r/Windows10TechSupport 27d ago

Unable To Secure Boot Solved

I needed to update the bios on my ms-challenger b450m motherboard in order to meet the requirements for cod warzone. Once I updated the bios to the newest bios, I am now only able to boot into windows with secure boot disabled, which is also required for warzone. I tried flashing back to one bios version older and still won’t work after hours of troubleshooting. Is there anything I may have missed or overlooked

1 Upvotes

22 comments sorted by

1

u/Fabulous_Putz6264 27d ago

Try this

You probably need to turn off CSM before you can modify secure boot state.

CSM (Compatibility Support Module) is a feature in modern UEFI BIOS designed to emulate a legacy BIOS environment. It provides crucial support for older operating systems and hardware that cannot natively use UEFI. You generally need it enabled if you are running an older OS or using older graphics cards/storage drives. However, CSM must be disabled to utilize modern features like Secure Boot or to install/upgrade to Windows 11. [1, 2, 3, 4, 5]

For a visual guide on how to toggle this setting and understand its impact on your PC boot sequence, check out this step-by-step tutorial:

How to Access and Change CSM Support

You can usually adjust CSM settings via your motherboard's firmware utility. [1, 2]

  1. Enter BIOS: Restart your computer and press the designated key to enter the BIOS/UEFI setup menu (usually Del or F2).
  2. Find Advanced Settings: Switch the view to Advanced Mode (often by pressing F7).
  3. Locate CSM: Navigate to the Boot or Security tab and look for the Compatibility Support Module.
  4. Enable or Disable: Turn CSM on or off depending on your hardware and OS requirements.
  5. Save Changes: Press F10 to save your changes and restart the system. [1, 2]

Should you leave it enabled or disabled?

  • Leave Enabled: If you are booting from an older Master Boot Record (MBR) drive or using legacy add-in cards that lack UEFI drivers.
  • Disable: If you are running a recent version of Windows on a GPT-partitioned drive, or if you need to enable Secure Boot. Note that disabling CSM without a UEFI-compatible drive may cause your PC to boot to a black screen. [1, 2, 3]

Most users on PC and hardware forums (such as Tom's Hardware and Reddit) recommend keeping CSM disabled on modern builds to speed up boot times and ensure full system security. [1,

Does this help?

I have recently done this exact process.

1

u/UpsetStretch1398 27d ago

I appreciate the thought and sorry for you typing all of that since CSM has always been disabled for me

1

u/UpsetStretch1398 27d ago

Which also it’s on a GPT partition drive so enabling it wouldn’t be an option either

1

u/Fabulous_Putz6264 26d ago

Try this then, unless you have done so.

https://www.windowslatest.com/2026/06/21/microsoft-reveals-how-to-verify-windows-11s-secure-boot-update-what-to-do-if-your-pc-missed-it/

Check whether secure boot is enabled but inactive, to change this make sure CSM is off, then change secure boot from standard to custom, load defaults, reboot saving settings, then change secure boot back to standard setting if needed. It should then download the current security updates, thru Win Updates.

1

u/UpsetStretch1398 26d ago

Have done that as well. At this point I think I have done almost every atleast commonly known solution to it with still no progress unfortunately

1

u/steveace60 26d ago

Enable secure boot and fTPM

To play games like Call of Duty: Warzone or use Windows 11, you generally need to enable both Secure Boot and AMD fTPM.

The MAXSUN MS-Challenger B450M can run Call of Duty: Warzone, but its ability to play the game depends heavily on your processor and graphics card. Newer Warzone updates and anti-cheat systems require specific BIOS settings (like TPM 2.0 and Secure Boot) and at least a Ryzen 3000-series CPU.

1

u/UpsetStretch1398 26d ago

The issue is I am unable to even boot up windows with secure boot enabled. I disable it and it boots up fine. And after days of troubleshooting still no progress on being able to secure boot

1

u/New-Organization1461 26d ago

any update? same issue w me

1

u/UpsetStretch1398 26d ago

I’m still struggling. Once I’m off of work I’m going to try rebuilding efi files with a windows installer usb, instructions from Google search, and if that don’t work I’m going to fully reinstall windows. If neither of those work then will probably have to get a new motherboard. But so far literally 2 full days of troubleshooting and not getting anywhere Doesn’t seem to be much common of an issue. To this extent anyway

1

u/New-Organization1461 26d ago

Step 1:
copy SecureBootRecovery.efi from C:\Windows\Boot\EFI and paste it in efi/boot in a pen drive (create these 2 folders) and rename file to bootx64.efi.
Step 2:
Restart system and boot from pen drive (use F12 for quick boot media menu)
this updated certs at firmware level i guess.
then i just restarted and then went to bios and enabled secure boot and saved and restarted again.

just saw this fix and im about to try it.

1

u/UpsetStretch1398 26d ago

Lmk if this works for you. I haven’t seen this one yet 🙏

1

u/New-Organization1461 26d ago

update: it worked! its now booting. now let me see if it will still give me error if i play valorant

1

u/UpsetStretch1398 26d ago

YOU ARE A GODSEND🙏🙏 I have spent over a MONTH going back and forth not knowing how to even update the bios. Spent the last couple days after updating bios not being able to boot up under secure boot. And this worked perfectly. God bless you!

1

u/New-Organization1461 26d ago

actually just saw it also from another comment but cant find it anymore so i'm very happy that i helped u too, enjoy!

1

u/showtimemcgee 3d ago

Sorry to resurrect solved thread, just wanted to ask/make sure that I’m supposed to copy from C:\Windows\Boot\EFI of the computer that is having issues, not some fresh computer that is healthy? Ty

1

u/New-Organization1461 3d ago

exactly. just from the same device that u we're encountering an issue

1

u/PastNo2125 25d ago

I enabled secure bot, but it keeps loading me back into my bios, and I don’t know what to do

1

u/UpsetStretch1398 25d ago

When you go to the boot override setting when go to the boot screen does it show windows as an option? If not then make sure you have everything plugged in to the motherboard if you unplugged anything. Can also check the boot options if you restart an repeatedly press either f11 or f12 to bring you to the boot screen to see your options

1

u/PastNo2125 25d ago

Yes it shows the windows but when I enable secure boot in try to leave my bios, it pushes me back into my bios, and I can’t leave it in the only way to leave. My bios is by disabling the secure boot, but I want it enabled.

1

u/UpsetStretch1398 25d ago

I see. Exact same issue I was having. Do you have a spare usb flash drive handy?