Posts: 426
Threads: 17
Joined: Jul 2020
Reputation:
35
If you have to use mok manager on first secure boot, then you are allowing Ventoy to run insecure ISO s
You can use winsetupfromusb if you only use it for windows installs and winpe.
Or try Easy2boot, which can use imgptn23 files to allow multiple secure boot images.
Posts: 6
Threads: 3
Joined: Dec 2020
Reputation:
0
"Exclamation 04-02-2024, 05:01 PM (This post was last modified: 04-02-2024, 05:03 PM by aboamir@gmail.com.)
I've been utilizing Ventoy for an extended period; however, my manager has recently restricted my use of the tool due to concerns with UEFI certification. He claims that Ventoy enrolls a custom certificate and replaces the original UEFI certificate on our client PCs and laptops. Consequently, he is compelling me to revert to using Rufus. Would anyone be able to offer assistance? Huh
PS :why Rufus have no Problem using UEFI ?"
Is this not a serious issue making Ventoy unsafe to use?
Posts: 330
Threads: 20
Joined: Jan 2021
Reputation:
37
According to your description, I guess it's a Windows Secure Boot problem, so when using Rufus, you can boot directly from windows.iso without getting Secure Boot errors? Or you used Rufus to write windows.iso to USB and when booting in UEFI there was no Secure Boot error. You can also bypass Secure Boot with ventoy like using Rufus, the job is very simple, just format the ventoy partition as FAT32, then extract the contents of windows.iso to the ventoy partition (first partition of the USB).
Whether you use ventoy or grubfm, or aioboot, the nature of these 3rd party bootloaders (not from Microsoft) makes it inevitable to encounter Secure Boot errors.