I had the same problem on a Lenovo ThinkPad P52.

In the BIOS, Secure Boot was enabled, but Windows 11 showed "Secure Boot State" as "Off".

The cause was, that the Secure Boot Mode in my BIOS was set to "Setup Mode".

To change it to "User Mode", I had to select "Restore Factory Keys" on the Security Page in the BIOS.

After that, I could start the computer and Windows 11 displayed that the Secure Boot State is "On".

Maybe this helps someone.

🌐
DiskPart
diskpart.com › aomei software › free partition software › 3 ways to fix secure boot enabled but not active in windows 11/10
3 Ways to Fix Secure Boot Enabled But Not Active in Windows 11/10
March 14, 2025 - If the Secure Boot option is missing from your BIOS, your system may have outdated UEFI firmware that lacks Secure Boot support. Alternatively, the option could be disabled in your UEFI firmware settings.
Discussions

Secure boot enabled but not active?
The problem is likely that the cryptographic keys secure boot needs to actually function haven't been installed or provisioned by the motherboard. Think of the "Secure Boot: Enabled" setting as flipping the main power switch, but the actual security system (the keys) isn't loaded yet. So, while the feature is technically turned on, it has no rules to follow, which is why Windows reports it as "Not Active." This often happens after a BIOS update, a CMOS clear, or sometimes even on a brand-new motherboard. The fix is almost always found in the exact same spot in your BIOS where you enabled Secure Boot. You need to reboot your PC and go back into that "Secure Boot" menu. Look for an option right near the main toggle that says something like "Restore Factory Keys," "Install default Secure Boot keys," or "Key Management." The exact wording will vary depending on your motherboard brand (ASUS, MSI, Gigabyte, etc.). Select that option to install the default keys. It should ask you to confirm. Once you do that, save your changes and exit the BIOS (usually by pressing F10). When your computer restarts, Windows should now (hopefully) correctly recognize Secure Boot as fully active. More on reddit.com
🌐 r/buildapc
46
11
August 8, 2025
Secure boot enabled but not active on gigabyte motherboard
I have a gigabyte B760m motherboard, secure boot is enabled but not active in bios, shows "off" in msinfo32. I've read certain threads that lead me to believe that secure boot mode - custom and then back to standard and "yes" when it… More on learn.microsoft.com
🌐 learn.microsoft.com
3
0
March 12, 2025
Secure boot enabled but not active?
In a similar case, Secure Boot appeared configured but was not active until the user installed the Secure Boot keys from BIOS; after loading the default/Microsoft keyset, Windows reported Secure Boot as active and anti-cheat started working. ... Ensure Secure Boot is set to Enabled (not just ... More on learn.microsoft.com
🌐 learn.microsoft.com
2
0
March 22, 2026
How do i enable secure boot when its already enabled but not active
I installed VALORANT and I want to play it but every time I load it up it says something about secure boot. I have done research and stuff and I've gone into BIOS and the secureboot is enabled but under it, it says 'Not Active'. How do I fix this? (I… More on learn.microsoft.com
🌐 learn.microsoft.com
2
0
February 3, 2024
People also ask

How to fix Secure Boot enabled in BIOS but not Windows 11?

If you are unable to enter Windows 11, you can still fix the secure boot-enabled problem through BIOS. Here are the steps that you have to follow in this regard.

  • Enter BIOS;settings using specific keys (check your system's manual to learn about keys)
  • Disable Fast Boot;settings through this option
  • Save Factory Defaults;to change the settings to the previous ones when the system was released by the manufacturer
🌐
easeus.com
easeus.com › computer instruction › (solved!) secure boot enabled but not active🔥
Secure Boot Enabled But Not Active - How to Fix?🔥
How do I enable Secure Boot without BIOS?

You can enable the secure boot option without BIOS through Windows. Here are the steps that you have to follow in this regard.

  • Press ctrl + R;to open the Run;dialogue box
  • Enter msinfo32;in that box
  • If it reads off;enable the secure boot option from BIOS
🌐
easeus.com
easeus.com › computer instruction › (solved!) secure boot enabled but not active🔥
Secure Boot Enabled But Not Active - How to Fix?🔥
Why is Secure Boot not showing in BIOS?

Your system might be using outdated UEFI firmware that doesn't support a secure boot option. Also, it might be possible that this option isn't enabled in UEFI firmware settings. If any of these issues are there in your system, you will not be able to see the secure boot option in BIOS.

🌐
easeus.com
easeus.com › computer instruction › (solved!) secure boot enabled but not active🔥
Secure Boot Enabled But Not Active - How to Fix?🔥
🌐
Eleven Forum
elevenforum.com › windows support forums › antivirus, firewalls and system security
Secure boot enabled in BIOS but not on | Windows 11 Forum
July 25, 2025 - Thanks, but CSM was already disabled and Secure Boot active. What fixed the problem was changing the Secure Boot mode from standard to custom and then back to standard and accepting the factory defaults. Now msinfo32 shows secure boot state as on. Don't know why anything had been changed from ...
🌐
EaseUS
easeus.com › computer instruction › (solved!) secure boot enabled but not active🔥
Secure Boot Enabled But Not Active - How to Fix?🔥
August 11, 2025 - Many users have reported that they have resolved secure boot-related issues just by following this simple method. The most common result from a secure boot-enabled but not active problem is data loss.
Find elsewhere
🌐
AllThings
allthings.how › all things how › windows › how to fix secure boot enabled but not active on windows 11
How to Fix Secure Boot Enabled But Not Active on Windows 11
August 11, 2025 - Re-enter BIOS. Change Secure Boot Mode from “Standard” to “Custom.” Accept any prompts or warnings. ... Now switch Secure Boot Mode back from “Custom” to “Standard.” When prompted, accept restoring or installing “Factory ...
🌐
Reddit
reddit.com › r/buildapc › secure boot enabled but not active?
r/buildapc on Reddit: Secure boot enabled but not active?
August 8, 2025 -

Secure boot is enabled but it says not active. My BIOS mode is UEFI. My drive is GPT. And CSM is off. Also secure boot was on by default I just checked everything I can’t find out why it won’t work.

I would like to get it working so I can play the BF6 beta

🌐
uBackup
ubackup.com › aomei software › windows 11 › [solved] secure boot enabled but not active in windows 11
[Solved] Secure Boot Enabled But Not Active in Windows 11
August 28, 2025 - You might be in Setup Mode because you have deleted the Platform Key in your BIOS. Enabling Secure Boot in this state enables your OS to write a new Platform Key. But if you don't do that, you remain in Setup Mode and the Secure Boot State, ...
🌐
AOMEI
aomeitech.com › aomei software › disk partition tips › how to fix secure boot enabled but not active in windows 11/10
How to Fix Secure Boot Enabled But Not Active in Windows 11/10
3 weeks ago - Make sure the Secure Boot setting is reactived and enabled, and save the changes before exiting BIOS. Secure Boot only works correctly when the system disk uses the GPT partition style instead of MBR.
🌐
Microsoft Learn
learn.microsoft.com › en-us › answers › questions › 3887665 › secure-boot-enabled-but-not-active-on-gigabyte-mot
Secure boot enabled but not active on gigabyte motherboard - Microsoft Q&A
March 12, 2025 - Yes, you can but remember the following steps. Before making any BIOS changes, back up your important data. Enter your BIOS and ensure that the "CSM Support" or "Compatibility Support Module" is disabled. CSM must be off for secure boot to function
🌐
Windows Report
windowsreport.com › how to › secure boot enabled but not active in windows 10: 5 solutions
Secure Boot Enabled But Not Active in Windows 10: 5 Solutions
August 7, 2025 - There could be various reasons why secure boot is not active on your computer, some of them are mentioned here: Secure Boot feature disabled – Check if the Secure Boot option in UEFI firmware settings is set to Disabled; the feature won’t ...
🌐
AOMEI
aomeitech.com › aomei software › enterprise backup tips › understanding secure boot enabled but not active in windows 11
Understanding Secure Boot Enabled but Not Active in Windows 11
December 10, 2024 - To troubleshoot and resolve issues ... to the Secure Boot settings in the BIOS menu and verify the status of Secure Boot. Ensure that Secure Boot is enabled and set to "Active" or "Enabled."...
🌐
Microsoft Learn
learn.microsoft.com › en-us › answers › questions › 5832355 › secure-boot-enabled-but-not-active
Secure boot enabled but not active? - Microsoft Q&A
March 22, 2026 - When Secure Boot shows as enabled in firmware but “not active” in Windows, it usually means the system is booting with a non‑signed or legacy bootloader.
🌐
Steam Community
steamcommunity.com › app › 2807960 › discussions › 0 › 614304582404779567
secure boot enabled but NOT active in BIOS :: Battlefield™ 6 General Discussions
have you turned off csm(compatibility ... edited by Cryptic.416; Oct 30, 2025 @ 10:57am ... Originally posted by LonexGER:Install latest BIOS Update....
🌐
ASUS
asus.com › support › faq › 1050047
How to Enable/Disable Secure Boot | Official Support | ASUS Global
3 weeks ago - Solution for Secure Boot Displaying as "Not Active" First, enable Secure Boot Control, then restore the Secure Boot keys to their default values. Please follow the corresponding solution based on the device you are using. Enabling Secure Boot Control and Restoring Keys for a Notebook, All-in-One ...
🌐
MiniTool Partition Wizard
partitionwizard.com › home › news › [solved] secure boot is enabled but not active in windows 11
5 Ways for Secure Boot Enabled But Not Active in Windows ...
July 5, 2023 - How to Update BIOS Windows 10 | How to Check BIOS Version · If you have CSM (Compatibility Support Module) enabled in your UEFI settings, you may find that Secure Boot is not an active issue. It’s best to disable it for secure boot options.
🌐
YouTube
youtube.com › watch
[GIGABYTE] How To Fix Secure Boot Enabled But NOT Active in BIOS Gigabyte - YouTube
In this video, learn how to fix the "Secure Boot Enabled but NOT Active" issue in your BIOS settings. Secure Boot is an important feature that helps prevent ...
Published   November 10, 2024
🌐
Microsoft Learn
learn.microsoft.com › en-us › answers › questions › 1523666 › how-do-i-enable-secure-boot-when-its-already-enabl
How do i enable secure boot when its already enabled but not active - Microsoft Q&A
February 3, 2024 - Hi da_B1GM4C You should just disable secure boot, If you enable secure boot then you should create a password for this, but once you forget boot password your computer dead, so easy way to solve your issue just disable secure boot option.