• ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
  • ×
    Information
    Need Windows 11 help?
    Check documents on compatibility, FAQs, upgrade information and available fixes.
    Windows 11 Support Center.
  • post a message
Guidelines
Join the HP Community Solve‑a‑thon | Help Others & Share Your Solutions | Live on Zoom | 2:30 PM to 2:30 AM IST | Every Wednesday Click here to know more
Check out our WINDOWS 11 Support Center info about: OPTIMIZATION, KNOWN ISSUES, FAQs, VIDEOS AND MORE.
HP Recommended
HP 15.6 inch Laptop PC 15-fd0000 (B1PV7AV)
Microsoft Windows 11

I am experiencing a persistent Secure Boot / SBAT firmware update failure on my HP Laptop 15-fd0xxx (SKU C42BYEA#AB7).

System:

  • Windows 11 Home 25H2

  • OS Build: 26200.9550

  • BIOS: AMI F.26

  • Secure Boot: Enabled

  • TPM 2.0: Enabled and operational

  • BitLocker: Enabled

Problem:
Windows repeatedly generates Microsoft-Windows-TPM-WMI Event ID 1796 when attempting to update SBAT (Secure Boot Advanced Targeting).

Error code:
0x800700C1

The system also generates Event ID 1801, indicating that updated Secure Boot certificates are available on the device but have not yet been applied.

The Secure Boot servicing state shows:

  • WindowsUEFICA2023Capable: 2

  • UEFICA2023Status: NotStarted

  • AvailableUpdates: 1024 (0x400)

  • Secure Boot update task: Ready

Windows UEFI CA 2023 is present in the Secure Boot db, and Secure Boot itself is enabled.

The BIOS was previously F.24, when Event ID 1795 was also occurring with an "Access denied" firmware error. After updating to BIOS F.26, Event 1795 stopped, but Event 1796 SBAT failures continue.

Windows has also been updated to build 26200.9550, but the SBAT failure remains.

SFC and DISM checks have already been performed and are not indicating current Windows component corruption.

I would like HP to investigate whether BIOS F.26 has a Secure Boot/SBAT compatibility issue or whether a newer BIOS/firmware update is required for the current Windows Secure Boot certificate/SBAT update.

I have a diagnostic report containing the relevant BIOS, Secure Boot, TPM-WMI event, servicing registry, scheduled task, and system information available if required.

Please advise on the official HP-supported resolution.

† The opinions expressed above are the personal opinions of the authors, not of HP. By using this site, you accept the <a href="https://www8.hp.com/us/en/terms-of-use.html" class="udrlinesmall">Terms of Use</a> and <a href="/t5/custom/page/page-id/hp.rulespage" class="udrlinesmall"> Rules of Participation</a>.
-->