Contenu | Rechercher | Menus

Annonce

Si vous avez des soucis pour rester connecté, déconnectez-vous puis reconnectez-vous depuis ce lien en cochant la case
Me connecter automatiquement lors de mes prochaines visites.

À propos de l'équipe du forum.

#1 Le 12/11/2025, à 20:50

Poun64

[Résolu] SecureBoot disabled - Platform is in Setup Mode

Bonjour toul'monde !

Je crois que j'ai fait une boulette... mais je n'en suis pas sûr. Explication :
Sur un PC portable Asus avec son "Secure-Boot" désactivé, j'ai installé sur une clé USB un Debian-Facile 13.
L'installation s'est bien passée et cette clé USB Debian fonctionne bien sur cet Asus.

J'ai testé ensuite cette clé USB Debian sur mon PC principal  [Gigabyte B760M DS3H AX] avec Xubuntu + Windows11, et elle fonctionne également.
Après ça j'ai vérifié le "Secure-boot" sur ce PC principal en mode Xubuntu et là :

poun@Gigapoun-2404:~$ sudo mokutil --sb-state
[sudo] Mot de passe de poun : 
SecureBoot disabled
Platform is in Setup Mode

Puis :

poun@Gigapoun-2404:~$ mokutil -l 
[key 1]
SHA1 Fingerprint: 76:a0:92:06:58:00:bf:37:69:01:c3:72:cd:55:a9:0e:1f:de:d2:e0
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            b9:41:24:a0:18:2c:92:67
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=GB, ST=Isle of Man, L=Douglas, O=Canonical Ltd., CN=Canonical Ltd. Master Certificate Authority
        Validity
            Not Before: Apr 12 11:12:51 2012 GMT
            Not After : Apr 11 11:12:51 2042 GMT
        Subject: C=GB, ST=Isle of Man, L=Douglas, O=Canonical Ltd., CN=Canonical Ltd. Master Certificate Authority
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:bf:5b:3a:16:74:ee:21:5d:ae:61:ed:9d:56:ac:
                    bd:de:de:72:f3:dd:7e:2d:4c:62:0f:ac:c0:6d:48:
                    08:11:cf:8d:8b:fb:61:1f:27:cc:11:6e:d9:55:3d:
                    39:54:eb:40:3b:b1:bb:e2:85:34:79:ca:f7:7b:bf:
                    ba:7a:c8:10:2d:19:7d:ad:59:cf:a6:d4:e9:4e:0f:
                    da:ae:52:ea:4c:9e:90:ce:c6:99:0d:4e:67:65:78:
                    5d:f9:d1:d5:38:4a:4a:7a:8f:93:9c:7f:1a:a3:85:
                    db:ce:fa:8b:f7:c2:a2:21:2d:9b:54:41:35:10:57:
                    13:8d:6c:bc:29:06:50:4a:7e:ea:99:a9:68:a7:3b:
                    c7:07:1b:32:9e:a0:19:87:0e:79:bb:68:99:2d:7e:
                    93:52:e5:f6:eb:c9:9b:f9:2b:ed:b8:68:49:bc:d9:
                    95:50:40:5b:c5:b2:71:aa:eb:5c:57:de:71:f9:40:
                    0a:dd:5b:ac:1e:84:2d:50:1a:52:d6:e1:f3:6b:6e:
                    90:64:4f:5b:b4:eb:20:e4:61:10:da:5a:f0:ea:e4:
                    42:d7:01:c4:fe:21:1f:d9:b9:c0:54:95:42:81:52:
                    72:1f:49:64:7a:c8:6c:24:f1:08:70:0b:4d:a5:a0:
                    32:d1:a0:1c:57:a8:4d:e3:af:a5:8e:05:05:3e:10:
                    43:a1
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                AD:91:99:0B:C2:2A:B1:F5:17:04:8C:23:B6:65:5A:26:8E:34:5A:63
            X509v3 Authority Key Identifier: 
                AD:91:99:0B:C2:2A:B1:F5:17:04:8C:23:B6:65:5A:26:8E:34:5A:63
            X509v3 Basic Constraints: critical
                CA:TRUE
            X509v3 Key Usage: 
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 CRL Distribution Points: 
                Full Name:
                  URI:http://www.canonical.com/secure-boot-master-ca.crl
    Signature Algorithm: sha256WithRSAEncryption
    Signature Value:
        3f:7d:f6:76:a5:b3:83:b4:2b:7a:d0:6d:52:1a:03:83:c4:12:
        a7:50:9c:47:92:cc:c0:94:77:82:d2:ae:57:b3:99:04:f5:32:
        3a:c6:55:1d:07:db:12:a9:56:fa:d8:d4:76:20:eb:e4:c3:51:
        db:9a:5c:9c:92:3f:18:73:da:94:6a:a1:99:38:8c:a4:88:6d:
        c1:fc:39:71:d0:74:76:16:03:3e:56:23:35:d5:55:47:5b:1a:
        1d:41:c2:d3:12:4c:dc:ff:ae:0a:92:9c:62:0a:17:01:9c:73:
        e0:5e:b1:fd:bc:d6:b5:19:11:7a:7e:cd:3e:03:7e:66:db:5b:
        a8:c9:39:48:51:ff:53:e1:9c:31:53:91:1b:3b:10:75:03:17:
        ba:e6:81:02:80:94:70:4c:46:b7:94:b0:3d:15:cd:1f:8e:02:
        e0:68:02:8f:fb:f9:47:1d:7d:a2:01:c6:07:51:c4:9a:cc:ed:
        dd:cf:a3:5d:ed:92:bb:be:d1:fd:e6:ec:1f:33:51:73:04:be:
        3c:72:b0:7d:08:f8:01:ff:98:7d:cb:9c:e0:69:39:77:25:47:
        71:88:b1:8d:27:a5:2e:a8:f7:3f:5f:80:69:97:3e:a9:f4:99:
        14:db:ce:03:0e:0b:66:c4:1c:6d:bd:b8:27:77:c1:42:94:bd:
        fc:6a:0a:bc
poun@Gigapoun-2404:~$

Sous Windows 11, le "Secure-Boot" est également désactivé.
Avant le test de cette clé sur ce PC principal, il me semble que le "Secure-boot" était actif mais je ne peux pas le certifier...
Du reste, pour que Windows 11 s'installe, il faut bien que le TPM et le "Sécure-boot" soient actifs.
J'ai installé mes Xubuntu 24.04 dans un deuxième temps.

Il y a-t-il un rapport entre le lancement de cette clé USB Debian, ou ce problème de "Secure-boot" est-il antérieur à ça ?
Dans le BIOS concernant le "Secure-Boot", les paramètres actuels sont les suivants :
- System Mode = Configuration et pas en mode "Setup"
- Secure Boot =  Activation
- Secure Boot Mode = Standard
Je me suis permis de réinitialiser les paramètres Bios, à partir d'une sauvegarde faite il y a quelques mois, et c'est pareil.
J'ai trouvé ce lien : https://www.malekal.com/resoudre-secure … user-mode/
Mais j'ai peur de tout perdre... Je ne suis pas du tout à l'aise avec ça...
Merci pour tous vos conseils...

Dernière modification par Poun64 (Le 13/11/2025, à 20:32)


1) Xubuntu 24.04._LTS + Windows 11 - Gigabyte B760M DS3H AX - Intel Core i5-12600K / UHD Graphics 770 intégré - 10 cœurs -3,7 Ghz - 32 Go de RAM
2) Xubuntu 24.04._LTS + Windows 11 - Gigabyte H610M S2H - Intel I3-12100 / UHD Graphics 730 intégré - 4 cœurs - 3,3 Ghz - 16 Go de RAM
3) Xubuntu 22.04._LTS + Xubuntu 24.04 - Asus X751L - Intel I5-5200U - 4 cœurs - 2.20GHz - N'Vidia GeForce 920M - 12 Go de RAM

Hors ligne

#2 Le 12/11/2025, à 21:46

Poun64

Re : [Résolu] SecureBoot disabled - Platform is in Setup Mode

À toutes fins utiles, voici le "Boot-info" de mon PC principal :

boot-info-4ppa2081                                              [20251112_2039]

============================== Boot Info Summary ===============================

 => Windows is installed in the MBR of /dev/nvme0n1.
 => No boot loader is installed in the MBR of /dev/nvme1n1.
 => No boot loader is installed in the MBR of /dev/sda.

nvme0n1p1: _____________________________________________________________________

    File system:       vfat
    Boot sector type:  FAT32
    Boot sector info:  No errors found in the Boot Parameter Block.
    Operating System:  
    Boot files:        /efi/Boot/bootx64.efi /efi/Microsoft/Boot/bootmgfw.efi 
                       /efi/Microsoft/Boot/bootmgr.efi 
                       /efi/Microsoft/Boot/SecureBootRecovery.efi

nvme0n1p2: _____________________________________________________________________

    File system:       
    Boot sector type:  -
    Boot sector info: 

nvme0n1p3: _____________________________________________________________________

    File system:       ntfs
    Boot sector type:  NTFS
    Boot sector info:  No errors found in the Boot Parameter Block.
    Operating System:  Windows 10 or 11
    Boot files:        /Windows/System32/winload.exe

nvme0n1p4: _____________________________________________________________________

    File system:       ntfs
    Boot sector type:  NTFS
    Boot sector info:  No errors found in the Boot Parameter Block.
    Operating System:  
    Boot files:        

nvme1n1p1: _____________________________________________________________________

    File system:       vfat
    Boot sector type:  FAT32
    Boot sector info:  No errors found in the Boot Parameter Block.
    Operating System:  
    Boot files:        /efi/BOOT/fbx64.efi /efi/BOOT/mmx64.efi 
                       /efi/ubuntu/grubx64.efi /efi/ubuntu/mmx64.efi 
                       /efi/ubuntu/shimx64.efi /efi/ubuntu/grub.cfg

nvme1n1p2: _____________________________________________________________________

    File system:       ext4
    Boot sector type:  -
    Boot sector info: 
    Operating System:  Ubuntu 24.04.3 LTS
    Boot files:        /boot/grub/grub.cfg /etc/fstab /etc/default/grub

nvme1n1p3: _____________________________________________________________________

    File system:       ext4
    Boot sector type:  -
    Boot sector info: 
    Operating System:  
    Boot files:        

sda1: __________________________________________________________________________

    File system:       vfat
    Boot sector type:  FAT32
    Boot sector info:  No errors found in the Boot Parameter Block.
    Operating System:  
    Boot files:        /efi/BOOT/fbx64.efi /efi/BOOT/mmx64.efi 
                       /efi/ubuntu/grubx64.efi /efi/ubuntu/mmx64.efi 
                       /efi/ubuntu/shimx64.efi /efi/ubuntu/grub.cfg

sda2: __________________________________________________________________________

    File system:       ext4
    Boot sector type:  -
    Boot sector info: 
    Operating System:  Ubuntu 24.04.3 LTS
    Boot files:        /boot/grub/grub.cfg /etc/fstab /etc/default/grub

sda3: __________________________________________________________________________

    File system:       ext4
    Boot sector type:  -
    Boot sector info: 
    Operating System:  
    Boot files:        

sda4: __________________________________________________________________________

    File system:       ext4
    Boot sector type:  -
    Boot sector info: 
    Operating System:  
    Boot files:        

sda5: __________________________________________________________________________

    File system:       ext4
    Boot sector type:  -
    Boot sector info: 
    Operating System:  
    Boot files:        


================================ 3 OS detected =================================

OS#1 (linux):   L'OS actuellement utilisé - Ubuntu 24.04.3 LTS on sda2
OS#2 (linux):   Ubuntu 24.04.3 LTS on nvme1n1p2
OS#3 (windows):   Windows 10 or 11 on nvme0n1p3

================================ Host/Hardware =================================

CPU architecture: 64-bit
Video: AlderLake-S GT1 from Intel Corporation
BOOT_IMAGE of the installed session in use:
/boot/vmlinuz-6.8.0-87-generic root=UUID=24dedcb1-ccc1-4692-b277-cbe74600be7a ro quiet splash
df -Th / : /dev/sda2        ext4    49G     22G   25G  47% /

===================================== UEFI =====================================

BIOS/UEFI firmware: F19(5.27) from American Megatrends International, LLC.
The firmware is EFI-compatible, and is set in EFI-mode for this installed-session.
SecureBoot disabled (confirmed by mokutil).
BootCurrent: 0004
Timeout: 1 seconds
BootOrder: 0004,0000,0005
Boot0000* Windows Boot Manager	HD(1,GPT,f2e37412-e870-41cc-87fa-2149cd4a3985,0x800,0x32000)/File(\EFI\Microsoft\Boot\bootmgfw.efi)57494e444f5753000100000088000000780000004200430044004f0042004a004500430054003d007b00390064006500610038003600320063002d0035006300640064002d0034006500370030002d0061006300630031002d006600330032006200330034003400640034003700390035007d00000028000100000010000000040000007fff0400
Boot0004* ubuntu	HD(1,GPT,f7e2fd14-5643-4502-96e0-b8d4a222dce6,0x800,0x393800)/File(\EFI\ubuntu\shimx64.efi) File(.)
Boot0005* ubuntu	HD(1,GPT,3903c4b7-32ef-4dbe-8969-73b085e2d1aa,0x800,0x3ba000)/File(\EFI\ubuntu\shimx64.efi) File(.)

5a2a56ec90a9e18a186e8aecf57515f5   nvme0n1p1/Boot/bootx64.efi
5a2a56ec90a9e18a186e8aecf57515f5   nvme0n1p1/Microsoft/Boot/bootmgfw.efi
cee6ba033a2c963880f0d92778ed36a7   nvme0n1p1/Microsoft/Boot/bootmgr.efi
2460f2fe283f93b48d7618e4d8fcf05e   nvme0n1p1/Microsoft/Boot/SecureBootRecovery.efi
39bc76ff6662f4fbe9aa116e4c997b41   nvme1n1p1/BOOT/fbx64.efi
4ba5a5aad43c197e9fb58b76b404d287   nvme1n1p1/BOOT/mmx64.efi
94c7467f956700d44c5b4dcd3967535c   nvme1n1p1/ubuntu/grubx64.efi
4ba5a5aad43c197e9fb58b76b404d287   nvme1n1p1/ubuntu/mmx64.efi
07e25dcaf57c776875f78fa36827c58e   nvme1n1p1/ubuntu/shimx64.efi
07e25dcaf57c776875f78fa36827c58e   nvme1n1p1/BOOT/BOOTX64.efi

============================= Drive/Partition Info =============================

Disks info: ____________________________________________________________________

sda	: is-GPT,	no-BIOSboot,	has---ESP, 	not-usb,	not-mmc, has-os,	no-wind,	2048 sectors * 512 bytes
nvme0n1	: is-GPT,	no-BIOSboot,	has---ESP, 	not-usb,	not-mmc, has-os,	has-win,	2048 sectors * 512 bytes
nvme1n1	: is-GPT,	no-BIOSboot,	has---ESP, 	not-usb,	not-mmc, has-os,	no-wind,	2048 sectors * 512 bytes

Partitions info (1/3): _________________________________________________________

sda2	: is-os,	64, apt-get,	signed grub-efi ,	grub2,	grub-install,	grubenv-ok,	update-grub,	end-after-100GB
nvme0n1p3	: is-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	end-after-100GB
nvme0n1p1	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	not-far
nvme0n1p4	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	end-after-100GB
nvme1n1p2	: is-os,	64, apt-get,	signed grub-efi ,	grub2,	grub-install,	grubenv-ok,	update-grub,	not-far
nvme1n1p3	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	end-after-100GB
nvme1n1p1	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	not-far
sda4	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	end-after-100GB
sda5	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	end-after-100GB
sda3	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	end-after-100GB
sda1	: no-os,	64, nopakmgr,	no-docgrub,	nogrub,	nogrubinstall,	no-grubenv,	noupdategrub,	not-far

Partitions info (2/3): _________________________________________________________

sda2	: isnotESP,	fstab-has-bad-efi,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, ext4
nvme0n1p3	: isnotESP,	part-has-no-fstab,	no-nt,	haswinload,	no-recov-nor-hid,	no-bmgr,	notwinboot, ntfs
nvme0n1p1	: is---ESP,	part-has-no-fstab,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, vfat
nvme0n1p4	: isnotESP,	part-has-no-fstab,	no-nt,	no-winload,	recovery-or-hidden,	no-bmgr,	notwinboot, ntfs
nvme1n1p2	: isnotESP,	fstab-has-bad-efi,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, ext4
nvme1n1p3	: isnotESP,	part-has-no-fstab,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, ext4
nvme1n1p1	: is---ESP,	part-has-no-fstab,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, vfat
sda4	: isnotESP,	part-has-no-fstab,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, ext4
sda5	: isnotESP,	part-has-no-fstab,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, ext4
sda3	: isnotESP,	part-has-no-fstab,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, ext4
sda1	: is---ESP,	part-has-no-fstab,	no-nt,	no-winload,	no-recov-nor-hid,	no-bmgr,	notwinboot, vfat

Partitions info (3/3): _________________________________________________________

sda2	: not--sepboot,	with-boot,	fstab-without-boot,	not-sep-usr,	with--usr,	fstab-without-usr,	std-grub.d,	sda
nvme0n1p3	: not--sepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	nvme0n1
nvme0n1p1	: not--sepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	nvme0n1
nvme0n1p4	: not--sepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	nvme0n1
nvme1n1p2	: not--sepboot,	with-boot,	fstab-without-boot,	not-sep-usr,	with--usr,	fstab-without-usr,	std-grub.d,	nvme1n1
nvme1n1p3	: maybesepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	nvme1n1
nvme1n1p1	: not--sepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	nvme1n1
sda4	: maybesepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	sda
sda5	: maybesepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	sda
sda3	: maybesepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	sda
sda1	: not--sepboot,	no---boot,	part-has-no-fstab,	not-sep-usr,	no---usr,	part-has-no-fstab,	no--grub.d,	sda

fdisk -l (filtered): ___________________________________________________________

Disk nvme0n1: 447.13 GiB, 480103981056 bytes, 937703088 sectors
Disk identifier: 63461919-182B-467A-B0D1-0EF25A58A9FF
             Start       End   Sectors   Size Type
nvme0n1p1      2048    206847    204800   100M EFI System
nvme0n1p2    206848    239615     32768    16M Microsoft reserved
nvme0n1p3    239616 936177663 935938048 446.3G Microsoft basic data
nvme0n1p4 936177664 937699327   1521664   743M Windows recovery environment
Disk nvme1n1: 447.13 GiB, 480103981056 bytes, 937703088 sectors
Disk identifier: EB969A20-FB01-43C5-BCF4-81D86F11058D
             Start       End   Sectors   Size Type
nvme1n1p1      2048   3751935   3749888   1.8G EFI System
nvme1n1p2   3751936 127033343 123281408  58.8G Linux filesystem
nvme1n1p3 127033344 937701375 810668032 386.6G Linux filesystem
Disk sda: 465.76 GiB, 500107862016 bytes, 976773168 sectors
Disk identifier: 83CD5250-0D4A-42FF-AE43-747593A7AD40
         Start       End   Sectors   Size Type
sda1       2048   3909631   3907584   1.9G EFI System
sda2    3909632 107032575 103122944  49.2G Linux filesystem
sda3  107032576 209661951 102629376  48.9G Linux filesystem
sda4  209661952 913870847 704208896 335.8G Linux filesystem
sda5  913870848 976773119  62902272    30G Linux filesystem

parted -lm (filtered): _________________________________________________________

sda:500GB:scsi:512:4096:gpt:ATA CT500MX500SSD1:;
1:1049kB:2002MB:2001MB:fat32:Boot EFI:boot, esp;
2:2002MB:54.8GB:52.8GB:ext4:Test Root:;
3:54.8GB:107GB:52.5GB:ext4:Test Home:;
4:107GB:468GB:361GB:ext4:Sauvegarde:;
5:468GB:500GB:32.2GB:ext4:Quick_Backup:;
nvme0n1:480GB:nvme:512:512:gpt:CT480E100SSD8:;
1:1049kB:106MB:105MB:fat32:EFI system partition:boot, esp, no_automount;
2:106MB:123MB:16.8MB::Microsoft reserved partition:msftres, no_automount;
3:123MB:479GB:479GB:ntfs:Basic data partition:msftdata;
4:479GB:480GB:779MB:ntfs::hidden, diag, no_automount;
nvme1n1:480GB:nvme:512:512:gpt:CT480E100SSD8:;
1:1049kB:1921MB:1920MB:fat32:EFI System:boot, esp;
2:1921MB:65.0GB:63.1GB:ext4:Root:;
3:65.0GB:480GB:415GB:ext4:Home:;

blkid (filtered): ______________________________________________________________

NAME        FSTYPE   UUID                                 PARTUUID                             LABEL        PARTLABEL
sda                                                                                                         
├─sda1      vfat     10C3-1B5A                            3903c4b7-32ef-4dbe-8969-73b085e2d1aa BOOT EFI     Boot EFI
├─sda2      ext4     24dedcb1-ccc1-4692-b277-cbe74600be7a 34bf23c3-b0e6-43bc-b5f9-c86a814c5777 Test Root    Test Root
├─sda3      ext4     b4a58f2c-7160-497a-aea9-c9b22b3a611a caf93c27-7e2f-4357-a847-f6ec995210da Test Home    Test Home
├─sda4      ext4     f42642ec-9472-4bd3-8533-038e6d0b86d3 57fd3f2e-9391-4f6a-b9f9-ebfb328a19c8 Sauvegarde   Sauvegarde
└─sda5      ext4     ce2529c9-01aa-4a4b-b46c-a5fe07c1e95a 4f6723f9-b754-4dde-9d2e-6d3752ba81e4 Quick_Backup Quick_Backup
nvme0n1                                                                                                     
├─nvme0n1p1 vfat     94E0-BC8D                            f2e37412-e870-41cc-87fa-2149cd4a3985              EFI system partition
├─nvme0n1p2                                               b3ffd01a-a71c-413c-af98-3e46e5d2b0da              Microsoft reserved partition
├─nvme0n1p3 ntfs     5692E1B092E194B1                     0fb58d60-937b-4488-afaf-d92076312b3f Windows 11   Basic data partition
└─nvme0n1p4 ntfs     38FED5EBFED5A204                     cd48cd18-0427-43c6-a510-41cb6e8cb7d5              
nvme1n1                                                                                                     
├─nvme1n1p1 vfat     5222-C588                            f7e2fd14-5643-4502-96e0-b8d4a222dce6 EFI SYSTEM   EFI System
├─nvme1n1p2 ext4     d9b13832-1ffd-4321-92eb-0ee9c07e701a 2dcca6f1-ecba-4b5f-9ca4-627b54a8bac1 Root         Root
└─nvme1n1p3 ext4     332381a7-fbe7-4b74-8bdf-56be13300c86 cdc7979d-a22a-465f-852d-03e6c69fd949 Home         Home

Mount points (filtered): _______________________________________________________

                        Avail Use% Mounted on
/dev/nvme0n1p1          62.5M  35% /mnt/boot-sav/nvme0n1p1
/dev/nvme0n1p3         375.6G  16% /mnt/boot-sav/nvme0n1p3
/dev/nvme0n1p4           112M  85% /mnt/boot-sav/nvme0n1p4
/dev/nvme1n1p1           1.8G   0% /mnt/boot-sav/nvme1n1p1
/dev/nvme1n1p2          34.9G  34% /mnt/boot-sav/nvme1n1p2
/dev/nvme1n1p3         295.9G  17% /mnt/boot-sav/nvme1n1p3
/dev/sda2               24.4G  44% /
/dev/sda3               38.9G  14% /home
/dev/sda4              161.3G  46% /mnt/boot-sav/sda4
/dev/sda5               12.8G  51% /mnt/boot-sav/sda5
efivarfs               113.2K  54% /sys/firmware/efi/efivars

Mount options (filtered): ______________________________________________________

/dev/nvme0n1p1         vfat            rw,relatime,fmask=0022,dmask=0022,codepage=437,iocharset=iso8859-1,shortname=mixed,errors=remount-ro
/dev/nvme0n1p3         fuseblk         rw,relatime,user_id=0,group_id=0,allow_other,blksize=4096
/dev/nvme0n1p4         fuseblk         rw,relatime,user_id=0,group_id=0,allow_other,blksize=4096
/dev/nvme1n1p1         vfat            rw,relatime,fmask=0022,dmask=0022,codepage=437,iocharset=iso8859-1,shortname=mixed,errors=remount-ro
/dev/nvme1n1p2         ext4            rw,relatime
/dev/nvme1n1p3         ext4            rw,relatime
/dev/sda2              ext4            rw,relatime
/dev/sda3              ext4            rw,relatime
/dev/sda4              ext4            rw,relatime
/dev/sda5              ext4            rw,relatime

=================== nvme1n1p1/efi/ubuntu/grub.cfg (filtered) ===================

search.fs_uuid d9b13832-1ffd-4321-92eb-0ee9c07e701a root 
set prefix=($root)'/boot/grub'
configfile $prefix/grub.cfg

=================== nvme1n1p2/boot/grub/grub.cfg (filtered) ====================

Ubuntu   d9b13832-1ffd-4321-92eb-0ee9c07e701a
Windows Boot Manager (on nvme0n1p1)   osprober-efi-94E0-BC8D
Ubuntu 24.04.3 LTS (24.04) (on sda2)   24dedcb1-ccc1-4692-b277-cbe74600be7a
### END /etc/grub.d/30_os-prober ###
UEFI Firmware Settings   uefi-firmware
### END /etc/grub.d/30_uefi-firmware ###

======================== nvme1n1p2/etc/fstab (filtered) ========================

tmpfs /tmp tmpfs defaults,relatime,mode=1777,nosuid,size=20G 0 0
tmpfs	/home/poun/.cache/BraveSoftware	tmpfs	 size=10G
tmpfs	/home/poun/.cache/mozilla	tmpfs	 size=10G
tmpfs	/home/poun/.cache/thunderbird	tmpfs size=10G
tmpfs	/home/poun/.cache/evolution	tmpfs	 size=10G
# <file system> <mount point>   <type>  <options>       <dump>  <pass>
# / was on /dev/nvme1n1p2 during curtin installation
/dev/disk/by-uuid/d9b13832-1ffd-4321-92eb-0ee9c07e701a / ext4 defaults 0 1
# /boot/efi was on /dev/nvme1n1p1 during curtin installation
/dev/disk/by-uuid/5222-C588 /boot/efi vfat defaults 0 1
# /home was on /dev/nvme1n1p3 during curtin installation
/dev/disk/by-uuid/332381a7-fbe7-4b74-8bdf-56be13300c86 /home ext4 defaults 0 1
/swap.img	none	swap	sw	0	0
/dev/disk/by-uuid/5692E1B092E194B1 /mnt/5692E1B092E194B1 auto nosuid,nodev,nofail,noauto 0 0

==================== nvme1n1p2/etc/default/grub (filtered) =====================

GRUB_DEFAULT=0
GRUB_TIMEOUT=3
GRUB_DISTRIBUTOR=`( . /etc/os-release; echo ${NAME:-Ubuntu} ) 2>/dev/null || echo Ubuntu`
GRUB_CMDLINE_LINUX_DEFAULT="quiet splash"
GRUB_CMDLINE_LINUX=""
GRUB_DISABLE_MEMTEST=true
================= nvme1n1p2: Location of files loaded by Grub ==================

           GiB - GB             File                                 Fragment(s)
  54,574234009 = 58,598637568   boot/grub/grub.cfg                             1
  26,490535736 = 28,443996160   boot/vmlinuz                                   2
  57,757808685 = 62,016974848   boot/vmlinuz-6.8.0-86-generic                  2
  26,490535736 = 28,443996160   boot/vmlinuz-6.8.0-87-generic                  2
  57,757808685 = 62,016974848   boot/vmlinuz.old                               2
  49,289058685 = 52,923723776   boot/initrd.img                                5
   6,882808685 = 7,390359552    boot/initrd.img-6.8.0-86-generic               4
  49,289058685 = 52,923723776   boot/initrd.img-6.8.0-87-generic               5
   6,882808685 = 7,390359552    boot/initrd.img.old                            4

=================== nvme1n1p2: ls -l /etc/grub.d/ (filtered) ===================

-rwxr-xr-x 1 root root 18133 Apr  4  2024 10_linux
-rwxr-xr-x 1 root root 43202 Apr  4  2024 10_linux_zfs
-rwxr-xr-x 1 root root 14513 Apr  4  2024 20_linux_xen
-rwxr-xr-x 1 root root   786 Apr  4  2024 25_bli
-rwxr-xr-x 1 root root 13120 Apr  4  2024 30_os-prober
-rwxr-xr-x 1 root root  1174 Apr  4  2024 30_uefi-firmware
-rwxr-xr-x 1 root root   722 Apr  5  2024 35_fwupd
-rwxr-xr-x 1 root root   214 Apr  4  2024 40_custom
-rwxr-xr-x 1 root root   215 Apr  4  2024 41_custom

===================== sda1/efi/ubuntu/grub.cfg (filtered) ======================

search.fs_uuid 24dedcb1-ccc1-4692-b277-cbe74600be7a root hd0,gpt2 
set prefix=($root)'/boot/grub'
configfile $prefix/grub.cfg

====================== sda2/boot/grub/grub.cfg (filtered) ======================

Ubuntu   24dedcb1-ccc1-4692-b277-cbe74600be7a
Windows Boot Manager (on nvme0n1p1)   osprober-efi-94E0-BC8D
Ubuntu 24.04.3 LTS (24.04) (on nvme1n1p2)   d9b13832-1ffd-4321-92eb-0ee9c07e701a
### END /etc/grub.d/30_os-prober ###
UEFI Firmware Settings   uefi-firmware
### END /etc/grub.d/30_uefi-firmware ###

========================== sda2/etc/fstab (filtered) ===========================

tmpfs /tmp tmpfs defaults,relatime,mode=1777,nosuid,size=20G 0 0
tmpfs	/home/poun/.cache/BraveSoftware	tmpfs	 size=10G
tmpfs	/home/poun/.cache/mozilla	tmpfs	 size=10G
tmpfs	/home/poun/.cache/thunderbird	tmpfs size=10G
tmpfs	/home/poun/.cache/evolution	tmpfs	 size=10G
# <file system> <mount point>   <type>  <options>       <dump>  <pass>
# / was on /dev/sda2 during curtin installation
/dev/disk/by-uuid/24dedcb1-ccc1-4692-b277-cbe74600be7a / ext4 defaults 0 1
# /boot/efi was on /dev/sda1 during curtin installation
/dev/disk/by-uuid/10C3-1B5A /boot/efi vfat defaults 0 1
# /home was on /dev/sda3 during curtin installation
/dev/disk/by-uuid/b4a58f2c-7160-497a-aea9-c9b22b3a611a /home ext4 defaults 0 1
/swap.img	none	swap	sw	0	0

======================= sda2/etc/default/grub (filtered) =======================

GRUB_DEFAULT=0
GRUB_TIMEOUT=3
GRUB_DISTRIBUTOR=`( . /etc/os-release; echo ${NAME:-Ubuntu} ) 2>/dev/null || echo Ubuntu`
GRUB_CMDLINE_LINUX_DEFAULT="quiet splash"
GRUB_CMDLINE_LINUX=""
GRUB_DISABLE_MEMTEST=true
GRUB_DISABLE_OS_PROBER=false

==================== sda2: Location of files loaded by Grub ====================

           GiB - GB             File                                 Fragment(s)
   7,077060699 = 7,598936064    boot/grub/grub.cfg                             1
  15,262691498 = 16,388190208   boot/vmlinuz                                   2
   9,864253998 = 10,591662080   boot/vmlinuz-6.8.0-86-generic                  2
  15,262691498 = 16,388190208   boot/vmlinuz-6.8.0-87-generic                  2
   9,864253998 = 10,591662080   boot/vmlinuz.old                               2
  46,494888306 = 49,923506176   boot/initrd.img                                6
  40,098628998 = 43,055575040   boot/initrd.img-6.8.0-86-generic               2
  46,494888306 = 49,923506176   boot/initrd.img-6.8.0-87-generic               6
  40,098628998 = 43,055575040   boot/initrd.img.old                            2

===================== sda2: ls -l /etc/grub.d/ (filtered) ======================

-rwxr-xr-x 1 root root 18133 Apr  4  2024 10_linux
-rwxr-xr-x 1 root root 43202 Apr  4  2024 10_linux_zfs
-rwxr-xr-x 1 root root 14513 Apr  4  2024 20_linux_xen
-rwxr-xr-x 1 root root   786 Apr  4  2024 25_bli
-rwxr-xr-x 1 root root 13120 Apr  4  2024 30_os-prober
-rwxr-xr-x 1 root root  1174 Apr  4  2024 30_uefi-firmware
-rwxr-xr-x 1 root root   722 Apr  5  2024 35_fwupd
-rwxr-xr-x 1 root root   216 Jun 18 18:54 40_custom
-rwxr-xr-x 1 root root   215 Apr  4  2024 41_custom



Suggested repair: ______________________________________________________________

The default repair of the Boot-Repair utility would reinstall the grub-efi of
sda2,
using the following options:  sda1/boot/efi
Additional repair would be performed: unhide-bootmenu-10s use-standard-efi-file

Final advice in case of suggested repair: ______________________________________

Please do not forget to make your UEFI firmware boot on the L'OS actuellement utilisé - Ubuntu 24.04.3 LTS entry (sda1/efi/****/grub****.efi (**** will be updated in the final message) file) !
If your computer reboots directly into Windows, try to change the boot order in your UEFI firmware.
If your UEFI firmware does not allow to change the boot order, change the default boot entry of the Windows bootloader.
For example you can boot into Windows, then type the following command in an admin command prompt:
bcdedit /set {bootmgr} path \EFI\****\grub****.efi (**** will be updated in the final message)

1) Xubuntu 24.04._LTS + Windows 11 - Gigabyte B760M DS3H AX - Intel Core i5-12600K / UHD Graphics 770 intégré - 10 cœurs -3,7 Ghz - 32 Go de RAM
2) Xubuntu 24.04._LTS + Windows 11 - Gigabyte H610M S2H - Intel I3-12100 / UHD Graphics 730 intégré - 4 cœurs - 3,3 Ghz - 16 Go de RAM
3) Xubuntu 22.04._LTS + Xubuntu 24.04 - Asus X751L - Intel I5-5200U - 4 cœurs - 2.20GHz - N'Vidia GeForce 920M - 12 Go de RAM

Hors ligne

#3 Le 12/11/2025, à 23:27

geole

Re : [Résolu] SecureBoot disabled - Platform is in Setup Mode

Bonsoir.
Si tu souhaites réactiver le secure boot, il faut que tu le fasses depuis le bios.
Ton boot-info montre que shimx64.efi   ( gestionnaire du boot sécurisé ) est bien prévu.

SecureBoot disabled (confirmed by mokutil).
BootCurrent: 0004
BootOrder: 0004,0000,0005
Boot0000* Windows Boot Manager	HD(1,GPT,f2e37412-e870-41cc-87fa-2149cd4a3985,0x800,0x32000)/File(\EFI\Microsoft\Boot\bootmgfw.efi)57494e444f5753000100000088000000780000004200430044004f0042004a004500430054003d007b00390064006500610038003600320063002d0035006300640064002d0034006500370030002d0061006300630031002d006600330032006200330034003400640034003700390035007d00000028000100000010000000040000007fff0400
Boot0004* ubuntu	HD(1,GPT,f7e2fd14-5643-4502-96e0-b8d4a222dce6,0x800,0x393800)/File(\EFI\ubuntu\shimx64.efi) File(.)
Boot0005* ubuntu	HD(1,GPT,3903c4b7-32ef-4dbe-8969-73b085e2d1aa,0x800,0x3ba000)/File(\EFI\ubuntu\shimx64.efi) File(.)    

Dernière modification par geole (Le 12/11/2025, à 23:33)


Les écrans de l'installateur 26.04 https://doc.ubuntu-fr.org/tutoriel/inst … _subiquity

Les partitions EXT4 des disques externes => https://forum.ubuntu-fr.org/viewtopic.p … #p22697248

Hors ligne

#4 Le 13/11/2025, à 09:18

iznobe

Re : [Résolu] SecureBoot disabled - Platform is in Setup Mode

Bonjour , un paramètre du BIOS ne change pas tout seul . surtout le secure-boot .

Si ca marche , ne touche à rien ................

Hors ligne

#5 Le 13/11/2025, à 19:59

Poun64

Re : [Résolu] SecureBoot disabled - Platform is in Setup Mode

Bonsoir toul'monde !
Merci Geole et Iznobe pour vos retours.

La solution était vraiment dans les réglages du BIOS au niveau du "Secure Boot".
Avant modification, le System Mode était bien sur "Configuration", peut-être suite à un "Retour aux paramètres par défaut" précédent...
En image, ça donnait ceci : secure10.jpg
Pour quitter ce mode "Configuration", j'ai restauré les clés d'usine "Restore factory keys" et le System Mode est passé en mode "Deployed".
Maintenant en image ça donne ceci : secure11.jpg
Sous Xubuntu, le "Secure Boot" est maintenant actif :

poun@Gigapoun-2404:~$ sudo mokutil --sb-state
[sudo] Mot de passe de poun : 
SecureBoot enabled
poun@Gigapoun-2404:~$ 

Sous Windows 11, dans "Informations Système => Rubrique "Résumé Système" je lis :

État du démarrage sécurisé = Activé

Pour revalider ma clé Ventoy, j'ai utilisé ce tuto : https://www.technewstoday.com/ventoy-secure-boot/
Je passe donc mon sujet en résolu.

Dernière modification par Poun64 (Le 13/11/2025, à 21:44)


1) Xubuntu 24.04._LTS + Windows 11 - Gigabyte B760M DS3H AX - Intel Core i5-12600K / UHD Graphics 770 intégré - 10 cœurs -3,7 Ghz - 32 Go de RAM
2) Xubuntu 24.04._LTS + Windows 11 - Gigabyte H610M S2H - Intel I3-12100 / UHD Graphics 730 intégré - 4 cœurs - 3,3 Ghz - 16 Go de RAM
3) Xubuntu 22.04._LTS + Xubuntu 24.04 - Asus X751L - Intel I5-5200U - 4 cœurs - 2.20GHz - N'Vidia GeForce 920M - 12 Go de RAM

Hors ligne

#6 Le 13/11/2025, à 22:48

geole

Re : [Résolu] SecureBoot disabled - Platform is in Setup Mode

WBonsoir.
A vérifier.  Mais il me semble que le shim utilisé par ventoy est celui utilisé par Ubuntu et windows..
Donc, le premier qui se présente fait le boulot pour tout le monde.

Dernière modification par geole (Le 13/11/2025, à 22:54)


Les écrans de l'installateur 26.04 https://doc.ubuntu-fr.org/tutoriel/inst … _subiquity

Les partitions EXT4 des disques externes => https://forum.ubuntu-fr.org/viewtopic.p … #p22697248

Hors ligne

#7 Le 13/11/2025, à 22:55

Poun64

Re : [Résolu] SecureBoot disabled - Platform is in Setup Mode

Bonsoir Geole,
J'ai pourtant dû au lancement de ma clé Ventoy, traiter (ou retraiter) le défaut "Error : Verification failed : (0x1A Security Violation en utilisant le tuto de mon post #5.
hmm


1) Xubuntu 24.04._LTS + Windows 11 - Gigabyte B760M DS3H AX - Intel Core i5-12600K / UHD Graphics 770 intégré - 10 cœurs -3,7 Ghz - 32 Go de RAM
2) Xubuntu 24.04._LTS + Windows 11 - Gigabyte H610M S2H - Intel I3-12100 / UHD Graphics 730 intégré - 4 cœurs - 3,3 Ghz - 16 Go de RAM
3) Xubuntu 22.04._LTS + Xubuntu 24.04 - Asus X751L - Intel I5-5200U - 4 cœurs - 2.20GHz - N'Vidia GeForce 920M - 12 Go de RAM

Hors ligne