If you’re trying to install Windows 11 or run certain security features and games, you may have come across the requirement for Secure Boot. But what exactly is Secure Boot, and how do you enable it? Don’t worry — in this step-by-step guide on how to turn on Secure Boot in Windows 11, we’ll walk you through everything you need to know, even if you’re a complete beginner.
Summary: Key Takeaways
-
Secure Boot is a UEFI firmware feature that protects your PC from malicious bootloaders and unauthorized software.
-
It’s usually required for Windows 11 installation, anti-cheat gaming systems, and enhanced device security.
-
You can enable Secure Boot from your BIOS/UEFI settings.
-
If you don’t see the option, you may need to switch from Legacy BIOS to UEFI and disable CSM (Compatibility Support Module).
What Is Secure Boot in Windows 11?
Secure Boot is a security feature built into modern PCs that ensures only trusted, signed operating systems and drivers load when you start your computer. Think of it as a security guard at the door of your PC — only verified software gets in.
Why Is Secure Boot Important?
-
🛡️ Prevents malware at startup — blocks rootkits and bootkits.
-
💻 Required by Windows 11 — part of Microsoft’s minimum system requirements.
-
🎮 Needed for gaming anti-cheat systems — popular titles like Valorant require Secure Boot.
-
🔒 Improves overall security — ensures firmware integrity.
How to Check if Secure Boot Is Enabled in Windows 11
Before enabling it, let’s confirm whether Secure Boot is already on.
-
Press Win + R, type
msinfo32, and press Enter. -
In the System Information window, look for Secure Boot State.
-
If it says On, you’re good to go.
-
If it says Off or Unsupported, follow the steps below.
-
Step-by-Step Guide: How to Turn On Secure Boot in Windows 11
Let’s go through the process one step at a time.
Step 1: Restart and Enter BIOS/UEFI Settings
-
Press Start > Power > Restart.
-
As your PC restarts, press the correct BIOS key (varies by manufacturer):
-
Dell → F2
-
HP → Esc or F10
-
Lenovo → F1 or F2
-
ASUS → Del or F2
-
Acer → F2 or Del
-
👉 Check your PC’s manual if unsure.
Step 2: Switch From Legacy BIOS to UEFI (If Needed)
Secure Boot requires UEFI mode.
-
In BIOS, look for Boot Mode or UEFI/Legacy Boot.
-
Change setting from Legacy to UEFI.
-
Save changes and restart.
⚠️ Warning: Switching modes may require converting your disk to GPT (use Microsoft’s mbr2gpt tool if necessary).
Step 3: Disable Compatibility Support Module (CSM)
Some systems require disabling CSM before Secure Boot becomes available.
-
In BIOS, go to Boot Options.
-
Locate CSM (Compatibility Support Module).
-
Set it to Disabled.
Step 4: Enable Secure Boot
-
Navigate to the Boot, Security, or Authentication tab (varies by PC brand).
-
Find Secure Boot.
-
Select Enabled.
-
Save changes and restart.
Step 5: Verify Secure Boot Is On
After reboot:
-
Press Win + R, type
msinfo32, and press Enter. -
Look for Secure Boot State again — it should now show On.
Troubleshooting: What If Secure Boot Option Is Greyed Out?
Sometimes, you might not be able to enable Secure Boot. Common fixes:
-
Check UEFI Mode → Make sure you’re not using Legacy BIOS.
-
Disable CSM → Secure Boot won’t work with CSM enabled.
-
Reset BIOS to Defaults → Sometimes incorrect settings cause the option to lock.
-
Update BIOS → An outdated BIOS may not support Secure Boot.
Benefits of Enabling Secure Boot in Windows 11
-
Stronger defense against malware and unauthorized software.
-
Ensures Windows updates install smoothly.
-
Required for gaming anti-cheat engines.
-
Provides compliance with Windows 11 hardware requirements.
Risks and Considerations
-
If you run older operating systems or unsigned drivers, they may not boot after Secure Boot is enabled.
-
Dual-booting Linux may require adding keys or disabling Secure Boot temporarily.
-
Always back up important data before changing BIOS settings.
Conclusion
Turning on Secure Boot in Windows 11 is essential for security, compatibility, and meeting Microsoft’s requirements. While the process might seem intimidating, once you know how to access BIOS/UEFI and tweak a few settings, it’s straightforward.
Remember:
-
Switch to UEFI mode if needed.
-
Disable CSM.
-
Enable Secure Boot and verify.
With these steps, your PC will be more secure and fully compliant with Windows 11 requirements.
FAQs About Secure Boot in Windows 11
1. Is Secure Boot required for Windows 11?
Yes. Microsoft lists Secure Boot as a minimum system requirement.
2. Can I install Windows 11 without Secure Boot?
You can bypass it during installation, but some features and games won’t work properly.
3. Will Secure Boot affect gaming performance?
No. It doesn’t slow down your PC; it just adds protection.
4. What happens if I disable Secure Boot after enabling it?
Your PC will still run, but it becomes more vulnerable to rootkits and certain apps may stop working.
5. Does every PC support Secure Boot?
Only UEFI-based systems support it. Older PCs with Legacy BIOS won’t have the option.
