with no markdown, no source marker leakage, and full compliance with the E-E-A-T and editorial voice requirements.

You sit down to install Windows 11 or launch a game like Valorant, and suddenly a message blocks you: Secure Boot isn’t on. It’s a quick fix inside your PC’s firmware, but the menus look different on every motherboard. This guide walks you through enabling Secure Boot step by step — covering ASUS, Gigabyte, and MSI boards — and explains what to do for Windows 11, Windows 10, and anti-cheat games like Call of Duty and Fortnite.

Windows 11 requirement Secure Boot must be enabled for Windows 11 installation per Microsoft’s official hardware requirements. ·
Global adoption rate As of 2024, over 80% of Windows 11-capable PCs have Secure Boot enabled. ·
Average BIOS navigation time Accessing Secure Boot settings typically takes 1 to 3 minutes after entering BIOS. ·
Number of major motherboard brands covered ASUS, Gigabyte, MSI, ASRock—four main vendors offer Secure Boot toggle in BIOS.

Quick snapshot

1Confirmed facts
2What’s unclear
3Timeline signal
4What’s next
  • More games will likely require Secure Boot for kernel-level anti-cheat (EA Help (Secure Boot for EA games))
  • OEMs may enable Secure Boot by default on all new PCs (Microsoft Support (Secure Boot overview))

Four key facts you need to know before you start.

Fact Detail
Minimum requirement Secure Boot enabled for Windows 11
BIOS key for most PCs F2 or Del
Alternative key for HP Esc
UEFI mode required Yes, Secure Boot only works in UEFI mode

How do I enable Secure Boot in BIOS?

The first step is to understand where your system currently stands and then navigate the firmware menus. Here’s the general workflow.

Check current Secure Boot state in Windows

  • Press Win + R, type msinfo32, and press Enter. Look for Secure Boot State — it will say On or Off. (Microsoft Support (how to check))

Access BIOS menu on boot

  • Restart your PC and repeatedly press the BIOS key — usually F2 or Del. On HP systems try Esc. (YouTube – Gigabyte Motherboard Secure Boot Guide (BIOS entry))

Locate Secure Boot setting under Boot or Security tab

  • Inside BIOS, switch to Advanced Mode (usually F7). Navigate to the Boot tab (or Security tab on some boards) and find Secure Boot. If it’s grayed out, disable CSM/Legacy first. (YouTube – MSI Motherboard Secure Boot Guide (BIOS settings))

Once you toggle Secure Boot to Enabled, press F10 to save and exit. Your PC will restart.

The catch

Switching from CSM/Legacy to UEFI mode can prevent Windows from booting if your drive is formatted as MBR rather than GPT. You may need to convert the disk or reinstall Windows.

How to turn on Secure Boot in Windows 11?

Windows 11 provides a shortcut to the firmware without the frantic key-pressing dance.

Use Advanced Startup to reach UEFI firmware settings

  1. Open Settings > System > Recovery.
  2. Under Advanced startup, click Restart now. (Microsoft Support (Advanced Startup))
  3. Your PC reboots into a blue menu. Choose Troubleshoot > Advanced options > UEFI Firmware Settings > Restart.

Enable Secure Boot from within Windows 11 Settings

After entering UEFI firmware, follow the same BIOS steps above (locate Secure Boot and enable it). Windows 11 does not automatically enable Secure Boot during an upgrade — you must do it manually. (Microsoft Support (Windows 11 upgrade requirements))

The implication: if you bought a pre-built PC after 2021, Secure Boot is likely already on. For custom builds or upgrades, enable it yourself.

How to enable Secure Boot on ASUS, Gigabyte, and MSI motherboards?

Each manufacturer places the option in slightly different BIOS tabs. Here’s where to look.

ASUS motherboard Secure Boot guide

  • Enter BIOS with F2 or Del. Switch to Advanced Mode (F7). Go to Boot tab > Secure Boot > set OS Type to Windows UEFI Mode. (ASUS Support (Secure Boot FAQ))
  • If Secure Boot is grayed out, first disable CSM under Boot tab. Save and reboot.

Gigabyte motherboard Secure Boot guide

  • Enter BIOS with Del (press F2 to switch from Easy Mode to Advanced Mode). Go to Peripherals tab > Intel Platform Trust Technology > Enabled. Then under Boot tab, disable CSM and enable Secure Boot. (YouTube – Gigabyte Motherboard Secure Boot Guide (AORUS, Vision, Gaming X, UD))
  • This works for both Intel and AMD processors.

MSI motherboard Secure Boot guide

  • Enter BIOS with Del. Press F7 to enter Advanced Mode. Go to SETTINGS > Advanced > change CSM/UEFI Mode to UEFI. Then go to Security > Secure Boot > Enabled. (YouTube – MSI Motherboard Secure Boot Guide (BIOS navigation))
  • Warning: switching from CSM to UEFI may require a GPT partition or reinstall.

The pattern across all three vendors: disable CSM first, then Secure Boot becomes available. If you skip this, the option stays grayed out.

How to enable Secure Boot for Call of Duty, Fortnite, and EA games?

More games now enforce Secure Boot to prevent cheating. Here’s what you need for the major titles.

Secure Boot required for Valorant, Call of Duty, Fortnite anti-cheat

Enable Secure Boot for EA app

Verify Secure Boot is working for game anti-cheat

  • After enabling, restart your PC and open the game. If you still get a Secure Boot error, check that you’re in UEFI mode and TPM 2.0 is enabled.

Why this matters: disabling Secure Boot can block you from playing top multiplayer titles. It’s not optional if you want to play after 2023.

Does Windows 11 automatically enable Secure Boot?

Short answer: no — you have to flip the switch yourself.

Windows 11 upgrade does not automatically enable Secure Boot

  • If you upgrade from Windows 10 to 11 via Windows Update, Secure Boot remains as it was. If it was off, it stays off. (Microsoft Support (Windows 11 installation))

PC Health Check tool verifies Secure Boot status

  • Microsoft’s PC Health Check app tells you whether Secure Boot is enabled. If not, it will flag the requirement. Use msinfo32 to double‑check. (Microsoft Support (PC Health Check))

The trade-off: new OEM PCs bought after 2021 often have Secure Boot on by default. Custom builds and older machines require manual configuration.

Confirmed facts

  • Secure Boot is enabled via UEFI firmware settings (Wikipedia (UEFI specification))
  • Windows 11 requires Secure Boot (Microsoft Support (Windows 11 requirements))
  • MSinfo32 shows Secure Boot state accurately (Microsoft Support (check Secure Boot))

What’s unclear

  • Some older motherboards may not have Secure Boot option even under UEFI (YouTube – MSI Motherboard Secure Boot Guide (troubleshooting))
  • Certain Gigabyte boards label Secure Boot differently under Peripherals (YouTube – Gigabyte Motherboard Secure Boot Guide (BIOS navigation))

“To enable Secure Boot on your PC, go to Settings, select System, choose Recovery… Under Advanced startup, select Restart now.”

Microsoft Support (Windows 11 installation)

“How to use Secure Boot on your PC — You can check if Secure Boot is enabled by opening System Information (msinfo32).”

EA Help (Secure Boot for EA games)

“To enable Secure Boot, you must switch your Boot Mode to UEFI and turn on Secure Boot in your BIOS settings.”

Riot Games Support (Valorant Vanguard)

For gamers and upgraders alike, the decision is clear: enable Secure Boot now, or face blocks from Windows 11, Valorant, Call of Duty, and Fortnite. It takes five minutes in the BIOS and saves hours of troubleshooting later.

Related reading: AccèsD Desjardins Se Connecter – How to Log In Securely

Frequently asked questions

What is the difference between Secure Boot and TPM 2.0?

Secure Boot verifies the integrity of the bootloader, while TPM 2.0 provides hardware-based security for encryption and keys. Both are required for Windows 11 and some games.

Can I enable Secure Boot without UEFI?

No. Secure Boot is a UEFI feature and does not work in Legacy/CSM mode. You must switch to UEFI first.

Why is Secure Boot grayed out in my BIOS?

You likely have CSM/Legacy enabled. Disable CSM, then Secure Boot becomes available. If still grayed, your platform may have a hardware limit.

How do I disable Secure Boot?

Enter BIOS, go to Boot or Security tab, set Secure Boot to Disabled, save and exit.

Does enabling Secure Boot affect performance?

No measurable impact on gaming or productivity. It adds a boot-time check that completes in under a second.

What happens if I enable Secure Boot and my PC won’t boot?

Your drive may be in MBR format. Convert to GPT using MBR2GPT tool, or reinstall Windows in UEFI mode.

Can I enable Secure Boot after installing Windows 11?

Yes, at any time. Enable it in BIOS. Windows 11 will remain functional.

How do I know if Secure Boot is already on?

Open System Information (msinfo32) and look for Secure Boot State. It says On or Off.