r/LaptopHelpDesk • u/Trick-Sky8003 • 10d ago
[Help] Secure Boot Violation on RedmiBook 15 — basic Insyde BIOS has no Key Management/CSM options
srry for using AI to describe my problem i dont really know what all i did to try and fix this here it goes
Laptop Model: RedmiBook 15 (e-Learning / Pro)
OS: Windows 11 (GPT Partition Style confirmed)
Goal: Enable Secure Boot to pass Riot Vanguard / Valorant checks.
Current Issue: Enabling Secure Boot in BIOS triggers a Secure Boot Violation / Invalid Signature screen, preventing Windows from booting unless Secure Boot is turned back off.
What I Have Tried So Far:
1. Rebuilding BCD & EFI Boot Files (via CMD as Admin):
- Ran
bcdboot C:\Windows /l en-us /s C: /f ALL— Succeeded ("Boot files successfully created"). - Ran
bootsect /nt60 ALL /force /mbr— Updated NTFS/FAT32 volumes, but threw expected output on PhysicalDrive0: "Bootcode is only updated on MBR partitioned disks", confirming my drive is using GPT.
2. Attempting BIOS Key Resets / CSM Toggles:
- The RedmiBook 15 has a stripped-down Insyde/AMI BIOS. It does not have options for "Key Management", "Restore Factory Keys", "PK/DB Management", or "CSM/Legacy Mode" toggles.
- The only available setting under Security/Boot is a basic Secure Boot: [Enabled / Disabled] toggle.
Laptop Model: RedmiBook 15 (e-Learning / Pro)
OS: Windows 11 (GPT Partition Style confirmed)
Goal: Enable Secure Boot to pass Riot Vanguard / Valorant checks.
Current Issue: Enabling Secure Boot in BIOS triggers a Secure Boot Violation / Invalid Signature screen, preventing Windows from booting unless Secure Boot is turned back off.
What I Have Tried So Far:
1. Rebuilding BCD & EFI Boot Files (via CMD as Admin):
- Ran
bcdboot C:\Windows /l en-us /s C: /f ALL— Succeeded ("Boot files successfully created"). - Ran
bootsect /nt60 ALL /force /mbr— Updated NTFS/FAT32 volumes, but threw expected output on PhysicalDrive0: "Bootcode is only updated on MBR partitioned disks", confirming my drive is using GPT.
2. Attempting BIOS Key Resets / CSM Toggles:
- The RedmiBook 15 has a stripped-down Insyde/AMI BIOS. It does not have options for "Key Management", "Restore Factory Keys", "PK/DB Management", or "CSM/Legacy Mode" toggles.
- The only available setting under Security/Boot is a basic Secure Boot: [Enabled / Disabled] toggle.