpful guidance.

† The opinions expressed above are the personal opinions of the authors, not of HP. By using this site, you accept the <a href="https://www8.hp.com/us/en/terms-of-use.html" class="udrlinesmall">Terms of Use</a> and <a href="/t5/custom/page/page-id/hp.rulespage" class="udrlinesmall"> Rules of Participation</a>.
-->