Secure Boot certificates update - event 1796

Joined
Mar 15, 2025
Messages
36
I decided to check whether the Secure Boot certificates on my X870E Godlike had been updated with the latest BIOS 7E48v1A70, and it turns out they had:

- There is an entry (1808) in the event log indicating that the keys were successfully updated:
This device has updated its Secure Boot certificates/keys. Device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Micro-Star International Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:1.A70;OEMModelBaseBoard:MEG X870E GODLIKE (MS-7E48); OEMManufacturerName: Micro-Star International Co., Ltd.; OSArchitecture: amd64;
BucketId: 710d062b01f54a9f8eab3de2142138df683b17092d896ba0d4e487970f78ad7a
BucketConfidenceLevel: No Data Observed - Action Required
UpdateType: Windows UEFI CA 2023 (DB), Option ROM CA 2023 (DB), 3P UEFI CA 2023 (DB), KEK 2023, Boot Manager (2023)
For more information, see https://go.microsoft.com/fwlink/?linkid=2301018.


- The https://github.com/claude-boucher/CheckCA2023 utility also shows that everything is fine:
Снимок экрана 2026-05-23 112339.png

But there is also event 1796 in the event log:
While updating Secure Boot, SBAT could not be updated. Error: Invalid function. For more information, visit https://go.microsoft.com/fwlink/?linkid=2169931

I tried resetting the Secure Boot keys — it didn’t help. Is this a BIOS issue, and should MSI fix it?
 
Back
Top